V

IT Compliance and Security Administrator

Vls Environmental Solutions Llc
Full-time
On-site
Houston, Texas, United States

We are seeking a detail-oriented and proactive IT Compliance and Security Administrator to join our team. The successful candidate will be responsible for conducting regular audits to ensure compliance with NIST 800-171 and other relevant standards, implementing and maintaining IT security policies and procedures, and preparing documentation related to compliance activities. They will monitor and manage managed security service provider (MSSP) activities regarding security systems, conduct risk assessments, and develop risk mitigation strategies. The role involves coordinating with third-party vendors for regular penetration tests, analyzing test results, and managing remediation plans.

Additionally, the administrator will implement AI security measures, stay updated on security trends, train and mentor colleagues, deploy security awareness training, and manage security incidents. They will collaborate with acquisition teams during due diligence, work closely with various departments to ensure security compliance, and integrate best practices into departmental processes. Strong interpersonal, communication, and business knowledge are essential for this role.

 

Job Responsibilities:

 

  • Part of a team responsible for the roll-out of NIST cybersecurity standards, including the development and execution of implementation plans tailored to the organization's needs.
  • Conduct regular audits to ensure compliance with NIST 800-171 and other relevant standards.
  • Implement and maintain IT security policies and procedures in alignment with compliance requirements.
  • Prepare and maintain documentation related to compliance activities and audits.
  • Monitor and manage MSSP activities regarding the application and implementation of security systems, including firewalls, intrusion detection/prevention systems, and antivirus solutions.
  • Conduct risk assessments to identify vulnerabilities and recommend remediation actions.
  • Develop and implement risk mitigation strategies and controls.
  • Work with third-party vendors to conduct regular penetration tests.
  • Analyze penetration test results and provide detailed reports with recommendations for improving security posture.
  • Develop and manage the activities of a comprehensive remediation plan based on test findings.
  • Implement and oversee AI security measures to protect against threats to machine learning models and ensure the integrity and confidentiality of AI-driven systems and data.
  • Stay updated with the latest security trends, technologies, and best practices.
  • Train, mentor, and work closely with colleagues to promote and ensure adherence to security best practices, fostering a culture of continuous learning and vigilance within the organization.
  • Deploy security awareness training campaigns via our platforms and ensure employee participation.
  • Monitor and report on security incidents and breaches.
  • Coordinate response efforts and manage security breaches effectively.
  • Collaborate with acquisition teams during the due diligence and integration phases of an acquisition to ensure security compliance is met and maintained throughout the process.
  • Work closely with all departments, including Accounting, HR, and Safety, to ensure security compliance and integrate security best practices into departmental processes. Strong interpersonal and communication skills, coupled with a solid understanding of business operations and needs, are essential for effectively collaborating with diverse teams.

 

Requirements:

 

  • Experience with NIST 800-171 implementation and certification is required.
  • Ability to obtain necessary security clearance in compliance with NIST 800-1714-8
  • Bachelor’s degree in information technology, Computer Science, or a related field.
  • Professional certifications such as CISSP, CISM, or CISA are highly desirable.
  • Minimum 4-8 years of experience in IT security and compliance roles.
  • Strong knowledge of security standards and frameworks (e.g., NIST 800-171, ISO 27001, etc.).
  • Experience with security tools and technologies (e.g., firewalls, IDS/IPS, SIEM).
  • Proficiency in analyzing penetration test results and managing remediation plans.
  • Excellent analytical and problem-solving skills.
  • Strong communication and interpersonal skills.
  • Project management experience with the ability to lead and manage multiple projects simultaneously.
  • Ability to work independently and as part of a team.
  • A genuine willingness to learn and stay updated with technological advancements.
  • Must be a US citizen

 

Working Conditions:

  • In-office position with some flexibility, allowing for occasional remote work when needed.
  • This role may require travel to remote facilities as needed.
  • The role may require occasional weekend or evening work to provide support during non- business hours.
  • The job may involve sitting for extended periods and using a computer while maintaining strong documentation practices, a friendly and professional attitude, and some travel to support sites within the area as necessary.

What's in it for you!

At VLS our employees are the core of our business. As such, we value our employees’ physical, mental, and financial wellbeing by providing first class, high value benefits and resources that are centered around a proper work-life balance. 

  • Physical and Mental Wellbeing: VLS is committed to supporting our employees’ physical and mental health by providing:
  • Medical, Dental and Vision Insurance - Based on each employee’s need, we offer various high quality, low-premium medical, dental and vision plans, which include our first-in-class concierge service (available in Spanish) and 2nd MD Offering. 
  • Flexible Spending Accounts (FSA) and Healthcare Saving Accounts (HSA) – Set aside pre-tax money to use toward your health care spending. VLS provides an employer contribution to all HSA accounts.
  • Time Off - We offer 11 (eleven) company-paid holidays, in addition to our paid time off and voluntary time off plans. 
  • Employee Assistance Program – 24/7 assistance and counseling services that are 100% confidential and free to all employees and their dependents.
  • Telemedicine – All employees and dependents receive free virtual visits by licensed practitioners any time, any day…including holidays!

 

Financial and Retirement Planning: At VLS we offer the following to assist our employees with planning around their finances and saving for retirement: 

  • 401(k) - Generous 401(k) matching program after 90 days of employment. VLS will match up to 5% of your pay every pay period. Matching contributions are 100% vested immediately.
  • Life and Disability Insurance – Employer-paid life insurance, along with short-term and long-term disability coverage provided to all full-time employees.
  • Voluntary Life Protection Plans – Employees and their dependents can elect coverage in our voluntary life/add, critical illness, hospital indemnity and accident plans. 
  • Rewards and Recognition Programs – We celebrate our employees! From birthdays to anniversaries and other various milestones/achievements, we have programs in place to recognize our employees.
  • Financial Planning - Free One on One financial planning with a certified Financial Planner/Coach.
  • Employee Discount - Employee Discount Program for savings on everyday goods and services at various retailers throughout the US.