- Design, Implement, and Maintain ISMS: Develop and manage an effective Information Security Management System (ISMS) aligned with OpenLM's specific requirements, including:
- IT Asset Management
- Risk Management
- Change Management
- Business Continuity Planning
- Cyber Security Assessment and Management: Conduct regular assessments to identify and mitigate potential cyber threats.
- Threat and Vulnerability Management: Proactively identify, assess, and manage threats and vulnerabilities to minimize potential impact.
- Privacy Assessment and Management: Ensure compliance with privacy regulations and best practices through ongoing assessments and management.
- Incident Response: Document and manage security incidents, and implement corrective actions to address identified security gaps.
- Documentation and Compliance: Develop and maintain comprehensive documentation for IT security policies, procedures, and processes to ensure compliance with industry standards and regulations.
- Customer and Prospect Security Questionnaires:
Complete security questionnaires from customers and prospects accurately and in a timely manner.
- Security Compliance and Improvement: Analyze customer and prospect security requirements to identify opportunities for enhancing OpenLM's compliance with current security standards.
- Security Certifications: Prepare and guide the company through the process of maintaining relevant security certifications, such as ISO 27001, SOC-2, GDPR
Requirements
- Experience with Key IT Security Compliance Standards
- Experience with Process Documentation
- Robust Understanding of Networking, Firewalls, and Antivirus Systems
- Experience with IT Asset Management (ITAM) and Business Continuity Planning (BCP)
Additional Desirable Experience:
- Knowledge of industry-standard security frameworks
- Experience in a similar role within the technology or software industry