A company is looking for a Staff Information Security and Risk Engineer.
Key Responsibilities
Develop and maintain an effective Information Security Management System for compliance with ISO 27001 and Hi-Trust certifications
Oversee audits, communicate outcomes, and provide guidance for process improvements
Participate in vendor management and define security requirements for third-party vendors
Required Qualifications
Extensive knowledge of security frameworks (e.g., SOC 2, ISO 27001, NIST CSF)
Experience with Software-as-a-Service (SaaS) and cloud environments (e.g., AWS, Azure)
Experience managing audits and third-party vendor management programs
Knowledge of GRC and security engineering technologies and services
Proven experience collaborating with stakeholders to build secure processes
Information Security Engineer • Chandler, Arizona, United States