Policy Writer Job at Insight Global in Minneapolis
Insight Global, Minneapolis, MN, United States
As a Policy Writer, you will support our Information Technology and Information Security policy management needs to continually support and improve our security posture. This person is responsible for various policy lifecycle management tasks, including analysis, design, implementation, and maintenance of information technology and information security policies, standards, procedures, knowledge articles, best practices, and educational SharePoint sites, workflows, and decks. Provides thought leadership in policy management and security control initiatives. Solves a range of problems applying standard operating procedures. Specific responsibilities are as follows:
-Create and/or edit technical documentation to publish final policies, standards, and procedures frameworks which adhere to NIST CSF 2.0, CIS, and SANS industry-acknowledged frameworks.
-Utilize established ServiceNow Integrated Risk Management (IRM) and Compliance Workspace protocol for policies and standards lifecycle management.
-Work with Subject Matter Experts (SMEs) to populate these frameworks with policies, standards, and/or procedures to produce iterative content; ultimately arriving at a final version for leadership approval.
-Create educational content and work with team members to publish with final policies, standards, and procedures to a central SharePoint site for users ease of accessibility and utilization.
-Regularly report on progress details, including identification, escalation, and resolution assistance with issues and blockers.
-Conduct regular (weekly) knowledge transfer sessions with the larger team, including documentation.
-Effectively work with the Product Operating Model (POM) using Agile methodologies.
-Work within existing enterprise milestones and timeline, including the annual Policy Review cycle, Privacy Risk Group (PRG) reviews, and other established update and review cycles.
-Provide technical expertise for policies, standards, and procedures aligned to security controls.
-Act as a change agent to continuously improve and move the organization forward and mature processes.
Ability to work within a diverse team of skillsets and experience levels to deliver results.
-Expected pay range: $65-$70/hour
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal. com.
To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/ .
-Bachelor's degree in related field
-3 or more years of applicable experience in the Financial Industry (FI), and/or in IT/Information Security technical writing, IT/Information Security internal/external audit, IT/Information Security internal controls team settings, or second line of defense team settings.
-2 or more years of applicable experience with ServiceNow Integrated Risk Management (IRM), Archer, Bwise, or similar systems for policy, standards, and procedures lifecycle management.
-Experience in design, analysis, implementation, auditing, and governance of policies, standards, and procedures lifecycle management.
-Experience with companies subject to SOX, NCUA, SEC, FINRA, OCC, and GLBA requirements.
-Practical application of major risk, control frameworks, and/or industry standards, including: NIST CSF, CIS, ITIL, COSO, COBIT, CMM, Product Operating Model (POM).
-Strong knowledge and/or experience in the Product Operating Model (POM) and Agile work management methodologies.
-Proficiency with document management systems and tools such as Microsoft Office, SharePoint, and other relevant software.
-Ability to work independently and collaboratively in a fast-paced environment.
-Demonstrated leadership on small-to-mid scale projects impacting strategic priorities.
Strong attention to detail and organizational skills.