Information Security Analyst IV
Apex Systems · Atlanta, GA · 1 wk ago
Information TechnologyContract
Location: Atlanta, Georgia (Partial Remote)
About the role
An opportunity is available for a talented Senior Information Security Compliance Analyst to support a Cyber Security Compliance program. As a member of the Security Compliance team, you will partner with key stakeholders across various tasks related to multiple applications and business processes. The successful candidate will have experience across multiple compliance domains with experience in security, audit process, risk analysis, control testing, and continuous improvement initiatives.
Responsibilities
- Lead the execution of Security & Compliance audits and assessments, ensuring timely and high-quality delivery.
- Manage end-to-end PCI DSS compliance assessments in accordance with PCI DSS v4.0 requirements.
- Coordinate with external Qualified Security Assessors (QSAs) during formal PCI DSS audits.
- Assess, analyze, and drive remediation of security control deficiencies and compliance gaps.
- Champion process improvement initiatives across cross-functional teams to strengthen the control environment.
- Independently investigate compliance issues, perform root cause analysis, and prepare documented reports.
- Partner with stakeholders to facilitate evidence collection, support issue remediation, and nurture strong working relationships.
- Maintain current knowledge of applicable global, federal, and state information security laws and accreditation standards.
- Conduct root cause analysis on recurring compliance issues to enhance process efficiency.
Requirements
- Bachelor’s degree in a technology-related field, or equivalent education-related experience.
- 4+ years working in audit, cyber security, and/or compliance environments in a corporate or consulting capacity, with experience in a highly technical setting.
- 2+ years executing PCI assessments or audits.
- Experience with cross-functional risk, compliance and/or information security disciplines.
- Proven subject matter expertise and auditing experience in areas such as SOX, PCI, SSAE 18, and GDPR/CCPA/CPRA.
- Experience in project management, along with organizational and planning skills.
- Experience assisting with building compliance programs.
- Relevant certification (CISA, CISM, PCIP, CISSP, ISA, etc.) is required.
- Cloud certification and/or relevant experience assessing security and compliance in the cloud is also necessary.
Preferred Qualifications
- 3+ years of Big 4 experience or in a related field.
- Experience working on Data Privacy Security Controls or Artificial Intelligence governance controls.
- Experience as a QSA or ISA.
- Technical and/or audit experience with AWS, Azure, or GCP.
- Knowledge of metrics and visualization tools such as Power BI or Tableau.
- In-depth knowledge of PCI DSS, including v4.0.1, scoping methodologies, and application in cloud environments.
Benefits
- Medical, dental, vision, life, and disability insurance plans.
- Employee Stock Purchase Program (ESPP).
- 401K program with company match after 12 months of tenure.
- Health Savings Account (HSA) on the HDHP plan.
- SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions.
- Corporate discount savings program and other discounts.
- On-demand training program, access to certification prep, and a library of technical and leadership courses/books/seminars after 6+ months of tenure.
- Certification discounts and perks to associations that include CompTIA and IIBA.
- Dedicated customer service team for consultants and a certified Career Coach.