Eastridge Workforce Solutions is seeking a Risk and Compliance Analyst for a manufacturer of memory chips that provides solutions to companies world wide.
Location: Hybrid, San Jose, CA - on site 3 days
Responsibilities:
- Assist in establishing appropriate policies and procedures based on industry best practices.
- Assist in publishing and communicating appropriate security standards and standard operating procedures to the business.
- Work closely with various departments and ensure standard policies and procedures are being followed.
- Identifying control gaps and participating in new control identification and monitoring implementation.
- Participate in security incident response activities when required.
- Ensure compliance by conducting periodic audits based on applicable policies and procedures.
- Respond to and adhere to external compliance requirements.
- Establish a formal risk management program, risk registry, and risk assessment and acceptance process.
- Development of a security configuration baseline for all network endpoints and devices.
- Work with IT to develop a change management process.
- Work with vulnerability management and IT personnel to ensure remediation actions are completed.
- Create an Information Security Dashboard that presents metrics from various security controls and technologies.
- Assist in the information security awareness training program across the business.
Requirements:
- Minimum 4-6 years of security experience, preferring to work in a Risk/Compliance role.
- Bachelor's degree in computer science, Information Systems, cyber security or relevant field.
- Hands-on experience with Splunk Enterprise Security, Netskope CASB solution & Enterprise Immunity Solutions is preferred.
- One (or more) of the following certifications: CISSP, CISM, CISA, CRISC.
- Previous experience in Semiconductor (or R&D) business.
- In-depth knowledge and experience implementing various compliance and risk management frameworks.
- Hands-on knowledge of networking protocols and standards (e.g., TCP/IP, IPSEC, routing protocols, 802.1x).
- Documented experience and success in the following areas including Risk Management, Auditing/Compliance, Configuration Management, Employee Education, and Vulnerability Management.
- **Bi-lingual in Korean/English speaking**
-
Benefits: Use this link bit.ly/4cGUQSh to learn more about benefits available to Eastridge’s temporary employees. From time to time Eastridge’s clients may offer additional benefits to Eastridge employees while on assignment. Information about those benefits will be communicated when applicable.
Eastridge Workforce Solutions is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. We celebrate diversity and are committed to creating an inclusive environment for all employees. Please note that Eastridge is unable to provide visa sponsorship to applicants.
Certain clients require Eastridge to perform background checks and Eastridge will consider qualified applicants with criminal histories in a manner consistent with any applicable federal, state, or local law regarding criminal backgrounds, including but not limited to the Los Angeles Fair Chance Initiative for Hiring and the San Francisco Fair Chance Ordinance.
#IPROPLUS
Telecom Communications Privacy Notice: By submitting for this position you will receive a text message from us and you agree and authorize us to send you text messages; you can reply STOP at any time to opt-out of text messaging from us.