Job Description
Job Description
Description :
Cybersecurity is set to become a $10 trillion criminal enterprise by 2025, outpacing the illegal drug trade and we are looking for a full-time (exempt) Security Practitioner looking to enrich their professional career. In this position, you will have the opportunity to impact one of the most important problems of our time with an elite team and firm.
As an Associate, you will play a crucial role in providing support and assistance to senior consultants and project teams. This position involves collaborating with clients, conducting research, analyzing data, and contributing to the development and implementation of solutions to meet client needs. From professional development, the Associate is focused on learning and delivering exceptional client service via the risk3sixty way. The Associate Consultant will work closely with various stakeholders to gain hands-on experience and ensure the successful execution of consulting projects.
At risk3sixty, we are employee-centric innovators that dream big, take calculated risks, and challenge the status-quo. It’s simple : we can’t accomplish our mission without diverse teams innovating and pushing together. Therefore, we prioritize giving all team members an opportunity to enrich and enlarge their careers through customized career planning and opportunities to participate in various management and leadership training programs built in-house.
Core Responsibilities
In this role, you will :
- Support the delivery of risk and technology around Governance, Risk, and Compliance (GRC) programs on time and within budget
- Understand and stay within the scope of projects
- Efficient walkthroughs and collection and testing of evidence
- Regularly interact with peers and clients as both an auditor and a consultant
- Provide timely, comprehensive, and accurate information and reports in both written and verbal communication
- Manage priorities, and tasks on projects to achieve delivery of critical numbers
- Work in a fast-paced environment where no two weeks are the same
- Research industry leading practices related to GRC
Requirements :
Education and Experience
Bachelor's degree in computer science, business management, technology, or other relevant service area, or equivalent years of experience directly related toFamiliarity with risk3sixty’s services and relevant professional standards, duties, and responsibilities specifiedBasic knowledge of cloud technology and security domainsHigh level of attention to detail and quality work productExcellent time management, organizational, and verbal and written communication skillsAbility to work on-site or remotely as a valuable contributor to a collaborative teamCapable of simultaneously managing assigned tasks for multiple projectsProficient using Microsoft Word, Excel, and PowerPointPrior direct information security exposure preferred in one of the following domains : Governance (e.g., policy development, reporting to senior management), Risk Management (e.g., risk identification, treatment, and project management), Compliance (e.g., supporting operation of controls, internal audits, external audits)Ability to manage and prioritize tasks and activitiesMust be open to constructive feedback and strive for continuous improvementBonus :
Project Management experienceConsulting / client facing experienceUnderstanding of security frameworks such as ISO 27001, ISO 27701, NIST 800-53Exposure to internal / external auditsEntry-level security certifications (e.g., Security+, CCSK, AWS Cloud Practitioner)Physical Requirements?
Prolonged periods sitting at a desk and working on a computerMust be able to lift up to 10 pounds at times