Security-Risk Management Specialist

Job ID: 110423
Location: San Jose, CA  [Remote]
Salary: $60.00 - $65.00/hr
Category: App/Dev
Employment Type: Contract

Apply Now

Fill out the form below to submit your information for this opportunity. Please upload your resume as a doc, pdf, rtf or txt file. Your information will be processed as soon as possible.


 
 
 
 
 
(Word, PDF, RTF, TXT)
* Required field.
Job Description:
Our client is seeking a seasoned Security-Risk Management Specialist to join their team on a contractual basis. The ideal candidate will be tasked with overseeing vulnerability assessments and security audits remotely. This role requires a deep understanding of security frameworks and risk management in a technology environment. The successful candidate will provide crucial insights and strategies to enhance our security posture, ensuring robust protection of key assets. This position offers the flexibility to work remotely, preferably from the Eastern or Central Standard Time zones.

Responsibilities:
  • Conduct comprehensive vulnerability assessments and security audits across various digital assets.
  • Interview asset owners and stakeholders to extract critical information regarding their mission, strategy, and associated security risks.
  • Analyze and investigate risks, employing a methodical approach to threat identification and assessment.
  • Perform on-site audits as necessary, ensuring compliance with established security protocols and frameworks.
  • Evaluate the effectiveness of existing controls and recommend enhancements to fortify security measures.
  • Identify and assess potential risks and exposures in partner assets, proposing strategic remediation solutions.
  • Collaborate closely with internal and external stakeholders to align security strategies with business objectives.
  • Document findings and prepare detailed reports to inform management and guide decision-making processes.

Qualifications:
  • Minimum of 10 years of experience in security risk management or a related field.
  • Proven expertise in secured environment controls such as FedRAMP, NIST, FISMA, or STIG.
  • Skilled in vulnerability management, resolution, and verification processes.
  • Experience in hardening systems to comply with security benchmarks such as CIS.
  • Familiarity with vulnerability scanners like Qualys is preferred.
  • Ability to automate tasks using Python, Ansible, or similar tools.
  • Knowledge of cloud solution offerings and their associated security considerations.
  • Excellent communication skills, capable of engaging effectively with technical and non-technical stakeholders.