2+ years of experience with security control frameworks such as ISO 27001, COBIT, NIST, PCI DSS, HITRUST, SOX, HIPAA, etc. Bachelor’s degree in management information systems, computer science, information security, or other analytical disciplines or equivalent experience.