Project Manager (security assessments)

<span style="font-size:12pt;"><span style="line-height:normal;"><span style="font-family:Aptos, sans-serif;"><b><span style="font-size:11pt;">Who We Are</span></b></span></span></span><br><br><span style="font-size:12pt;"><span style="background:#FFFFFF;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="font-family:Aptos, sans-serif;"><span style="color:#000000;">Prowess Consulting is a consulting firm that specializes in helping the largest enterprises in the technology industry define, manage, benchmark, and market their solutions and services. We take great pride in investing the time and effort to gain a deep understanding of our clients’ technologies, their customers, and the stories and strategies they need to tell to be successful in the market. Our team of technology and marketing experts is immersed in the technology trends that affect our clients’ businesses, so we can add value at every stage of engagement to help them succeed.</span></span></span></span></span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:normal;"><span style="font-family:Aptos, sans-serif;"><b><span style="font-size:11pt;">Who You Are</span></b></span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">As a security compliance manager, you will play a pivotal role in driving the development and compliance of key features for our client’s products. You will work closely with cross-functional teams to ensure that all features meet the necessary security and compliance standards and are ready for both preview and external product releases. Your responsibilities will include coordinating with the software engineering feature teams and compliance teams, as well as managing compliance assessments and addressing any compliance-related issues.</span></span></span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b><span style="font-size:11pt;"><span style="line-height:115%;">To be considered for this role, you must reside in one of the following states:  Alabama, Arizona, California, Colorado, Connecticut, Georgia, Illinois, Iowa, Michigan, Minnesota, Mississippi, Missouri, New Jersey, New York, North Carolina, Oregon, Pennsylvania, South Carolina, Texas, Utah, Virginia, or Washington.</span></span></b></span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:normal;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="color:#000000;">This is a three (3) month, full-time role that can be worked remotely, however, collaboration with teammates centered in the Pacific time zone will be essential. <b><i>No third-party agencies, please</i></b>.</span></span></span></span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b><span style="font-size:11pt;"><span style="line-height:115%;">THE ROLE </span></span></b></span></span></span><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Drive end to end execution of security assessments that include:</span></span>  </span></span></span></span></li></ul><ul style="list-style-type:circle;"><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Creating assessment questionnaires</span></span>  </span></span></span></span></li></ul><ul style="list-style-type:circle;"><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Conduct kickoffs, review assessment responses, and</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">identify</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">risks/control gaps from a risk management perspective</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Perform risk scoring exercise and</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">maintain</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">risks in the risk register</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Track implementation (and adherence) of security requirements across engineering groups/teams</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Collaborate with partner teams to build continuous monitoring capabilities/reports for security requirements</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Validate compliance</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">to</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">security requirements and drive compliance sign off process for upcoming releases</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Coordinate with partner teams on security scope and</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">finalize</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">implementation requirements</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Support strategy and roadmap development for existing and emerging cybersecurity certification and/or regulatory requirements for internal/external audit needs</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Support risk management process enhancements</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Support the development and ongoing maintenance of Standard Operating Procedures (SOPs)</span></span>    </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Work with assigned groups to ensure security compliance</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Create and</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">maintain</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">risk dashboards using Power BI or similar tools and report to leadership</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Socialize risks/control gaps with service owners</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Support certification and audit preparation efforts</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">for internal and external regulatory requirements.  </span></span></span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Drive execution of Security Compliance frameworks (NIST, SDLC, etc.) </span></span></span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b><span style="font-size:11pt;"><span style="line-height:115%;">QUALIFICATIONS </span></span></b></span></span></span><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">3-4+ years of Program Management experience necessary</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Strong interpersonal and written communication skills</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Demonstrated ability to own and drive programs and initiatives by working through ambiguity</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Familiarity with</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">cybersecurity, risk</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">management</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">and audit best practices desirable</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Strong understanding of security and supply chain concepts, standards, and control frameworks  </span></span></span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Strong understanding of regulatory frameworks and the ability to interpret requirements into actionable workstreams </span></span></span></span></span></span></li><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Working experience with Cyber EO and/or Cyber Resilience Act (CRA) is required.</span></span></span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Good</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">track record</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">of working collaboratively and effectively with senior leaders and teams across organizational boundaries</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Experience influencing others without authority</span></span>  </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Experiences building</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">PowerBI</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">dashboards or producing dashboard specifications</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Experience using a variety of tools to manage compliance such as</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">S360,</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">ADO</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">are</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">desired</span></span>   </span></span></span></span></li></ul><ul><li><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Must have stellar organizational skills and be able to work well with multiple technical groups and stakeholders</span></span> <span style="font-size:11pt;"><span style="line-height:115%;">in multiple areas </span></span></span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b><span style="font-size:11pt;"><span style="line-height:115%;">ADDITIONAL DETAILS</span></span></b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">The offered base pay range for this specific position is <a>$95,000 - 105,000 per year</a>, DOE</span></span></span></span></span></span></li></ul><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="line-height:115%;">Base Pay ranges are different for different work locations within the U.S., which allows for competitive pay and consistency</span></span></span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;">Prowess</span></span></span></span><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;"> Consulting</span></span></span></span><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;"> is an equal</span></span></span></span><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;">-</span></span></span></span><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;">opportunity employer</span></span></span></span><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;">,</span></span></span></span><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;"> and diversity is a core value for us. </span></span></span></span><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;">We are a Minority/Women-owned Business Enterprise (WMBE) in Washington, and we committed to diversity, equity, and inclusion. </span></span></span></span><span style="font-size:11pt;"><span style="background:#FFFFFF;"><span style="line-height:115%;"><span style="color:#000000;">At Prowess Consulting, we are passionate about building and sustaining an inclusive and equitable working and learning environment for all employees. We</span></span></span></span><span style="font-size:11pt;"><span style="line-height:115%;"> provide a well-rounded benefits package including health insurance, flexible spending account, life and disability insurance, paid time off, and retirement plan investing. For more information, please </span></span><span style="font-size:11pt;"><span style="line-height:115%;">visit </span></span><a href="http://www.prowessconsulting.com" style="color:#0563c1;text-decoration:underline;"><span style="font-size:11pt;"><span style="line-height:115%;">www.prowessconsulting.com</span></span></a></span></span></span><br> 

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...