Campus Pride Jobs

Mobile Campus Pride Logo

Job Information

TEKsystems Data Privacy And Compliance Analyst in Huntsville, Alabama

Active DoD Secret Clearance required

The Data Privacy and Compliance Analyst is responsible for assessing business policies, procedures, and operations to ensure the organization meets privacy requirements and government regulations for the protection of sensitive information. Privacy and Compliance Analysts manage the legal and operational risks related to sensitive and critical information assets, continuously assess business unit operations, and develop policies, procedures and user training necessary to meet or exceed privacy requirements.

Job Duties:

Assists with difficult cybersecurity questions and requests from government customers.

Direct sponsor engagement as required to review current and planned requirements for secure infrastructures that require compliance.

Guide requirements gathering and analysis.

Leads validation of security control configuration on systems, ensure all systems are configured to necessary controls, such as NIST, DFARS 252.204-7012, CMMC, and other similar requirements.

Articulates privacy requirements into product life-cycle including definition, requirements analysis, synthesis, cyber engineering analysis and implementation.

Conducts privacy impact analyses and identify areas needing improvement and recommend necessary enhancements to achieve privacy goals.

Reviews modifications to critical information systems and directs implementation of configuration changes.

Mentors lower-level cybersecurity and IT professionals across the enterprise.

This role performs as a senior cyber audit and compliance specialist responsible for managing and driving efficiencies across the Security Regulatory Compliance programs at the laboratory (lab) level, including DFARS 7012, CMMC, based on NIST frameworks such as SP 800-171 and SP 800-53.

Additional Skills & Qualifications:

8-10 years of related cyber experience preferred

Experience in cyber-Governance, Risk, and Compliance (GRC).

Experience in a cyber assessment or inspection related role, ideally with experience in cybersecurity incident response.

Experience with industry-recognized security compliance frameworks (NIST, PCI-DSS, HIPAA, etc.).

Experience with data aggregation/analytics and/or SIEM tools.

Experience with Endpoint Detection and Response (EDR) solutions.

Experience with Vulnerability Management tools.

Effective project management and organizational skills, including managing multiple, concurrent tasks and meeting deadlines.

Ability to mentor team members at all levels, develop training plans, and foster personal and professional growth within the team.

CompTIA Advanced Security Practitioner (CASP), Certification Authorization Professional (CAP), GIAC Security Leadership Certificate (GSLC), Health Care Information Security and Privacy Practitioner (HCISPP), or equivalent certification.

Experience Level:

Expert Level

The ideal candidate for this role is able to provide leadership and mentoring to the team while also being able to participate in technical audit and compliance activities as needed. They also have both technical expertise and experience, as well as communication and leadership skills to influence and seamlessly collaborate across multiple stakeholder groups!

About TEKsystems:

We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.

The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.

DirectEmployers