Plan and assess IT security controls' effectiveness and manage remediation efforts. * Maintain IT security risk and compliance matrices and perform management reporting. * Oversee the Third-Party ...
Plan and assess IT security controls' effectiveness and manage remediation efforts. * Maintain IT security risk and compliance matrices and perform management reporting. * Oversee the Third-Party ...
Cybersecurity Risk Analyst IV
Gainesville, FL · On-site
$121K - $127K/yr
This senior role within the Information Assurance team of the Information Security Office is focused on conducting information security risk assessments, providing guidance and recommendations for ...
Cybersecurity Risk Analyst IV
Gainesville, FL · On-site
$121K - $127K/yr
This senior role within the Information Assurance team of the Information Security Office is focused on conducting information security risk assessments, providing guidance and recommendations for ...
This senior role focuses on conducting information security risk assessments, providing guidance for secure implementation of technology, and improving the university's risk assessment methodologies ...
This senior role focuses on conducting information security risk assessments, providing guidance for secure implementation of technology, and improving the university's risk assessment methodologies ...
Security & Compliance Analyst
Tampa, FL · On-site
The Security & Compliance Analyst is responsible for performing security risk assessment, compliance reporting, and vulnerability remediation strategies. * The position requires conducting security ...
Quick apply
Security & Compliance Analyst
Tampa, FL · On-site
The Security & Compliance Analyst is responsible for performing security risk assessment, compliance reporting, and vulnerability remediation strategies. * The position requires conducting security ...
This future opportunity is contingent upon award. • The Security & Compliance Analyst is responsible for performing security risk assessment, compliance reporting, and vulnerability remediation ...
This future opportunity is contingent upon award. • The Security & Compliance Analyst is responsible for performing security risk assessment, compliance reporting, and vulnerability remediation ...
... Maturity Assessment * Lead the evaluation of design and operating effectiveness of security ... Present risk assessments, findings, and strategic recommendations to executive leadership and board ...
Quick apply
... Maturity Assessment * Lead the evaluation of design and operating effectiveness of security ... Present risk assessments, findings, and strategic recommendations to executive leadership and board ...
... Maturity Assessment * Lead the evaluation of design and operating effectiveness of security ... Present risk assessments, findings, and strategic recommendations to executive leadership and board ...
Quick apply
... Maturity Assessment * Lead the evaluation of design and operating effectiveness of security ... Present risk assessments, findings, and strategic recommendations to executive leadership and board ...
... Maturity Assessment * Lead the evaluation of design and operating effectiveness of security ... Present risk assessments, findings, and strategic recommendations to executive leadership and board ...
Quick apply
... Maturity Assessment * Lead the evaluation of design and operating effectiveness of security ... Present risk assessments, findings, and strategic recommendations to executive leadership and board ...
Contribute to risk assessments, exception reviews, security documentation, and governance activities. * Gather and document security requirements in a manner that is easily understood by both ...
New
Contribute to risk assessments, exception reviews, security documentation, and governance activities. * Gather and document security requirements in a manner that is easily understood by both ...
New
Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
Submit the Security & Risk Assessment Report, detailing security posture, ATO status updates, and compliance remediation efforts. Job Requirements Experience: * Possess the knowledge and capability ...
Submit the Security & Risk Assessment Report, detailing security posture, ATO status updates, and compliance remediation efforts. Job Requirements Experience: * Possess the knowledge and capability ...
Submit the Security & Risk Assessment Report, detailing security posture, ATO status updates, and compliance remediation efforts. Job Requirements Experience: * Possess the knowledge and capability ...
Submit the Security & Risk Assessment Report, detailing security posture, ATO status updates, and compliance remediation efforts. Job Requirements Experience: * Possess the knowledge and capability ...
Conduct security assessments and audits to verify adherence to NIST 800-53 Rev. 5, FedRAMP, DoD IL-4/IL-5 security mandates, and Risk Management Framework (RMF) guidelines. * Maintain System Security ...
Conduct security assessments and audits to verify adherence to NIST 800-53 Rev. 5, FedRAMP, DoD IL-4/IL-5 security mandates, and Risk Management Framework (RMF) guidelines. * Maintain System Security ...
Collaborate and provide subject matter expertise in risk identification and assessment processes ... Provide independent second-line oversight of cyber and information security risk internally and ...
Collaborate and provide subject matter expertise in risk identification and assessment processes ... Provide independent second-line oversight of cyber and information security risk internally and ...
