The Senior Analyst, Cybersecurity GRC will administer the completion of compliance-related client requests to assess security policies and procedures. The Senior Analyst will respond to inquiries on the security controls policy, processes, and procedures implemented for managed systems and applications, as well as support Third Party Risk Management (TPRM) and Governance and Risk functions in conducting vendor due diligence (initial, reassessments and ongoing monitoring) and supporting broader GRC efforts. This position is 100% Onsite and not open for Remote.
Senior Analyst, Cybersecurity GRC Responsibilities:
– Review and understand current IT Risk Management (ITRM) program framework and associated policies, standards, procedures, and processes.
– Prepare and respond to related compliance requests and web-shares including referencing evidentiary artifacts or other documentation.
– Complete external information security assessments, remediation efforts and support status tracking of assessment queues.
– Coordinate with external assessors and internal subject matter experts to address compliance inquiries and web-shares of security artifacts.
– Assist in further defining the process for completing information security control assessments.
– Support metrics and reporting of the Information Security Program through the collection and analysis of effectiveness security control measures.
– Develop understanding of control structure to support the creating or revising standard narratives/responses for client questionnaires (e.g., SIG).
– Work with the CISO, senior managers, managers and other internal stakeholders to report existing information security programs and ongoing security projects that address information security risks and compliance requirements.
– Manage competing deadlines and multiple external inquiries using effective organizational skills and attention to detail as demonstrated by prior work experience.
– Contribute to the creation of GRC related processes and procedures and relevant documents.
– Collaborate with InfoSec, Privacy and GRC management and internal subject matter experts to support coordination, tracking, and reporting of GRC team strategy and goals; and complete other tasks as assigned.
– Participate in efforts to evolve and streamline GRC solutions, processes and procedures.
– Develop and maintain the status tracking related to findings from information security assessments, Governance, Risk and Compliance, and TPRM due diligence/reassessment assessments and associated remediations.
Senior Analyst, Cybersecurity GRC Qualifications:
– Bachelor’s degree (required) and at least 5 years of combined information technology and information security experience.
– Strong understanding of multiple risk management concepts, frameworks, and standards (CSC, NIST, ISO, COBIT).
– Strong understanding of information security concepts and technologies.
– Strong understanding of due diligence and compliance documents (e.g. SOC 2 Type 2, ISO 27001 Certification, SIG Questionnaires, Certificates of Insurance, Pen Test, etc.).
– Strong communication skills with the ability to interact with various teams.
– Demonstrated experience with the NIST Cybersecurity Framework and auditing security controls identified in NIST SP800-171 and NIST SP800-53A.
– Experience in the analysis of IT and Security control requirements and understanding of associated technology processes.
– Experience working with internal and external auditing firms.
– Fundamental knowledge of MS Outlook, Word, Excel, Visio, and PowerPoint.
Benefits include medical insurance, retirement plan, Dental, Vision, PTO, etc.
Keywords: Chicago IL Jobs, Senior Analyst, Cybersecurity GRC, Information Security, Risk Management, CSC, ISO, COBIT, NIST Cybersecurity Framework, NIST SP800-171, NIST SP800-53A, SOC 2 Type 2, ISO 27001 Certification, SIG Questionnaires, Certificates of Insurance, Pen Test, Governance, Risk, Compliance, Chicago Recruiters, Information Technology Jobs, IT Jobs, Chicago Recruiting
We help companies that are looking to hire Senior Analysts, Cybersecurity GRC for jobs in Chicago, Illinois and in other cities too. Please contact our IT recruiting agency and IT staffing companies today! Phone 630-428-0600 ext. 12 or email us at gina@ginastechjobs.com . Click here to submit your resume for this job and others.
|
...future leaders & entrepreneurs through the tartelette U & internship programs & the shape your future small business awards. In... ...natural ingredients? If so, we'd love to hear from you! Summer 2025 Marketing Internship: tarte cosmetics is seeking enthusiastic...
...Looking for Devoted Pet Parents in the Madison - Chatham areas. Do you have a heart for animals and a deep understanding of what... ...ve been the trusted name in northern New Jersey for reliable pet sitting and dog walking. As pet parents ourselves, we know that leaving...
...Computer Wiz Kid Media Group in Lansing, MI is looking for one computer technician to join our 4 person strong team. Our ideal candidate is a self-starter, motivated, and reliable. Benefits ~ We offer many great benefits, including free early access to your...
...Job Description: Tesla Laboratories Inc. is seeking a highly skilled individual with an active TS/SCI clearance and CI Polygraph to join our team. The Senior Software Programmer Qualifications are to include a thorough knowledge and background working with IBM...
...Hey there! We're looking for a Locum CRNA to join our team just outside of Columbus, OH starting in January 2025. If you're ready to jump into a new opportunity, keep reading for all the details! Responsibilities Provide anesthesia services for primarily Urology...