Security Compliance and Reporting Lead-Cleveland, Ohio

From: Linda Melda (lmeldaat_private)
Date: Wed Dec 11 2002 - 09:38:10 PST

  • Next message: Alfred Huger: "Software Engineers - Calgary AB, Canada"

    
     ('binary' encoding is not supported, stored as-is)
    Position Title: Compliance and Reporting Lead   
    Division: Corp Information Security	     
    Reports To: Department Manager, Security Compliance 
    
    Essential Functions:
    · Define, create, and produce Enterprise Information Security 
    effectiveness metrics and scorecards from both a security program 
    management perspective as well as a line of business management 
    perspective. 
    · Analyze vulnerability data to identify risks; develop action plans and 
    track issues to resolution. 
    · Provide quantitative and qualitative analysis of metrics to assess 
    Corp’s organizational acceptance of, and adherence to, Corporate 
    Information Security standards.
    · Manage the Corporate Security Awareness program and develop training 
    programs; provide training as needed.  
    · Manage the Information Security Communications Steering Committee 
    comprised of the lines of business to ensure appropriate awareness and 
    attention regarding security posture (vulnerability, administration, 
    awareness, etc) across the Corporation.
    
    Linda Melda
    Murtech Consulting
    216-328-8580 Office
    216-328-8910 Fax
    lmeldaat_private
    
    Required Skills:
    · Bachelor degree in Business, Information Systems, Engineering or related 
    field.
    · 5 or more years of focused Information Security and/or technology 
    engineering & support experience
    · Experience with the dissemination and evaluation of Information Security 
    policies, best practices, standards, and guidelines 
    · Ability to develop security compliance evaluation metrics and collateral 
    based on Information Security policies, best practices, and guidelines.
    · Ability to analyze quantitative data, summarize results, and draw 
    conclusions. 
    · Highly consultative nature, ability to understand internal clients’ 
    business models and operational risk.
    · Excellent written and verbal communication skills 
    · Ability to interact well with Executive management of Corp and its Line 
    of Business leaders.
      
    Preferred Skills
    · Experience with vulnerability management tools
    · CISSP Certification
    
    Equipment and Software Used: 
    · Standard office equipment
    · MS Office, Lotus Notes 
    



    This archive was generated by hypermail 2b30 : Wed Dec 11 2002 - 12:38:50 PST