Security Risk and Compliance Management Specialist III

United States - Remote
Corporate Functions - CTO & Strategy – Global Enterprise Security and Automation /
Full - Time /
Job Summary: Act as an advocate in development of overall information security program globally. Creates and performs global IT Risk and Compliance assessments. Assists in development and execution of information security, compliance, and risk best practices globally through audits, assessments, and policymaking. 
Work Location: Remote

Key Responsibilities:

    • Assists in annual audits for industry specific reports, including ISO 27001, ISO 9001, ISO 14001, ISO 18001, IRAP-AUS, Cyber Essentials+, NHS-DSO, SOC1, SOC2, SOC3, PCI, HIPAA, HiTrust, CyberGRX.
    • Ensure documents, projects, process, and product initiatives comply with regulatory and legal requirements and enterprise policy.
    • Provide data and analytics in support of the risk officer and risk committees.
    • Develop and recommend compliance solutions impacting the enterprise.
    • Develop Risk Assessment process, charters, policies, methodologies, and reports.
    • Participate in cross-functional workgroups, communication strategies, and planning meetings to develop solutions that meet the objectives of both the business and the IT Risk, Compliance, and Information Security team.
    • Coordinate and respond to regulatory requirements and requests and ensure the execution of examinations.
    • Conduct IT Risk and Information Security due diligence activities relative to vendors and third parties.
    • Conduct risk assessments and documents findings where the deviation from an information security or IT Risk policy or standard is desired.
    • Ensure risk remediation plans meet key business objectives and partners with the business owners to follows through with corrective action steps.
    • Provide guidance on areas of security, privacy and regulatory compliance to Sales, Marketing, Product Development, Legal and Policy teams.
    • Conduct analysis of risk rating, risk appetite, and provides data driven summaries to business leaders.
    • Update internal control matrices where necessary to support annual changing environments.
    • Executes the conduit between internal control owners and external auditors, including kickoff meetings, interview requests, closing meetings, and evidence gathering.
    • Execute internal customer audits which include scheduling, presentation of the Rackspace compliance portfolio, and overseeing the successful visit in conjunction with Account Managers.


    • At least five years of related experience
    • Bachelor’s degree in Computer Science, Computer Studies, Information Technology, Information Security or a related field.
    • Prefer CISSP.
    • Advanced knowledge gained through an IT Risk Management, Governance, Risk and Compliance, Information Security, Data Privacy, Vendor Management, and/or Business Continuity Management role in a global organization, professional services/consulting firm, or within a related industry.
    • Understanding of Network Security, Data Center operations, build pipeline, and cloud infrastructure security.
    • Deep understanding of Cloud Computing technologies and migration challenges.
    • Ability to implement security controls, SCTMs. Technology/software sales, consulting, or equivalent skills.
    • Ability to apply knowledge of vulnerability management, risk management assessment, and IA policy and procedures to develop, implement, and maintain a secure business environment.

    • Discover your inner Racker: Racker Life
The following information is required by pay transparency legislation in the following states: CA, CO, HI, NY, and WA. This information applies only to individuals working in these states.
•The anticipated starting pay range for Colorado is: $89.300 - $130,900. .
•The anticipated starting pay range for the states of Hawaii and New York (not including NYC) is: $95,000 - $139,260.
•The anticipated starting pay range for California, New York City and Washington is: $104,000 - $152,570.
Unless already included in the posted pay range and based on eligibility, the role may include variable compensation in the form of bonus, commissions, or other discretionary payments. These discretionary payments are based on company and/or individual performance and may change at any time. Actual compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, licenses and certifications, and specific work location. Information on benefits offered is here.#LI-MF1 #LI-Remote

About Rackspace Technology
We are the multicloud solutions experts. We combine our expertise with the world’s leading technologies — across applications, data and security — to deliver end-to-end solutions. We have a proven record of advising customers based on their business challenges, designing solutions that scale, building and managing those solutions, and optimizing returns into the future. Named a best place to work, year after year according to Fortune, Forbes and Glassdoor, we attract and develop world-class talent. Join us on our mission to embrace technology, empower customers and deliver the future.
More on Rackspace Technology
Though we’re all different, Rackers thrive through our connection to a central goal: to be a valued member of a winning team on an inspiring mission. We bring our whole selves to work every day. And we embrace the notion that unique perspectives fuel innovation and enable us to best serve our customers and communities around the globe. We welcome you to apply today and want you to know that we are committed to offering equal employment opportunity without regard to age, color, disability, gender reassignment or identity or expression, genetic information, marital or civil partner status, pregnancy or maternity status, military or veteran status, nationality, ethnic or national origin, race, religion or belief, sexual orientation, or any legally protected characteristic. If you have a disability or special need that requires accommodation, please let us know.