To advance the IT Compliance program including coordinating and reporting of the work;
To represent Sedgwick IT with specialized knowledge of IT Compliance activities and standards to clients, carriers and external stakeholders.
Conduct comprehensive security risk assessments of third-party suppliers, including reviewing security questionnaires, certifications (e.g., ISO 27001, SOC 2), and supporting documentation.
Collaborate with internal stakeholders (e.g., Procurement, Legal, IT Security) to ensure supplier engagements align with the organization’s security and compliance requirements.
Identify and document security gaps , assess risk levels, and recommend appropriate remediation actions.
Track and follow up on remediation plans and risk mitigation efforts with suppliers.
Maintain accurate and up-to-date records of supplier assessments and risk ratings in compliance tracking systems.
Support the development and continuous improvement of the Supplier Information Security Program, including policies, procedures, and assessment tools.
Stay current with evolving regulatory requirements (e.g., GDPR, HIPAA, CCPA) and industry standards (e.g., NIST, ISO, CIS).
Assist in preparing reports and metrics for leadership and audit purposes.
Requirements
Four (4) years of years of information technology, accounting or closely related industry experience or equivalent combination of education and experience required to include two (2) years project management and/or experience in a team environment.
Benefits
Career development and promotional growth opportunities
A diverse and comprehensive benefits offering including medical, dental vision, 401K, PTO and more