Understand controls and Governance Frameworks (FW)- Develop
Have strong GRC background.
Personality trait, navigate program, different people/ control FW,
Experienced in these control FW: FedRamp, ISO, NIST CSF, SOX and PCI-DSS, Hitrust.
Risk assessments, feeding the process to the centralized risk register.
Compliance and assurance –> strategic security group
Work location: As Data (classified) need to reside within US, so any location within US is fine. Eric is in central time, and other Leads operate in ET Time.
Candidate should understand the control, mapping, applicability, navigate to drive the implementation including control testing and report.
Articulate the reporting to meet the expectation of business leads at different levels.
Certification: CISSP (obtained or WIP)
GRC tool: Have exp, analysis and supported implementation and using for performing assessment. Preferably candidate having exp in Hyperproof GRC tool.