Lead security compliance and audit management to ensure adherence to regulatory standards.
Responsibilities
Coordinate internal and external SOX and PCI audits to achieve compliance with zero material findings.
Manage the master inventory of PCI controls and consult with project teams on system changes, product reviews, and RFP responses.
Execute user access reviews and oversee timely remediation of identified issues.
Schedule quarterly PCI scans, annual internal/external penetration tests, and coordinate with technical teams to remediate medium and high-risk vulnerabilities.
Author security policies based on updated aviation, global, federal, or state directives and regulations.
Required Skills
10+ years of experience in privacy and security compliance within highly regulated, public organizations.
5+ years of experience managing teams, programs, and internal/external auditors.
Bachelor's degree in Computer Science, Information Systems, or a related field.
Proven experience delivering security solutions to complex issues on a global scale.
Strong experience managing, coaching, and mentoring team members in IT compliance.
Expertise in authoring policies based on regulatory directives.
CISA, CISSP, CGEIT, or GRC certification.
Excellent written and presentation skills for reporting to all organizational levels.