Risk Manager
Miami, FL · On-site
Collaborate and provide subject matter expertise in risk identification and assessment processes ... Provide independent second-line oversight of cyber and information security risk internally and ...
Risk Manager
Miami, FL · On-site
Collaborate and provide subject matter expertise in risk identification and assessment processes ... Provide independent second-line oversight of cyber and information security risk internally and ...
Collaborate and provide subject matter expertise in risk identification and assessment processes ... Provide independent second-line oversight of cyber and information security risk internally and ...
Quick apply
Collaborate and provide subject matter expertise in risk identification and assessment processes ... Provide independent second-line oversight of cyber and information security risk internally and ...
The IT Security Analyst II will perform all procedures necessary to ensure the safety of ... assess and address the risks associated with an outsourced relationship. SSAE (Statement on ...
The IT Security Analyst II will perform all procedures necessary to ensure the safety of ... assess and address the risks associated with an outsourced relationship. SSAE (Statement on ...
Conduct security assessments and audits to verify adherence to NIST 800-53 Rev. 5, FedRAMP, DoD IL-4/IL-5 security mandates, and Risk Management Framework (RMF) guidelines. * Maintain System Security ...
Conduct security assessments and audits to verify adherence to NIST 800-53 Rev. 5, FedRAMP, DoD IL-4/IL-5 security mandates, and Risk Management Framework (RMF) guidelines. * Maintain System Security ...
Temporary Security Risk Assessment information
What is the difference between Temporary Security Risk Assessment vs Security Analyst?
| Aspect | Temporary Security Risk Assessment | Security Analyst |
|---|---|---|
| Credentials | Certifications like CISSP, CISA often preferred | Same certifications typically required |
| Work Environment | Project-based, short-term assessments | Ongoing security monitoring and analysis |
| Industry Usage | Used during specific projects or audits | Continuous security operations in organizations |
| Search & Comparison Intent | Focus on temporary assessments and risk evaluations | Focus on ongoing security analysis roles |
The main difference is that a Temporary Security Risk Assessment is a short-term, project-specific evaluation of security risks, often used during audits or specific initiatives. In contrast, a Security Analyst performs ongoing security monitoring and analysis within an organization. Both roles require similar certifications and work in security-focused environments, but their scope and duration differ significantly.
Other
Posted 2 days ago
Job description
Location: Tolls Data Center in Boca Raton, FL. This is an onsite position, not remote.
Job Summary: The IT Security Risk and Audit Manager at the Florida Turnpike Enterprise leads the IT security risk and audit program. This role involves managing, assessing, and mitigating risks as part of the information assurance and cybersecurity program, using standards such as NIST, ISO, PCI, and ISACA. The position entails developing and implementing strategies for IT security risk and audit, conducting risk assessments, and evaluating control effectiveness.
Key Responsibilities:
- Perform reviews to ensure compliance with PCI, SOC2, ISO, and State of Florida cybersecurity controls.
- Plan and assess IT security controls' effectiveness and manage remediation efforts.
- Maintain IT security risk and compliance matrices and perform management reporting.
- Oversee the Third-Party Risk Management Program (TPRM) and analyze SOC-2 and other reports, mapping to key security controls.
- Manage IT security vulnerabilities in alignment with PCI and NIST standards.
- Identify and rank the criticality of operations and assets to prioritize risk mitigation.
- Estimate potential losses and recovery costs for critical assets if threats materialize.
- Identify and implement cost-effective risk mitigation actions, including new policies and technical controls.
- Coordinate and verify the remediation of audit findings.
- Document results and develop action plans for risk mitigation.
- Produce formal audit reports based on ISACA Audit Standards.
- Promote compliance with regulatory requirements (e.g., PCI DSS) and IT best practices.
Skills and Requirements:
- 7-10 years of IT Audit experience (CISA certification preferred).
- 3 years of IT Risk Management lifecycle experience.
- 3 years of hands-on technical experience (e.g., developer, system administrator).
- Experience with NIST 800-30 Risk Assessment Standard.
- Extensive experience with IT General Controls evaluation and design.
- Advanced skills in business process mapping, documentation, and policy development.
- Up-to-date knowledge of the current threat landscape in Information Security.
- Solid understanding of PCI DSS standards.
Education and Certifications:
- Bachelor's Degree in Computer Science, Information Systems, Business Administration, or a related field, or equivalent work experience.
- Preferred certifications: CISA and CISSP.
About Apex Informatics
Sourced by ZipRecruiter
Industry
It services
Company size
1 - 10 Employees
Headquarters location
Omaha, NE, US
Year founded
2014