Sign up for our
weekly
newsletter
of fresh jobs
At Cox Communications Inc. (CCI), we take security seriously. After all, we’re in the business of connecting businesses to products, services, and technologies they need to operate each day, so we only enlist the best in the business. We are searching for a Cyber Risk & Compliance Senior Manager that will provide subject matter expertise on information security assurance requests for RapidScale, a Cox Business company, related to customer RFPs, contracts, or annual customer due diligence.PRIMARY RESPONSIBILITIES AND ESSENTIAL FUNCTIONS:• Collaborate with cross-functional teams to ensure they are properly managing security controls, understand their operations, and ensure compliance with standards.• Monitor and enhance the controls needed to achieve and maintain SOC1,SOC 2, ISO 27001, PCI DSS, HITRUST, HIPAA, , and other compliance requirements. You’ll also test these controls when the need arises.• Help external parties on projects related to compliance or other security initiatives.• Provide governance over internal assessments and external audits of the compliance programs.• Develop and maintain remediation plans alongside our remediation owners, then track the remediation plans until they’re complete.• Manage the control frameworks that support our security compliance objectives.• Maintain the tools and processes that keep our compliance monitoring going strong.• Help out with the development of key reporting metrics and executive presentations to make sure there is always an awareness and support of our compliance programs.• Support legal and sales by reviewing and negotiating contractual cybersecurity provisions within customer RFPs and non-standard contracts.• Provide subject matter expertise to legal, sales, and additional boundary partners regarding the applicability of cybersecurity provisions and/or compliance requirements for a particular product or service.• Maintain oversight over customer specific contractual requirements and work with teams throughout the organization to ensure the requirements are met and monitored.• Participate in the implementation of the contract management system to ensure cyber compliance requirements are captured and addressed.• Process requests for security compliance attestation (i.e., SOC 1 and SOC 2 reports, PCI, HITRUST, ISO 27001, etc.) for authorized customers.• Assist sales in responding to customer inquiries that are focused on the cybersecurity controls for selected products (i.e., completing cybersecurity questions or questionnaires).• Build consensus across boundary partners and business partners to appropriately manage cybersecurity risk.• Proactively represent the cybersecurity team requirements in the development and delivery sales support capabilities.QUALIFICATIONS AND EXPERIENCE:Minimum• Bachelor’s degree in a related discipline (i.e. Cybersecurity, Information Technology, Cybersecurity, Computer Science, or Information Systems.) and 6 years’ experience in a related field. The right candidate could also have a different combination, such as a master’s degree and 4 years’ experience; a Ph.D. and 1 year of experience; or 10 years’ experience in a related field• Experience assessing or aligning with common industry security frameworks and regulatory requirements (i.e., SOC 1 and SOC 2, HITRUST, PCI DSS, HIPAA, GLBA, and GDPR.)• Excellent verbal and written communication skills to communicate complex cyber risk issues to technical and non-technical audiences.• Excellent soft skills such as: interpersonal, leadership, presentation, and collaborative skills to work effectively with teams throughout organization.• Strong collaboration skills to effectively drive understanding among cross-functional teams.• Ability to reach decisions under conditions of uncertainty and against competing priorities.Preferred• MS degree• A Background in Finance, Healthcare and Cloud security compliance preferred.• Certified in at least one of the following: CISSP, CISM, CISA, CRISC, or similar.