The Cyber Risk and Compliance Manager will oversee compliance with industry standards, collaborate with teams on security controls, manage audits, and support risk management.
At Cox Communications Inc. (CCI), we take security seriously. After all, we're in the business of connecting businesses to products, services, and technologies they need to operate each day, so we only enlist the best in the business. We are searching for a Cyber Risk & Compliance Manager that will provide subject matter expertise for RapidScale, a Cox Business company, in controls management, internal assessments, external audits, and risk management. This role supports the broader GRC function and collaborates cross-functionally to uphold compliance with industry standards and regulatory frameworks.
At RapidScale, exceptional technology is powered by exceptional people. As a growing leader in secure, reliable managed cloud solutions, we help SMBs and enterprises alike simplify IT and unleash innovation. With a broad portfolio spanning AWS, Azure and Google Cloud to a full set of Hosted Cloud and Cybersecurity solutions, RapidScale helps companies turn technology into their biggest competitive advantage. As part of the Cox family of companies, we offer best-in-class benefits, a commitment to work-life balance, and an award-winning workplace experience.
PRIMARY RESPONSIBILITIES AND ESSENTIAL FUNCTIONS:
QUALIFICATIONS AND EXPERIENCE:
Minimum
Preferred
At RapidScale, exceptional technology is powered by exceptional people. As a growing leader in secure, reliable managed cloud solutions, we help SMBs and enterprises alike simplify IT and unleash innovation. With a broad portfolio spanning AWS, Azure and Google Cloud to a full set of Hosted Cloud and Cybersecurity solutions, RapidScale helps companies turn technology into their biggest competitive advantage. As part of the Cox family of companies, we offer best-in-class benefits, a commitment to work-life balance, and an award-winning workplace experience.
PRIMARY RESPONSIBILITIES AND ESSENTIAL FUNCTIONS:
- Collaborate with cross-functional teams to ensure they are properly managing security controls, understand their operations, and ensure compliance with standards.
- Monitor and enhance the controls needed to achieve and maintain SOC1,SOC 2, ISO 27001, PCI DSS, HITRUST, HIPAA, and other compliance requirements. You'll also test these controls when the need arises.
- Help external parties on projects related to compliance or other security initiatives.
- Provide governance over internal assessments and external audits of the compliance programs.
- Develop and maintain remediation plans alongside our remediation owners, then track the remediation plans until they're complete.
- Manage the control frameworks that support our security compliance objectives.
- Maintain the tools and processes that keep our compliance monitoring going strong.
- Performing control reviews ( e.g., user access reviews, quarterly compliance reviews)
- Help out with the development of key reporting metrics and executive presentations to make sure there is always an awareness and support of our compliance programs.
- Provide subject matter expertise to legal, sales, and additional boundary partners regarding the applicability of cybersecurity provisions and/or compliance requirements for a particular product or service.
- Process requests for security compliance attestation (i.e., SOC 1 and SOC 2 reports, PCI, HITRUST, ISO 27001, etc.) for authorized customers.
- Assist sales in responding to customer inquiries that are focused on the cybersecurity controls for selected products (i.e., completing cybersecurity questions or questionnaires).
- Build consensus across boundary partners and business partners to appropriately manage cybersecurity risk.
- Proactively represent the cybersecurity team requirements in the development and delivery sales support capabilities.
QUALIFICATIONS AND EXPERIENCE:
Minimum
- Bachelor's degree and 6 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 4 years' experience; a Ph.D. and 1 year of experience; or 10 years' experience in a related field
- Experience assessing or aligning with common industry security frameworks and regulatory requirements (i.e., SOC 1 and SOC 2, HITRUST, PCI DSS, HIPAA, GLBA, and GDPR.)
- Excellent verbal and written communication skills to communicate complex cyber risk issues to technical and non-technical audiences.
- Excellent soft skills such as: interpersonal, leadership, presentation, and collaborative skills to work effectively with teams throughout organization.
- Strong collaboration skills to effectively drive understanding among cross-functional teams.
- Ability to reach decisions under conditions of uncertainty and against competing priorities.
Preferred
- Industry experience with 2 or more of the following: Finance, Healthcare and Cloud security compliance.
- Certified in at least one of the following: CISSP, CISM, CISA, CRISC, or similar.
Top Skills
AWS
Azure
Gdpr
Glba
GCP
Hipaa
Hitrust
Iso 27001
Pci Dss
Soc 1
Soc 2
Similar Jobs at Cox Enterprises
4 Hours Ago
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
The role involves leading Sales Operations, optimizing processes, managing forecasting, and driving cross-functional collaboration to improve sales effectiveness.
Top Skills:
AWSAzureExcelGooglePower BISalesforce
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
The Cybersecurity Analyst I monitors security operations, assesses risks, aids in incident response, and ensures compliance with standards and documentation.
Top Skills:
AntivirusAWSAzureEndpoint ProtectionGCPMicrosoft 365Vulnerability Scanners
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
The Cybersecurity Analyst II role involves enhancing security operations, performing technical assessments, analyzing vulnerabilities, and developing cybersecurity policies.
Top Skills:
AWSAzureCehCisspComptia Security+GCPHipaaIso 27001Nist CsfPci-DssSoc 2
What you need to know about the Charlotte Tech Scene
Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.
Key Facts About Charlotte Tech
- Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
- Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
- Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
- Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus