• Excellent communication skills, interpersonal skills and collaborative skills, and the ability to communicate cybersecurity and risk-related concepts to technical and nontechnical audiences at various levels.
• Knowledge and experience with information security frameworks such as ISO/IEC 2700127002, ITIL, COBIT, NIST, including 800-53 and Cybersecurity Framework
• Working knowledge of cybersecurity risk management and cybersecurity technologies.
• Experience developing and maintaining security policies and procedures.
• Experience developing, maintain and testing technology recovery solutions.
• Security related certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or other similar credentials.
• Experience with incident response within a security operations center.
• Experience with incident response tools and technologies, including tools for security information and event management (SIEM), forensics, and threat intelligence.
• Ability to communicate complex technical issues to diverse audiences, orally and in writing, in an easily understood and actionable manner.
• Understands business needs and commitment to delivering high-quality, prompt and efficient service to business customers.
• Experience with regulatory compliance, risk management frameworks and information security management frameworks.
• In-depth knowledge of cybersecurity principles, technologies, and controls, including threat and vulnerability management, incident response, and security awareness.
• Ability to interpret and apply complex compliance requirements such as HIPAA.