Who We Are
IMPLAN is the world's most trusted economic impact modeling SAAS company located in Huntersville, NC. IMPLAN enables consultants, governments, academic researchers, economic development organizations, and companies to understand economic impacts – and most importantly, how to leverage them.
We have been around for over 40 years and are entering the next phase of growth fueled by our cloud software platform. Reception has been exceptional, we have an excellent lead investor, and we are ready to accelerate!
Job Summary:
- Working with the Director of Infrastructure and Technology, the Information Security Specialist focuses on securing the daily operation of IMPLAN to protect our customer’s data and information. This role works with internal and external partners to review and refine IMPLAN’s security stature, policies, procedures, and controls. This position takes the lead on customer security and compliance requests as well as contractual security requirements.
Primary Responsibilities
- Ensure the strong security of all infrastructure, including cloud technologies, hardware, software, and network assets for internal and external information technology operations.
- Partner with the Director of Infrastructure and Technology to review customer security and compliance requests as well as relevant contract language.
- Develop and maintain IMPLAN’s policies, procedures, and controls to reflect a mature security stature.
- Work with external assessors to successfully complete annual compliance audits, such as SOC 2 and NIST Cybersecurity Framework.
- Manage IMPLAN’s risk assessment program by assessing IMPLAN sub-processors and 3rd party vendors security and compliance policies, identifying areas that would expose IMPLAN to risk.
- Provide internal team members with information security and policy training.
- Continually enhance the implementation of Datadog or similar toolsets reporting to refine and leverage real time security alerts.
- Through the use of the 3rd party tools like Fingerprint, analyze customer activity to identify prohibited use, such as account sharing and botting.
- Review penetration tests and vulnerability scans to aid the team in remediating risks.
- Stay current on security vulnerabilities, regulatory, and industry standard changes.
Skills & Experience
- Strong knowledge of infosec standards, frameworks, and benchmarks, or the ability to quickly research and apply them.
- Application of critical thinking and promptness to respond to customer security and compliance requests.
- Communicate clearly and efficiently with excellent written and verbal skills.
- Flexibility and adaptability in a changing business environment.
- Ability to lead company presentations and training sessions.
- 1+ year recent experience in an information security or compliance role preferred.
- Familiarity with GRC platforms is a bonus.
- Experience supporting SOC 2, NIST, TX-RAMP, or other security and compliance frameworks is a bonus.
Education
- Bachelor’s degree, or Associate’s degree with 2-4 years experience, in information security or related fields.
What We Offer
At IMPLAN, we have crafted a collaborative and welcoming workplace focused on achieving the specific goals laid out by our community. We are always seeking agile, engaged, and high caliber people to join our team. We are a fully remote company with the option to work from our Huntersville, NC office. We offer company social outings and a workweek that ends at 3 p.m. on Fridays. Benefits offered include:
- Medical, Dental, Vision, Short & Long Term Disability, and Basic Life insurance
- Flexible Spending Accounts
- Retirement 401k plan with Company Match
- Gym Membership Reimbursement
- Paid Time Off and 10 Company Paid Holidays
Physical Requirements
- Prolonged periods of sitting at a desk and working on a computer.
Other
IMPLAN is a remote workplace. This role requires occasional travel to our Huntersville, NC office or other locations for team meetings and client visits.
All qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veterans status, or other legally protected status.