Director of Global Security Compliance
Industry: IT
Location: Atlanta, Georgia
Date Posted: January 24, 2012
We are currently searching for a Director of Global Security Compliance to join our client on a full time basis.
Must be able to pass a background/ credit check and drug test.
Must be a US Citizen or Green Card Holder.
Position Description
The Director of Global Security Compliance is responsible for the customer compliance program, which includes managing customer relationships and addressing security risk from major financial institutions and other customers in various security areas including security operations, security engineering, physical security, investigations, third party management and security awareness. In addition, the position will serve as the initial point of contact for business development activities by assisting in the review and approval of security requirements on contracts specific to each country where our client operates to ensure that sensitive data is adequately protected during transmission, processing, and storage. The role also provides ad hoc legal support.
Job Overview
Report to the Senior Director of Global Security Compliance, and be strategically involved in key security compliance initiatives with customers, vendors, and business partners.
Represent the company when negotiating security requirements with clients and vendors, which will require effective communication skills and the ability to make rapid decisions to enable contract execution.
Assist in the development and implementation of new security policies, standards, guidelines and procedures for clients and vendors.
Respond to clients' requests for support documentation, customer questionnaires, and requests for proposals (RFP), related to security.
Act as the initial security contact for Account Relationship Managers, Information Technology personnel supporting customers, Legal and Operations Managers.
Meet with Key Clients in support of compliance and sales activities as necessary.
Manage customer compliance requirements and customer/vendor contract requirements which pertain to the following areas of Security:
Fraud, Incident Response and Investigations process
Security Assessments process
Security Advisements on key business initiatives process
3rd Party Vendor Risk Assessments process
Security Policy Awareness
Customer Security Credentialing and Auditing process
Physical Security
Emergency Response process
Security technology deployments process
Vulnerability Management process
Remediation
Attain a clear understanding of the business data lifecycle and is able to communicate with the key stakeholders about risk factors, risk mitigation and information security controls.
Able to communicate, oversee and resolve customer security concerns by providing them information about the security solutions required to meet business objectives.
Understand Gramm-Leach-Bliley Act (GLBA), Sarbanes-Oxley Act, SAS70 attestations, ISO 27001 Standards, Payment Card Industry Data Security Standard (PCI DSS), NIST standards, standard security practices, current and emerging privacy and security regulations
7-10 years of experience with information security, compliance, risk management, or technology management programs.
Ability to communicate security concepts to technical and non-technical audience and able to interact with all levels of the organization in culturally diverse locations
Currently holding or actively working toward information security certifications including but not limited to CISM or CISSP
The position frequency interacts with stakeholders from multiple business units in all countries where our client operates as well as customers and vendors on security issues which will require excellent communication and negotiation skills. As a member of the Global Security Compliance team, the candidate will also have opportunities to contribute to other security initiatives and gain exposure to additional security functions within the group.
