Security and Compliance Coordinator
il y a 6 heures
Espressive redefines how employees get help by delivering exceptional employee
experiences. We were founded on the belief that getting help at work shouldn’t be so hard. While
others have focused on solving the problems faced by help desk analysts, Espressive shifted the
focus to the employee — because you can’t have self-service if employees are not engaged.Barista,
our virtual support agent (VSA), brings the ease of consumer virtual assistants, such as Alexa and
Google Home, into the workplace, delivering a personalized user experience that results in
employee adoption rates of 80-85% and reduced help desk call volume of 40-60%.We've raised our
series B and are funded by some of the best VCs in the world. We have a highly experienced, small
team, led by a CEO and executive team with a proven track record of building successful companies.
**About the Role**
As a Security & Compliance Coordinator, you are responsible for maintaining and continuously
improving Espressive’s security and compliance framework, policies, and processes. You and the team
will lead control implementations that support the confidentiality, integrity and availability of customer
We are not a “check the box” organization. If business value is your primary driver, we want to talk to
you
**About the Responsibilities**
- Leading vulnerability management process, including running vulnerability scans, analyzing findings,
and tracking, coordinating, and negotiating remediation efforts with various organizational
stakeholders
- Supporting internal and external (e.g., customers, auditors) information gathering sessions
associated with information security risk assessments, questionnaires, and general inquiries
- Creating and maintaining the following, including managing the review, and approval process with
stakeholders:
- Policies, Procedures, Standards and Playbooks
- Plan of Action and Milestones (POAM’s) or comparable documentation
- System Security Plans (SSP) or comparable documentation
- Knowledge base articles, blogs, white papers or handbooks that help the organization continuously
improve security & compliance knowledge and awareness
- Coordinating audit and security testing engagements and serving as the primary point of contact
between third parties and the organization
- Administration and configuration of Governance, Risk Management and Compliance (GRC) tools,
including integration with other enterprise tools
- Continuous process improvement, automation, and scripting
- Ability to leverage your technical background to partner with highly technical teams (e.g.,
engineering, and technical operations) in the pursuit of practical implementations of technical
controls
- Partner and consult with non-technical business functions to help arrive at practical solutions and
control implementations that provide business value and meet regulatory requirements.
**Hard Skills or Qualifications Required**
following areas:
- Security standards and regulatory frameworks (in at least two of the following areas: SOC 2,
FedRAMP/NIST 800-53, ISO 27001, PCI, HIPAA or comparable)
- Vulnerability management scanning tools and familiarity with industry standard risk scoring
frameworks
- Maintaining security and compliance policies, procedures, and standards in a SaaS infrastructure (e.g.,
AWS, GCP, Azure).
- Experience implementing or supporting various aspects of a security operations center
- Knowledge of the SDLC and secure coding practices and standards
- General scripting and database knowledge (e.g., Python/Bash, PostgreSQL)
- General understanding of networking and computing infrastructure
- CISSP, CISM or comparable industry-standard information security certifications
- Strong English written and verbal communications skills
**Nice to Have**
- Experience supporting FedRAMP readiness, authorization, or continuous monitoring with a sponsoring
agency, the FedRAMP PMO or 3PAO
- Previous hands-on experience as a systems or network administrator managing configurations and
implementations in direct response to security control requirements
- Knowledge of containerization platforms and web search and analytics engines and their respective
security characteristics
- BS in Computer Science or Software Engineering
-
Business Continuity and Disaster Recovery Specialist
il y a 7 heures
Nouvelle-Aquitaine, France System One Temps plein**Position Title**: - Business Continuity and Disaster Recovery Specialist Position Location: Can be remote Provide locations/flexible work by preference: See above Ability to work remote (If so, there will need additional approvals) : Yes Acceptable time zone(s): Some flexibility by time zone Days of the week: Position may require 24 hr coverage...
-
CHEF DE RANG H/F
il y a 2 semaines
nouvelle-aquitaine, France Mandarin Oriental Jumeira, Dubai Temps pleinWe are looking for Chef(s) de Rang to join the 5* Hotel Mandarin Oriental in Dubai. Contract length is variable from seasonal to yearly. The high season in Dubai is from September to May. Regular week: 48 hours per week (including duty meals) Different F&B outlets: You can work in the 1* Michelin Star Portuguese restaurant Tasca, the Japanese Steakhouse...
-
District Manager H/F
il y a 3 semaines
Nouvelle-Aquitaine, France Healthcare Services Group, Inc. Temps pleinHealthcare Services Group (HCSG) is an experienced partner managing housekeeping, laundry, dining, and nutritional services within the healthcare market. As one of America's Most Trustworthy Companies, we have been recognized for treating our customers and employees fairly and pursuing excellence via an ever-evolving and expanding focus on training and...
-
Operations and Maintenance Technical Specialist
il y a 2 semaines
Port-la-Nouvelle, Occitanie, France Aptonet Temps pleinPosition Type: Full-time,Permanent; 35 hours contractLocation:Port-la-Nouvelle, FranceEducation Required:Bachelor's degree in engineering (Electrical, Instrumentation, Automation).Position Start:ASAPGeneral DescriptionPrinciple Power O&M Team provides operations, maintenance, inspection and repair services for floating wind projects that using the WindFloat...
-
Onsite Technical Specialist
il y a 2 semaines
Port-la-Nouvelle, Occitanie, France Aptonet Temps pleinPosition: Onsite Technical Specialist – Control Systems (Offshore Wind)Type:Full-time, Permanent (35-hour contract)Location:Port-la-Nouvelle, FranceStart Date:ASAPEducation:Bachelor's degree in Engineering (Electrical, Instrumentation, or Automation)OverviewThis role supports the Operations & Maintenance (O&M) activities of an offshore wind project using...
-
Fluid Systems Engineer
il y a 2 semaines
Rue Ariane Le Haillan, Nouvelle-Aquitaine, France HyPrSpace Temps pleinHYPRSPACEPOWERING AEROSPACE FUTURE WITH THE NEXTGEN PROPULSION TECHNOLOGYAt HyPrSpace, our mission is clear: to make advanced propulsion technology affordable and accessible for a wide array of applications, from civilian to defense. With our pioneering hybrid rocket engine, we're introducing a new era of aerospace capabilities—more efficient,...
-
Electricien industriel F/H
il y a 2 semaines
FR - EES - EES AQUITAINE INDUS - AUBEPIERRE - Eiffage Temps pleinEiffage Énergie Systèmes conçoit, réalise, exploite et maintient des systèmes et équipements en génies électrique, industriel, climatique et énergétique dans le respect des Hommes et de l'environnement.Eiffage Énergie Systèmes propose une offre sur mesure pour les marchés de l'industrie, des infrastructures et réseaux, des villes et...