GRC Analyst Job at Diverse Lynx, Dallas, TX

c2FRUWNlZUgvUTQ0TlhuZ1UyRmYra3djK1E9PQ==
  • Diverse Lynx
  • Dallas, TX

Job Description

JC# - 40110

GRC Analyst Full Time Dallas Tx - Hybrid

FOCUS

• Ensure secure communications systems relied upon for our ANSP Program, with concentrated attention towards risk, governance, vulnerability management, policies, and standards.

RESPONSIBILITIES

  • Develop and implement security policies and standards, ensuring compliance with industry regulations and best practices.
  • Conduct risk assessments and vulnerability assessments to identify1 and mitigate security risks.
  • Manage the vulnerability management program, including vulnerability scanning, penetration testing, and remediation.
  • Develop and deliver security awareness training programs.
  • Collaborate with stakeholders to integrate security considerations into the design and development of new aviation systems.
  • Stay informed about emerging threats and vulnerabilities in the aviation industry.

SKILLS

  • Cybersecurity Risk & Governance Expertise: Requires 3-5 years of progressive cybersecurity engineering experience with a deep understanding of risk management frameworks (NIST SP 800-37, ISO 27005), governance principles, vulnerability management, and security policy development.
  • Risk Assessment & Mitigation: Proven experience conducting risk assessments (NIST 800-30, NIST CSF), identifying vulnerabilities, analyzing threats, and developing effective mitigation strategies.
  • Vulnerability Management Program Expertise: Expertise in vulnerability management tools and processes, including vulnerability scanning, penetration testing coordination, vulnerability prioritization, and remediation tracking.
  • Policy & Standard Development & Implementation: Strong ability to develop, document, and implement security policies, standards, and procedures that align with industry best practices, regulatory requirements, and risk tolerance
  • Communication & Stakeholder Collaboration: Excellent communication (written and verbal) and interpersonal skills to effectively communicate security risks, governance strategies, and policy recommendations to diverse stakeholders, including technical teams, management, and external partners.

PREFERRED CERTIFICATIONS

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • CISA (Certified Information Systems Auditor)
  • CRISC (Certified in Risk and Information Systems Control)
  • CompTIA Security+

TOOLS AND TECHNOLOGIES

  • Risk Management Frameworks: (e.g., NIST RMF, NIST CSF, ISO 27005)
  • Risk Assessment Methodologies: (e.g., NIST 800-30, Threat Modeling)
  • GRC Platforms: (e.g., ServiceNow GRC, RSA Archer)
  • Vulnerability Management Tools: (e.g., Tenable Nessus, Tanium)
  • Penetration Testing Understanding: (Familiarity with tools & methodologies for report interpretation)
  • Policy & Collaboration Tools: (e.g., SharePoint, Microsoft Teams, Policy Management Platforms)
Surrounding team/key projects:
  • Develop and implement a Cybersecurity Risk Management Framework for ANSP Ground Systems (Based on NIST RMF or ISO 27005)
  • Establish and mature vulnerability management program for aircraft ground infrastructure
  • Develop and deploy a suite of Security Policies and Standards for Aviation System Development Lifecycle (SDLC)
  • Conduct a comprehensive Cybersecurity Risk Assessment of a Critical Aviation Ground Systems using NIST 800-30
  • Develop and deliver targeted Security Awareness Training for Aviation Operations Personnel on a Specific Risk Area
Diverse Lynx LLC is an Equal Employment Opportunity employer. All qualified applicants will receive due consideration for employment without any discrimination. All applicants will be evaluated solely on the basis of their ability, competence and their proven capability to perform the functions outlined in the corresponding role. We promote and support a diverse workforce across all levels in the company. Diverse Lynx

Job Tags

Full time,

Similar Jobs

A+ window cleaning services

Window cleaning Technician Job at A+ window cleaning services

Working inside and outside cleaning residential and commercial properties. We will train the right person. Looking for someone enthusiastic with high attention to detail. Salary based on experience and training. After 7 weeks successful candidates will be earning $21 plus... 

SynergisticIT

Junior Web Designer/Developer Job at SynergisticIT

 ...clients with candidates who can perform from day 1 of starting work. In this economy no client wants or has the resources to take an entry level person and spend resources on upgrading their skills and on top of that pay the jobseeker. That's the specific reason there are... 

Hyperion Biotechnology

Strength and Conditioning Coach Job at Hyperion Biotechnology

 ...Job Description Job Description Are you ready to take your coaching career to new heights? As a Strength & Conditioning Coach with Hyperion Biotechnology, you'll have the exhilarating opportunity to work with soldiers of the US Army's Holistic Health and Fitness (... 

MaineHealth

NEUROSURGEON Job at MaineHealth

 ...MaineHealth Neurosurgery & Spine is currently seeking a BC/BE fellowship-trained, Spine Neurosurgeon to join our team-based practice. The ideal candidate would be 4-10 years out of residency with a strong background in general neurosurgery in addition to their fellowship... 

United Counseling Service

Peer Support Specialist - Emergency Services Job at United Counseling Service

 ...6 Hourly Job Shift : Any Job Category : Non-Credentialed Position Description MAJOR RESPONSIBILITIES:DIRECT CLIENT SUPPORT SERVICES:Provide direct peer support using active listening, motivational interviewing, and strength-based conversations.Assist clients during crisis...