Why This Role Stands Out
Advance your career in GRC with a competitive salary and hybrid flexibility at a reputable technology firm. You'll thrive here if you possess strong analytical skills and a passion for building robust security frameworks, so seize this opportunity to make a significant impact.
Quick Overview
Salary
$120k - $140k/yr
Seniority
Mid Senior
Work mode
Hybrid
Location
Chicago, IL, United States
Posted
2 weeks ago
Encryption
Job Description
Senior GRC Analyst
Salary: $120k-$140k + bonus
Location: Chicago, IL or Austin, TX
Hybrid: 3 days onsite, 2 days remote
*We are unable to provide sponsorship for this role*
Qualifications
- Bachelor s degree and 4+ years of Information Security experience
- Strong working knowledge of security frameworks and standards such as ISO 27001, National Institute of Standards and Technology (NIST), System and Organization Controls (SOC), and Standardized Information Gathering (SIG)
- Experience leading risk assessments, vendor security reviews, and client-facing security discussions with professionalism and tact.
- Familiarity with GRC platforms, role-based access controls, and a broad range of security technologies and tools.
- Working knowledge of areas such as authentication, encryption, firewalls, SIEM, intrusion detection/prevention, vulnerability management, mobile security, and privileged access management.
Responsibilities
- Lead responses to client security assessments, questionnaires, and audits, documenting evidence and performing risk assessments as needed.
- Create, maintain, and evolve security policies, standards, guidelines, and support documentation through strong technical writing.
- Manage and support processes that ensure Information Technology (IT) systems meet cybersecurity, risk, and compliance requirements.
- Serve as an Information Security subject matter expert, advising technical and non-technical stakeholders across the organization.
- Manage the third-party Security Vendor Risk Management program, including assessments, remediation tracking, and lifecycle oversight.
- Oversee the security exception request process and provide guidance on appropriate risk treatment decisions.
- Manage the full lifecycle of the Security Awareness program, including roadmap development, training evaluation, and effectiveness measurement.
- Support and optimize Governance, Risk, and Compliance (GRC) technology platforms and associated workflows.
- Conduct evaluations of IT programs and components to confirm alignment with published security standards and frameworks.
Similar jobs
- NS
W2: IT Compliance Analyst
NewNeural Strategic Solutions, Inc.
Charlotte, NC🇺🇸$35/hrHybridYesterdayGDPRMicrosoft ExcelPower BITechnology - PA
Director of Investment Adviser Compliance
NewPINE Advisor Solutions
Denver🇺🇸12 hours agoBusiness DevelopmentComplianceRecruitingFinance - BE
Director - Governance, Risk, Compliance & Privacy (GRC)
NewBeaconsoftware
San Francisco🇺🇸Remote9 hours agoPCI DSSSOC 2Compliance+5 - MF
Head of Compliance
NewMyFunded Futures
Hybrid🇺🇸9 hours agoAccount ManagementComplianceDerivatives+9 - TI
Compliance Analyst
NewTek Inspirations LLC
Charlotte, NC🇺🇸HybridYesterdayAuditingComplianceGDPR+2 - CT
Senior Patient Safety and Pharmacovigilance Operations Specialist II
NewCorcept Therapeutics
Redwood City🇺🇸21 hours agoClinical TrialsComplianceHTTP+3Healthcare