Security Compliance Manager

2 hours, 42 minutes ago
Full-time
Mid Level
Cybersecurity
Filevine

Filevine

Filevine is a top legal tech company revolutionizing legal work with AI-powered case management software, empowering law firms to streamline operations and enhance client services.

Specialized Consumer Services
251-1K
Founded 2015
$226M raised

Description

  • Strategize and define goals and objectives for GRC, IT audit, and risk management programs.
  • Support compliance efforts for HIPAA, SOC 2 Type I & II, GDPR, CCPA/CPRA, CJIS, and other regulatory requirements.
  • Lead and conduct audits to assess compliance with state and federal laws, rules, and regulations.
  • Plan and manage CJIS audit and training procedures, programs, services, and activities.
  • Partner with Information Security, Legal, HR, Compliance, and Development teams to implement secure IT and IS best practices.
  • Assess, prioritize, and help manage risks associated with identified vulnerabilities.
  • Perform privacy audits and compliance assessments for business units.
  • Conduct ongoing security auditing and testing to improve software security.
  • Review audit, compliance, and risk issues through resolution.
  • Maintain policy and procedure libraries and support third-party vendor risk management and security questionnaires.
  • Facilitate annual penetration testing and auditing efforts.
  • Develop familiarity with new auditing and risk assessment tools and techniques.

Requirements

  • 1-3 years of prior management experience leading a team.
  • 3-5 years of experience conducting SOC 2, HIPAA, and PCI audits.
  • 3-5 years of experience or strong knowledge of ISO, StateRAMP, FedRAMP, and CMMC frameworks.
  • 3-5 years of experience conducting security risk assessments.
  • 3-5 years of experience working with audit logs and writing scripts in SIEM tools.
  • 3-5 years of experience in Security, IT, or Compliance.
  • Experience with internal audit and risk assessment functions.
  • Familiarity with audit frameworks and risk assessment methodologies for new software solutions.

Benefits

  • Medical, dental, and vision insurance for full-time employees.
  • Competitive and fair pay.
  • Maternity and paternity leave for full-time employees.
  • Short- and long-term disability coverage.
  • Opportunity to learn from a dedicated leadership team.
  • A dynamic, rapidly growing company environment.
  • Top-of-the-line company swag.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Regulatory Affairs Manager-US

Symmetrio Professional Services

Symmetrio is recruiting a Regulatory Affairs Manager for a global healthcare software client to lead U.S. regulatory strategy and FDA submissions for Software as a Medical Device and digital health products.

12 minutes ago

FOIA Analyst

Contact Government Services 1-10 Professional Services

CGS is hiring a FOIA Analyst to support a large federal agency’s legal mission by processing Freedom of Information Act requests and managing related correspondence, records review, and requester communications.

12 minutes ago

FOIA Analyst

Contact Government Services 1-10 Professional Services

CGS is hiring a full-time FOIA Analyst to support a large federal agency’s legal mission by processing Freedom of Information Act requests and managing related correspondence and records review.

12 minutes ago

Senior Security Compliance Consultant

Ascera Internet Software & Services

112Cyber is seeking a Compliance SME to support client cybersecurity compliance engagements, including readiness assessments, advisory services, and CMMC certification work for Defense Industrial Base organizations.

Cybersecurity
27 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers