About 3T Staffing:
Rely on our handpicked, trusted and professional talent scouts to be your permanent staffing service providers. Our primary goal is to match talented candidates with well sought-after companies. We are the bridge to get you in front of desirable employers who are currently hiring in your niche. Please visit us at https://3tstaffing.com
Network & Security Compliance Officer
About the Role:
The Network and Security Compliance Officer plans, executes, and manages multi-faceted projects related to security standards compliance, risk management, mitigation and response, control assurance, and user awareness.
Duties and Responsibilities:
- Create and update information security policies and procedures
- Conduct internal audits to ensure that non-conformities are identified and remediated
- Provides Level 2 support, Coordinates problem resolution among a variety of functional areas and provides subject matter expertise support
- Maintain compliance with security standards and licensing requirements including ISO 27001, MGA, PCI-DSS and GDPR
- Administer third party security programs including vulnerability scans, security information and event management (SIEM), File integrity monitoring (FIM) and penetration testing
- Responsible for the Security Awareness and other mandatory security training programs
- Develop metrics/KPIs to report on security and privacy compliance performance
- Monitoring IDS/IPS and bot mitigation alerts and investigating issues with relevant IT teams and advising on proper action
We offer:
- An environment passionate about growth and learning
- Competitive salary with bonus
- Fitness subsidy program
- Snacks and beverages in the office
- Workplace that is conveniently located along the Yonge/Sheppard line
We are looking for:
- Must always be available on call for Tier 2 escalations
- Familiarity with a variety of the information security, networking, and governance concepts, practices, and procedures
- Solid development experience of real world application of ISO standards, GDPR, PCI-DSS, and various gaming commission compliance requirements
- Demonstrated ability to multi-task and operate in a high stress environment
- Expert knowledge in the areas of risk assessment, strong understanding of secure communications, secure data storage, secure systems development, secure systems deployment and documentation
- Ability to clearly communicate with technical and non-technical stakeholders
- Strong analytic, conceptual and problem solving abilities with attention to detail is needed. Individual must be self-motivated, team player, action and results oriented
- Proficiency in written and spoken English is a must