SonicJobs Logo
Left arrow iconBack to search

Security Operations & Compliance Engineer

VAPOTHERM, INC.
Posted 15 days ago, valid for a month
Location

Exeter, NH, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • The position involves collaborating with cross-organizational stakeholders to assess the relevance of security policies and their business impact.
  • Candidates must have a Bachelor's Degree in Computer Science or a related field and five years of experience in roles such as Information Security Lead or Chief Security Officer.
  • Responsibilities include developing cyber resilience strategies, designing various security policies, and conducting risk assessments and security training.
  • The role requires at least one year of experience in implementing security controls and designing risk management policies.
  • The job offers a telecommuting option and requires a commitment of 40 hours per week, with a competitive salary based on experience.

Work with cross-organizational stakeholders to determine the understandability and relevance of published security policies and their impact on the business. Develop cyber resilience strategies. Design policies and procedures regarding risk management, access control, cloud security, patch management, and change management. Interact with management and stakeholders to implement security controls. Provide supporting guidelines and tools to enable a culture of security. Complete Gap Analysis of Enterprise Cyber Security and Product Security and Forming an Information Security Steering committee and charter. Present Gap Analysis to Security Steering Committee and Audit Committee and obtaining buy-in for Info Sec Initiatives and tasks. Design information security policies and procedures for the organization such as access control policy, risk management policy, cloud security policy and procedures, BCP/DR, Secure Development Policy, Patch management, Third-party vendor risk assessment and Change Management Policy. Document business initiatives and their security implications and assess Risk Management (Identifying, Assessing and Controlling) risks. Conduct security awareness and training across the enterprise and supporting businesses based on the security and operational risks identified. Conduct BIA, risk assessments and providing reports to the leadership team and stakeholders. Design Security Management Plan for the product teams to enable implementation and controls. Design and train Product teams on security and Privacy by Design. Interact with third party vendors in price and service negotiations for onboarding security MSP and tools. Respond to Cyber insurance renewal questionnaires and Product Customer Security Risk Assessments. Integrate different SAST and DAST tools to JIRA and automation. Submit for FDA 510k. Threat Modelling (STRIDE) for Products and training Software Architects in using Threat Model requirements for FDA submissions. Work with Quality control and Regulators for Safety Risk Assessment of the Product. Work with Department of Defense on Product Security assessments. Work with GCP, Azure, Active Directory, Security Command Center, Cisco Meraki Firewall, Crowdstrike, Intune, Zoho, Nessus, Burp Suite, Kali Linux Microsoft TMT, Snyk SAST, Helm SBOM, JIRA, Service Desk, Outlook, wizer security. 40 hrs/wk. Must have Bachelor’s Degree (3 or 4 year U.S. or foreign degree) in Computer Science, Computer Applications, or a related field, and five (5) years of experience in the proffered position, or as Quality Assurance Specialist, Information Security Lead, Chief Security Officer, or related occupation. Must have 1 year experience developing cyber resilience strategies; Designing policies and procedures regarding risk management, access control, cloud security, patch management, and change management; Interacting with management and stakeholders to implement security controls. Telecommuting permitted. Email resume referencing ID#382 to hr@vtherm.com or mail resume to: HR, Vapotherm, Inc., 100 Domain Drive, Suite 102, Exeter, NH 03833.




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.