Senior Information Security Specialist

Company: Clarivate
Company: Clarivate
Location: R01-Alexandria
Commitment: Full time
Posted on: 2024-07-19 05:01
We are looking for an Information Security Specialist to join our Information Security team.This is an amazing opportunity to became part of Clarivate’s of Governance, Risk and Compliance (GRC) team, that is working cross company at all levels. This position will be responsible for maintaining and reporting on compliance activities related to information security and privacy audit processes, key security initiatives and tests, and we would love to speak with you if you have the skills and experience below.About You – experience, education, skills, and accomplishmentsBSc degree graduate in a relevant field or equivalent technical training.  Security certifications – CISO, CISSP and/or CISM preferred. 5+ years demonstrated experience in Information security at a global company.  Experience with ISO 27001/2, PCI, SOC 2 Type 1/Type 2, FedRAMP, TxRAMP, TISAXEnglish at a high level - both written and spoken Project management skills to drive projects and initiatives across multiple departments.  Excellent oral and written communication skillsWilling to work in a global team with different time zones.Ability to multitask and be a team player.It would be great if you also have...Additional languages, an advantageExperience in creating and implementing processes.Knowledge of risk assessment and security baselinesKnowledge of ISO Certifications and NIST standardsExperience handling tasks in a matrixed organizationAbout the TeamThe Governance Risk and Compliance (GRC) team in Clarivate exists as part of the overall Information Security team headed up by our CISO within the Technology Group. GRC Compliance Team is a part of the GRC team and spearheads initiatives that further the organization’s compliance goals and responsible for assessing and guiding the company’s compliance stance for Information Security in alignment with industry standards (ISO 27001, SOC 2, PCI-DSS, SOX, ISO 27017, ISO 27032, etc.) along with contractual requirements agreed with the customers.What will you be doing in this role?Implement the key initiatives/projects focused on the reduction of security risks, governance, and compliance.Leading security and privacy compliance assessments on new and existing systems, processes, and technologies.Support internal and external audit processes   such as ISO 27001/ISO 27002, SSAE 18 (SOC 2 Type 1/Type 2), FedRAMP and leading standards for Information SecurityEnhance operational effectiveness of audit activities to further align to company strategy and risk managementAssist with the education and awareness programs to promote security and privacy in the company.Inform the CISO regarding security concerns and recommend courses of actionTactically maintain and operate the risk management systemsResponding & completing security questionnaires, contract reviews, RFPs, and tendersReview proposed changes on an ongoing basis to determine the impact on securityHours of WorkThis is a full-time permanent position, primarily working core business hours in your time zone, with flexibility to adjust to various global time zones as needed.  Clarivate is an Equal Opportunity Employer Vets/Minorities/Women/Disabled
View Original Job Posting