Information Security Officer

About Quest Trust Company

As the nation’s leading provider of Self-Directed IRAs, Quest Trust Company is reshaping the way we prepare for retirement and build wealth for future generations. Clients can invest their retirement accounts in alternative investments, including real estate, promissory notes, private companies and much more. Quest Trust Company is looking for ambitious, dedicated, and hardworking business professionals to join the team. Think you have what it takes? Apply now!

Perks & Benefits:

Our mission is to deliver unparalleled work experience with a culture that values excellence, ambition, teamwork, and a positive atmosphere. What we provide is continuous education, training, and consistent mentorship which will enable your growth within our company. We believe in cultivating a philosophy that fosters innovation, integrity, hospitality, and growth. By maintaining this culture, we create an ambitious sense of purpose allowing us to engage competitively in any market.

  • $500.00 sign-on bonus after successfully passing New Hire Review
  • Flexibility to Work from Home after one year of service
  • Excellent growth and advancement opportunities
  • Health Insurance (available after 60 days of full-time employment)
  • Parental Leave (available after one year of service)
  • 7 Paid Holidays
  • 66 hours of personal time each year
  • 401(k) plan enrollment after one year of service
  • 10 paid vacation days after one year of service
  • 15 paid vacation days after five years of service
  • Free snacks and drinks for staff
  • Quarterly team building activities and much more

Roles & Responsibilities include (but not limited to):

Working closely with the SVP of IT and executive management team, and chair the Risk Management Committee, the Information Security Officer will be primarily responsible for ensuring the security, integrity, and confidentiality of our company’s information assets. The successful candidate will also be able to manage and oversee all aspects of our information security programs, including security risk assessments, third party risk management, department risk assessments, vulnerability management, data protection, incident response, and policy development and enforcement.

  • Develop, implement, and maintain comprehensive information security policies and procedures to protect our company’s information systems, networks, and data assets.
  • Serve as the lead of the Disaster Recovery Team (DRT) and Incident Response Team (IRT). Will be responsible for ensuring the development and implementation of comprehensive disaster recovery and incident response plans, conducting regular training and drills for both teams, and ensuring prompt and effective response to disasters and cyber incidents.
  • Conduct regular security risk assessments and vulnerability assessments to identify, mitigate, and manage potential security threats and risks to our company. Including the oversight and management of third-party risk assessment and department risk assessments.
  • Develop and implement effective data protection strategies, including encryption, data classification, access controls, and data backup and recovery.
  • Manage security incident response plans and ensure prompt and appropriate response to incidents, including conducting investigations, reporting incidents, and working closely with internal and external stakeholders.
  • Develop and implement security awareness training programs for our employees to ensure all stakeholders understand the policies, procedures, and best practices related to information security.
  • Maintain up-to-date knowledge of industry trends, threats, and legislation related to information security and leverage that knowledge to enhance our security measures and ensure our compliance.
  • Performs other job-related duties as required

Education & Experience

  • Bachelor’s or Master’s degree in Computer Science, Information Technology, Cybersecurity, or related field.
  • Minimum 4 years of relevant work experience in information security, preferably in financial services industry or other regulated industry.

Skills & Qualifications

  • Strong understanding of cybersecurity risk management principles and practices, including risk assessment, threat analysis, vulnerability assessment, and policy development and enforcement.
  • Knowledge of various security technologies, such as firewalls, intrusion prevention and detection systems, encryption technologies, and identity and access management systems.
  • Ability to communicate and collaborate effectively with internal and external stakeholders, including executive management, technical teams, business units, and third-party vendors.
  • Strong analytical, problem-solving, and decision-making skills with a commitment to quality and detail.
  • Relevant industry certifications, such as CISSP, CISM, or CISA, are preferred.
  • Proficiency with Microsoft Office Suite (Word, PowerPoint, Excel, Outlook, Teams)
  • Type minimum 55-60 WPM (https://www.keyhero.com/free-typing-test/) (Attach screen shot of results to resume)
Job Category
Computer and IT
Job Type
Full Time/Permanent
Salary
USD 80,000.00 - 110,000.00 per year
Country
United States
City
Houston
Career Level
unspecified
Company
Quest Trust Company
JOB SOURCE
https://questtrust.bamboohr.com/careers/246