Sr. GRC Analyst Job at TalentFish, Chicago, IL

djZrZGNlaUE4Z2s5TkhmZ1ZXRmYvVUVZ
  • TalentFish
  • Chicago, IL

Job Description

Job Title: Sr GRC Analyst (GRC) Position Type: Full-Time Direct Hire Location: Remote - Chicago IL, Atlanta GA, New York NY or Washington DC ** Candidates must reside in state of Illinois, Georgia, New York, or Washington DC metro Overview: TalentFish is casting a line for a Senior Analyst, Cybersecurity Governance Risk & Compliance . This is a remote Direct Hire role in The Senior Analyst, Cybersecurity Governance Risk & Compliance will administer the completion of compliance-related client requests to assess security policies and procedures. The Senior Analyst will respond to inquiries on the security controls policy, processes, and procedures implemented for the Firm managed systems and applications, as well as support Third Party Risk Management ( "TPRM") and Governance and Risk functions in conducting vendor due diligence (initial, reassessments and ongoing monitoring) and supporting broader GRC efforts. This position requires strong communication skills, initiative, attention to detail and the ability to learn quickly. What You Bring to the Role. (Ideal Experience) Bachelor's degree (required). t least 5 years of combined information technology and information security experience. Strong understanding of multiple risk management concepts, frameworks, and standards (CSC, NIST, ISO 27001/2, COBIT). Demonstrated experience with the NIST Cybersecurity Framework and auditing security controls identified in NIST SP800-171 and NIST SP800-53A. Experience working with internal and external auditing firms. Strong understanding of information security concepts and technologies. Fundamental knowledge of MS Outlook, Word, Excel, Visio, and PowerPoint. Strong communication skills with the ability to interact with various teams within the administrative and legal departments. Experience in the analysis of IT and Security control requirements and understanding of associated technology processes. Strong understanding of due diligence and compliance documents (e.g. SOC II Type II, ISO 27001 Certification, SIG Questionnaires, Certificates of Insurance, Pen Test, etc.). What You'll Do. (Skills Used in this Position) Review and understand the Firm's current IT Risk Management ( "ITRM") program framework and associated policies, standards, procedures, and processes. Develop understanding of the Firm's control's structure to support the creating or revising standard narratives/responses for client questionnaires (e.g., SIG). Prepare and respond to related compliance requests and web-shares including referencing evidentiary artifacts or other documentation. Complete external information security assessments, remediation efforts and support status tracking of assessment queues. Coordinate with external assessors and internal subject matter experts to address compliance inquiries and web-shares of security artifacts. ssist in further defining the process for completing information security control assessments. Support metrics and reporting of the Information Security Program through the collection and analysis of effective security control measures. Develop and maintain status tracking related to findings from information security assessments, Governance, Risk and Compliance, and TPRM due diligence/reassessment assessments and associated remediations. Contribute to the creation of GRC related processes and procedures and relevant documents. Work with the CISO, senior managers, managers and other internal stakeholders to report existing information security programs and ongoing security projects that address information security risks and compliance requirements. Manage competing deadlines and multiple external inquiries using effective organizational skills and attention to detail as demonstrated by prior work experience. Participate in efforts to evolve and streamline GRC solutions, processes and procedures. Collaborate with InfoSec, Privacy and GRC management and internal subject matter experts to support coordination, tracking, and reporting of GRC team strategy and goals. Compensation Information The expected salary range for this position is 115-145k per year, depending on experience, qualifications, and location. This role also qualifies for comprehensive benefits such as health insurance, company matched 401(k), and paid time off. TalentFish is committed to pay transparency and equal opportunity. The salary range provided is in compliance with applicable state and federal regulations. TalentFish is an employee-owned company pioneering a new realm in talent acquisition. We are redefining IT staffing by evolving AI, video screening, and our unique platform. TalentFish focuses on providing the best employee, consultant, and client experience possible. t TalentFish we are an Equal Opportunity Employer; we embrace and encourage diversity! TalentFish

Job Tags

Full time, Work experience placement, Remote job,

Similar Jobs

Guitar Center

Music teacher store Job at Guitar Center

 ...the nation, Guitar Center embodies the world of creativity and music by encouraging our Customers and employees to find their own unique...  ...students utilizing the Guitar Center Lessons Curriculum * Assist with Customer service as needed, helping to build and maintain long... 

Epic Travel Staffing

Travel Occupational Therapist (OT) Job at Epic Travel Staffing

 ...Travel Occupational Therapist - Epic Travel Staffing is hiring a Travel Occupational Therapist - . We`ll be your ticket to the travel OT - job you`ll love with unparalleled recruiter support and industry-best benefits. Shift: Days Length: 13 Start Date: 04/... 

Columbus McKinnon

Manufacturing Engineer Job at Columbus McKinnon

 ...Manufacturing Engineer Relocation package available Job Summary/Overview The Manufacturing Engineer is an essential position on the...  ...to use in decision making process for make vs. buy. Additional duties as assigned. Knowledge, Skills, Competencies, and... 

Express Employment Professionals Lakewood Cerritos

Office Positions Job at Express Employment Professionals Lakewood Cerritos

 ...Coordinate work activity to field supervisors Manage communications from field personnel and management. Company Description Express Employment Professionals is a leading staffing agency in the U.S., specializing in matching job seekers with the best jobs for their... 

SoHo Bistro & Lounge

Nightclub Marketing Specialist - Club Promoter Job at SoHo Bistro & Lounge

 ...Manchester, NH as a part-time Nightclub Marketing Specialist - Club Promoter ! Join our team and earn a competitive negotiable commission...  ...at creating an excellent upscale dining experience. At night, we invite local DJs to come and play music. ARE YOU EXCITED...