Match score not available

Policy Management Specialist (Security Risk & Compliance)

extra holidays - extra parental leave - fully flexible
Remote: 
Full Remote
Contract: 
Experience: 
Senior (5-10 years)
Work from: 

Offer summary

Qualifications:

5-8 years in information security, Experience with Security Policy programs, Familiarity with Archer GRC Tool, Fluent in English and Spanish, Strong communication and networking skills.

Key responsabilities:

  • Lead security policy management function
  • Facilitate policy attestation cycle
  • Support the Security Awareness Training program
  • Create training content and host events
  • Manage phishing programs and campaigns
Rackspace Technology logo
Rackspace Technology Information Technology & Services Large https://www.rackspace.com/
5001 - 10000 Employees
See more Rackspace Technology offers

Job description

Leads the security policy management function within GRC end-to-end. 

-Responsible for running policy workshops to triage policy intake request for the modification and/or creation of new policies, control standards, and procedures. This may also include troubleshooting ownership issues, or anything related to policies such as correlation to compliance frameworks, risks or general cybersecurity events and evolution.
-Responsible for facilitating the annual policy attestation cycle where owners must leverage the GRC tool, Archer to sign off or modify their control statements. This includes working together with partners across the organization who need support navigating the intricacies of policy management.
-Supporting all issues related to policy management.
-POC for everything Policy Mgmt. within GRC and for partnering areas.
-Setting long term goals and strategies to evolve policy mgmt.

Supports the Security Awareness Training (SAT) function within GRC end-to-end.

-Responsible for security onboarding for all new recruits as well as annual security refresher training. This includes maintaining current content, creation of new content, leveraging our tools for content changes and working with learning center management peers.
-Lead for National Cyber Security Awareness Month. This includes creation of the schedule of events, and executing the plan – workshops, webinars, training, games, prize, tech talks etc.
-Lead for hosting phishing program and campaigns to increase employee vigilance. This includes creating the plans, testing, prepping with technical areas to ensure conflicts don’t arise, analyzing the data during and after the phishing campaigns. This also includes fixing any and all issues that may arise regarding tool conflicts, false positives etc.
-Familiarity with common SAT platforms such as ProofPoint, KnowBe4, OneTrust, Archer etc.
-Lead for ad-hoc training and role-based training per utilized SAT platforms. Expand upon SAT program to host periodic training by function, group etc.
-Support other areas who rely on security training or awareness needs.



Required Skills
  • Direct experience managing Security Policy programs or directly supporting them within a security or IT team. Experience creating new policies and standards as well as modifications to policies and standards as needed for various compliance and regulatory purposes.
  • Experience with creating long term strategizes for the organization of Policy Mgmt. frameworks to govern internal processes with all employees.
  • Strong understanding of Archer GRC Tool. Development is not a must but navigation is.
  • Strong communication skills, ability to navigate across departments and network with various employees across the department to solve issues, host trainings, run meetings and workshops etc.
  • Supports the maturity of Governance function.
  • Develops documentation related to GRC Platform.


  • Required Experience
  • Minimum of 5-8 years of practical information security experience in developing and maintaining secure architectures for large enterprises is preferred.


  • Discover your inner Racker: Racker Life

  • Fluent, Bi-lingual (Spanish and English): interviews will be held in English.
  • Role can work remotely in the states of Ciudad de Mexico, Jalisco, Nuevo Leon, Aguascalientes, Queretaro, Estado de Mexico and Puebla.
  • This opportunity is a permanent remote job, but you need to be based in Mexico at one of the above locations.

  • #LI-JR1
  • #LI-Remote

  • About Rackspace Technology
    We are the multicloud solutions experts. We combine our expertise with the world’s leading technologies — across applications, data and security — to deliver end-to-end solutions. We have a proven record of advising customers based on their business challenges, designing solutions that scale, building and managing those solutions, and optimizing returns into the future. Named a best place to work, year after year according to Fortune, Forbes and Glassdoor, we attract and develop world-class talent. Join us on our mission to embrace technology, empower customers and deliver the future.
     
     
    More on Rackspace Technology
    Though we’re all different, Rackers thrive through our connection to a central goal: to be a valued member of a winning team on an inspiring mission. We bring our whole selves to work every day. And we embrace the notion that unique perspectives fuel innovation and enable us to best serve our customers and communities around the globe. We welcome you to apply today and want you to know that we are committed to offering equal employment opportunity without regard to age, color, disability, gender reassignment or identity or expression, genetic information, marital or civil partner status, pregnancy or maternity status, military or veteran status, nationality, ethnic or national origin, race, religion or belief, sexual orientation, or any legally protected characteristic. If you have a disability or special need that requires accommodation, please let us know.

    Required profile

    Experience

    Level of experience: Senior (5-10 years)
    Industry :
    Information Technology & Services
    Spoken language(s):
    EnglishSpanishEnglish
    Check out the description to know which languages are mandatory.

    Other Skills

    • Problem Solving
    • Training And Development
    • Security Policies
    • Verbal Communication Skills

    Policy Coordinator Related jobs