Develop, implement, and maintain compliance policies and procedures
Collaborate in the development and maintenance of an information security policy set, including standards and processes that fit the organization at all levels and ensure the confidentiality, integrity, and availability of the enterprises’ information
Seek and confirm management approval as required
Liaise with Service Delivery and Product Development to ensure that information security architecture standards, policies, and procedures are available and enacted consistently across application development projects, programs, and eDiscovery workflows
Assist in conducting regular audits and assessments to ensure adherence to regulatory requirements
Ensure operational compliance of the information assurance and privacy compliance programs, including but not limited to SOC II, ISO 27001, and HIPAA
Monitor and analyze regulatory changes and their impact on the company
Develop and maintain a working knowledge of company's service offerings and products within the eDiscovery industry
Provide training and support to employees on compliance-related matters within an eDiscovery framework
Investigate and resolve compliance issues and complaints
Prepare and submit compliance reports to regulatory bodies and senior management
Collaborate with client services, sales, legal, finance, and other departments to ensure comprehensive compliance coverage
Maintain up-to-date knowledge of industry best practices and regulatory developments
Manage incoming security assessments from clients and ensure timely responses
Review and assess vendors within the contracting platform to ensure compliance with company standards
Oversee and maintain risk register, ensuring timely resolutions of open risks
Ensure that strategic information security and risk guidance is provided to third-party suppliers in accordance with internal frameworks and ensure compliance with enterprise and/or client required controls
Coordinate with stakeholders, subject matter experts, and external regulators with enterprise incident management, including the identification, reporting, control, and recovery of incidents
Work with stakeholders to ensure that availability of information is considered in Business Continuity and Disaster Recovery planning
Coordinate with IT leadership on IT/DR plan development and facilitate tabletop exercises
Participate in the Information Security Steering Counsel and provide guidance to non-technical members of the council to ensure all members’ effectiveness
Build sound, collaborative business relationships across the enterprise to enable a strong understanding and close alignment with business needs, direction, and risk appetite
Foster continuous improvement of enterprise’s information security and privacy compliance through accurate, timely and effective metrics and corrective action programs
Ability to plan, scope and estimate work effort to produce high quality deliverables in time/on budget
Perform other related duties as assigned
Requirements
Bachelor's degree desired
Minimum of 5 years of experience in compliance or eDiscovery
Minimum of 3 years providing SaaS services
Strong understanding of regulatory requirements and compliance standards
Background in eDiscovery, including experience with eDiscovery tools and processes
Relativity expertise a strong plus
Excellent analytical, organizational, and problem-solving skills
Ability to communicate effectively with all levels of the organization
Proficiency in compliance management software and tools
Knowledge of eDiscovery, Application Security, IT Security Policy and governance, Risk Management, Incident Management
Exceptional interpersonal skills with the ability to speak clearly and with authority to auditors, clients, regulators, and senior company personnel
Intellectual curiosity and the ability to learn new concepts quickly and efficiently
Highly solution-focused; strong sense of urgency with a passion for 100% availability
Benefits
Health insurance
401k with company match
Company paid Life & AD&D insurance
Short and long-term disability
Telemedicine
Wellness plans
Flexible PTO program
Paid volunteer days
Voluntary insurance plans including accident, hospitalization, and critical illness plans