*Role: **Data Compliance Lead (or) Information Security Architect*

*Location: **Denver, CO*

*Duration: 6+ Months with possibility extension*



*Position Summary:*

The Data Compliance Lead’s role is to ensure the secure operation of the
in-house systems, servers, and network connections in accordance with
internal processes, procedures, and compliance requirements as well as
Federal, State and Local laws. Tasks also includes conducting regularly
scheduled audits on internal systems and hosting third-party and/or Cloud
 audits as required in order to maintain certifications and compliance
certificates. The data compliance lead also develops implements, maintains,
and oversees remediation and enforcement of internal security policies and
procedures.



*Top 3 Must Have Skills:*

·         Data Compliance Lead is responsible for designing, publishing and
reviewing technology designs, security controls and solutions to reduce the
risk of unauthorized access, transmission and storage of confidential Ex:
IRS 1075, IRS Pub 1075, TOP, SSA, DHS, and  PII and FTI data.

·         Partner with security architects, other functional-area
architecture, engineering, and security specialists to ensure adequate
security solutions and controls are in place throughout the IT systems and
platforms to mitigate identified risks sufficiently, and to meet business
objectives and regulatory requirements

·         Provide expert-level guidance to security analysts, testers, and
development teams during application security assessments. Must be able to
identify, re-create, and remediate security defects



*Other Desired Skills*

·         As and an expert/lead technical will define the information
security architecture and design for the application.

·         Providing training for development and QA teams on how to
implement Secure Software Development Life Cycle S-SDLC into their existing
practices

·         In-depth knowledge on common web application security flaws and
secure coding practices and the ability to clearly explain security issues
to project and development staff

·         Ability to prioritize and track security issues and work with the
necessary teams to ensure remediation

·         Serve as a leader by promoting security awareness, mentoring
other team members, and staying up-to-date on current development
methodologies (Agile/DevOps)

·         Understand HTTP, REST, SOAP, XML and JSON as it relates to APIs
and AJAX, Experience using and compliance testing REST and/or SOAP APIs

·         Understanding of AWS, Azure, and other cloud solutions, security
issues and Security controls in those environments



*Desired knowledge and experience includes*

·         7+ years in Information Security space

·         5+ years in enterprise software development

·         Strong development background with prominent web or mobile
development languages and frameworks, provide security remediation advice
to development and testing teams;

·         Strong experience with Threat Modeling in an enterprise, not just
theoretical

·         Strong oral, written, and presentation abilities -able to convey
risk to all levels of the business, from C-level executives to operations
and development teams

·         Strong understanding of web applications and architectures,
relational and non-relational databases, and hardware architectures, and
effectively applying the principles of information security to IT
environments

·         Strong experience working in a multi-platform, multi-protocol,
distributed enterprise computing environment

·         Experience with Unix/Linux and Windows system administration

·         Some understanding of governance frameworks such as ITIL and ISO
27001;

·         Some project management experience: Able to assess needs, define
objectives, identify resources needed to achieve objectives and begin
implementation towards goal completion;

·         Must be able to work effectively alone and as part of a larger
project team.

·         Current understanding of Industry trends and emerging threats





*Thanks & Regards,*



*Mohammad*

*Sr. Recruiter*

*Saicon Consultants, Inc.*

(408) 216-2646 Ext 149 (W)

(913) 273-0058 (F)

 Email: mash...@saiconinc.com

*SBA 8(a) Certified /WBE/MBE/DBE/SDB*

*Inc.500 Company – 2006. 2007, 2008, 2009 & 2010*

*Ranked #1 " Fastest-Growing Area Businesses" - Kansas City Business
Journal - 2006*

*Ranked in Top 10 of Corporate 100 - Ingram's - 2006 & 2007*

*CMMI Level 3 *

*ISO 9001:2008 Certified*

-- 
You received this message because you are subscribed to the Google Groups "SAP 
Workflow" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to sap-workflow+unsubscr...@googlegroups.com.
To post to this group, send email to sap-workflow@googlegroups.com.
Visit this group at https://groups.google.com/group/sap-workflow.
For more options, visit https://groups.google.com/d/optout.

Reply via email to