Experience in risk, compliance, and information security policy development. Excellent organizational and communication skills (both oral and written). Strong interpersonal skills to effectively communicate with a diverse community. Knowledge of IT processes and controls, with a strong understanding of risk and control frameworks such as CoBIT, ISO, NIST, ITIL, and PCI. General knowledge of information security regulatory requirements and standards like ISO 27001/2.