Forcepoint simplifies security for global businesses and governments. Forcepoint's all-in-one, truly cloud-native platform makes it easy to adopt Zero Trust and prevent the theft or loss of sensitive data and intellectual property no matter where people are working. 20+ years in business. 2.7k employees. 150 countries. 11k+ customers. 300+ patents. If our mission excites you, you're in the right place; we want you to bring your own energy to help us create a safer world. All we're missing is you!
The Senior GRC Analyst position is a critical role within Forcepoint's Governance, Risk, and Compliance (GRC) team which is part of the company's Information Security organization. This role is responsible for understanding security requirements to meet company audit framework compliance and industry best practices. This includes mapping compliance framework requirements to internal policy security controls aligned to ensure actionable practices and control monitoring efforts are in place across various domains and business function teams within the company. This role is also responsible for designing security controls that best fit our environment while maintaining security compliance. A key focus of these responsibilities is applying and leveraging automation to as many controls as practicable to ensure on-going compliance (e.g., evidence collection) and managing compliance programs through a centralized GRC management platform.
This role is technical and analytical in nature and demands a fast learner with a history of technical knowledge and cloud security experience combined with business experience working in a cloud product vendor environment (ideally AWS).
The ideal candidate will be highly skilled in effectively communicating security governance and compliance requirements to a wide range of company functional units, helping these functional units understand the need for, and approach to comply with information security policies, required security controls, and how to appropriately capture evidence of compliance on an on-going basis. This role requires extensive experience in successfully completing security audits for certification programs including ISO (e.g., 27001, 27017, 27018), SOC 2. An understanding of CIS and NIST 800-53 frameworks and experience working with them is preferred. The role should have experience working in a cloud product environment for several years.
Duties and Responsibilities:
Governance and Compliance:
Champion awareness and accountability around IS governance, risk, and compliance control functions Contribute to developing and enhancing a mature security culture.
Manage GRC's Security Awareness Training program which includes onboarding training and recurring training (e.g., security awareness training, role-based training, annual policy review/acknowledgements, etc.)
Lead GRC audits for various security products, ensuring timely response to auditor requests, providing coordination and support during audit interviews, reviewing and submission of evidence in a timely manner, and advocating on the company's behalf.
Interact and deliver updates (e.g., Key Risk Indicators (KRIs) for enterprise-domains) to leadership and other stakeholders including business functional leaders and technical staff.
Respond to customer questionnaires and requests for Information Security documentation.
Risk Management:
Privacy Program Support:
Success Measures for the Role:
Personal Development:
Qualifications and Experience:
Don't meet every single qualification? Studies show people are hesitant to apply if they don't meet all requirements listed in a job posting. Forcepoint is focused on building an inclusive and diverse workplace so if there is something slightly different about your previous experience, but it otherwise aligns and you're excited about this role, we encourage you to apply. You could be a great candidate for this or other roles on our team.
The policy of Forcepoint is to provide equal employment opportunities to all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, ancestry, disability, veteran status, or any other legally protected status and to affirmatively seek to advance the principles of equal employment opportunity.
Forcepoint is committed to being an Equal Opportunity Employer and offers opportunities to all job seekers, including job seekers with disabilities. If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access the Company's career webpage as a result of your disability. You may request reasonable accommodations by sending an email to recruiting@forcepoint.com.
Forcepoint is a Federal Contractor. Certain positions with Forcepoint require access to controlled goods and technologies subject to the International Traffic in Arms Regulations or the Export Administration Regulations. Applicants for these positions may need to be "U.S. Persons," as defined in these regulations. Generally, a "U.S. Person" is a U.S. citizen, lawful permanent resident, or an individual who has been admitted as a refugee or granted asylum.
Applicants must have the right to
Forcepoint...Good Greek is an industry leader and the worlds only total relocation company, offering a wide range of servicesfrom moving and packing... ...pay in the industry. On-Site/Outside Relocation Sales Consultants These professionals are an integral part of the Good Greek organization...
Now Hiring: Rockstar Cleaners for Phoenix! Looking for a job that works around your life and pays you to make homes sparkle? MaidThis is hiring cleaners in Phoenix! We're especially looking for two-person teams (because cleaning is more fun with a buddy), but solo ...
...Boston. A medical device company north of Boston is looking to bring on a Senior Embedded Software Engineer who is passionate about developing robust, real-time software systems for life-saving medical devices. Responsibilities Design, develop, and maintain embedded...
...Certified Medical Assistant Scribe/ Triager- Experience Required Responsibilities: Greet patients in person or via telephone; answer basic questions Measure and record the patient's vital signs Report and update patient's medical history, reason for visit,...
...the top resorts in the world, those we sell to clients Flex work schedule Open Door policy via text, message, phone or video chat No Micromanaging This is an independent 1099 business opportunity - we cannot sponsor work visas! Must be authorized to work...