ViaSat

ISO27001 Compliance Analyst

ViaSat$147K — $232K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years experience in risk and compliance, focusing on adherence to laws and benchmarks
  • 8+ years working with ISO27001:2022 and its auditing or implementation
  • ISMS Lead Auditor or Lead Implementor certified or willing to obtain
  • Strong understanding of enterprise security laws and regulations
  • Broad knowledge of infrastructure, networking, and endpoint technologies
  • Excellent administrative and interpersonal skills with attention to detail
  • Experience with GRC tools for optimizing risk and compliance functions

Responsibilities

  • Ensure compliance with ISO 27001:2022 framework
  • Communicate compliance activities across product lines and technologies
  • Support IT security compliance requests and impact assessments
  • Own resolution of identified security and data issues
  • Facilitate ISO27001 activities as a second line of defense
  • Develop and automate security and compliance documentation
  • Lead internal audits and coordinate external certification reviews

Benefits

  • Comprehensive health and wellness benefits
  • Stock and cash incentives possible
  • Opportunities for professional development
  • Flexible work arrangements
  • Travel opportunities up to 40%
Full Job Description
What you'll do

We are seeking an Information Security Analyst to help maintain a continuous state of compliance for the ISO 27001:2022 framework. You will work within our greater security organization working with the business to implement, assess, and audit security practices and technical configurations to ensure compliance goals across the company. Your responsibilities include ensuring we are complying with applicable program regulations and standards and ensuring proper security controls are operating effectively. You will also help develop performance metrics to measure our success. And as technology changes, you will be continuously tuning the program for optimal effectiveness.

You are a self-starter, that can work independently, prioritize work based on the impact to the business, and manage multiple efforts simultaneously. You will possess a broad knowledge of modern technology and security best practices, superior analytical skills, attention to detail, and discipline to ensure consistency and accuracy. Excellent verbal and written communication skills are critical to build and maintain relationships with stakeholders.

The day-to-day

  • Communicating with interested parties across several product lines and technologies on compliance activities
  • Support engineering and IT requests related to security and compliance impacting changes within the target environments.
  • Own the resolution of identified information security and data issues.
  • Facilitating the ISO27001 ISMS or similar activities as the second line of defense, providing advisory activities for Company systems
  • Assist in the development, maintenance and automation of security, risk, and compliance artifacts and documentation, including all exceptions and alternative controls implemented to address non-standard use cases.
  • Develop and implement comprehensive control effectiveness testing programs to validate ISO27001 compliance
  • Identify and lead security control ownership across all ISO27001 Annex A requirements
  • Lead internal audits and coordinate external certification reviews including audit scheduling, execution, and follow-up
  • Interacting with auditors to determine context of the risk associated with findings
  • Stay informed of industry changes, trends, and guidelines related to information security
  • Performing formal and informal risk assessments

What you'll need

  • 8+ years experience in the risk and compliance field focusing on ensuring that the company adheres to federal, state and industry laws and benchmarks
  • 8+ years experience working with ISO27001:2022 including auditing and/or implementation of controls
  • ISMS Lead Auditor or Lead Implementor certified or capable of acquiring certification upon hire
  • Ability to prepare disparate development teams for the rigors of IT framework controls
  • Deep understanding of laws and regulations related to enterprise security and risk
  • Broad knowledge of infrastructure, networking, security, and endpoint technologies.
  • Excellent administrative and interpersonal skills with attention to detail and a high degree of accuracy, together with the ability to lead several simultaneous projects
  • Exceptional interpersonal and communication skills, both oral and written; with an ability to ask clear, concise questions involving sophisticated technology to get requisite answers from business partners and colleagues.
  • Experience with a GRC tool to optimize risk, compliance, and audit functions.
  • Knowledge of risk management and governance control implementation in both cloud and on-premise based technologies
  • Ability to travel up to 40%

What will help you on the job

  • BA or BS or equivalent experience in a related field preferred
  • Security and audit industry certifications, including CISA, CIA, CISM, CISSP, SANS, CPA, etc.
  • Previous experience as, or interacting with, a third-party audit team auditing PCI DSS, NIST SP 800-171 / CMMC, and/or IT SOX
  • Project Management experience
  • Experience with teamwork and problem-solving
  • Mature knowledge of information technology: applications, back-office integrations, operations, and key business processes is required

Salary range

$147,000.00 - $232,000.00 / annually.For specific work locations within San Jose, the San Francisco Bay area and New York City metropolitan area, the base pay range for this role is $183,000.00- $274,000.00/ annually

At Viasat, we consider many factors when it comes to compensation, including the scope of the position as well as your background and experience. Base pay may vary depending on job-related knowledge, skills, and experience. Additional cash or stock incentives may be provided as part of the compensation package, in addition to a range of medical, financial, and/or other benefits, dependent on the position offered. Learn more about Viasat's comprehensive benefit offerings that are focused on your holistic health and wellness at https://careers.viasat.com/benefits.

About ViaSat

ViaSat is a global communications company that provides satellite and wireless networking technology, services, and solutions. The company was founded in 1986 and is headquartered in Carlsbad, California. ViaSat offers a range of products and services, including satellite broadband internet, in-flight Wi-Fi, and secure networking systems for government and military customers. The company has more than 6,200 employees and operates in over 50 countries. ViaSat is publicly traded on the NASDAQ stock exchange under the ticker symbol VSAT.
Learn more about ViaSat
Size
7,000 employees
Market Cap
$2.2 billion
Industry
Net Income
-$2 million
Founded
1986
5 Year Trend
+12.3%
Revenue
$2.2 billion
NASDAQ

Similar Jobs

More Jobs at ViaSat

More Information Technology Jobs

Find similar ISO27001 Compliance Analyst jobs: