RSI - Renaissance Systems, Inc. · 6 hours ago
Associate Cybersecurity Compliance Analyst
Renaissance Systems, Inc. (RSI) has been implementing complex IT projects since 1982 and is currently seeking a part-time Associate Cybersecurity Compliance Analyst. The role involves supporting the CISO department in assessing and managing client security programs, while gaining hands-on knowledge in risk, compliance, and organizational policy development.
Responsibilities
Document client technology and information system components
Document processes for client security monitoring, vulnerability management, and incident management needs
Define and analyze client security policies and procedures
Provide risk-based recommendations on client governance requirements such as configuration and change management, risk management, and compliance
Assist in development remediation plans for security risks and vulnerabilities
Conduct client assessment interviews and document findings
Assist the department as needed in conducting vendor risk assessments against organizational requirements
Conduct research, as needed, to aid assessment or risk mitigation activities
Assists the department in completing the tasks assigned to them, which often includes, but is not limited to, project work and day-to-day operations
Update information systems, perform data collection and verification, and follow-up on outstanding items in a timely manner
Participate as needed in the development, planning, or execution of assigned projects or programs
Qualification
Required
Desire to learn, train, and grow to advance
Business-appropriate oral and written communication skills and experience interacting with individuals at all levels, including supervisors and managers
Strong planning processes and organizational skills, including attention to detail and multi-tasking skills
Ability to represent the company in a professional manner
Familiarity with risk management methodology, particularly IT and Vendor
Competence in governance, policy, and technical writing
Working knowledge of regulatory compliance requirements and standards frameworks including: NIST (CSF, 800-171, 800-53), PCI-DSS, 23 NYCRR Part 500, HIPAA
Working knowledge of computer systems, applications, development, testing methodologies, and technology architecture, which may include: Cloud computing, SaaS models, Identity and access management principles, Penetration testing and vulnerability testing, Firewalls, IDS/IPS, network access control, and network segmentation, Router, switch, and VLAN security, Wireless and application security, Encryption technologies
Intermediate Proficiency: MS Outlook, MS Word, MS PowerPoint, MS Excel, Productivity tools such as Planner, Trello, Asana, etc
High School Diploma or General Education Diploma (GED) and/or commensurate experience
Either actively enrolled in an academic institution in pursuit of a bachelor's degree in a relevant course of study or is a recent college graduate, typically having attained a degree within the past 12 months
Prolonged periods sitting/ or standing at a desk and working on a computer
Must be able to lift up to 35 pounds at times
Travel to customer locations will be required. Reliable transportation is a must
Valid Driver's License and proof of auto insurance
Ability to pass a criminal background check and drug screening
Provide at least three (3) references, past salary, and work history
Candidates must be legally authorized to work in the United States now and in the future without the need for employer sponsorship
Preferred
Ability to pass a CJIS background check
Fluent written and spoken Spanish
Relevant military experience
Benefits
Paid Vacation
Paid Federal Holidays
Medical Plans
Dental Insurance
Vision Insurance
Voluntary Benefits
ID Theft Protection
Pet Insurance
Legal Assistance
Employee Assistance Program
Education Reimbursement