TL;DR
GRC Risk Analyst: Conduct compliance assessments, develop policies and manage risks across the organization, ensuring adherence to regulatory requirements and industry standards. Focus on identifying and mitigating risks, recommending improvements, and maintaining compliance with information security standards.
Location: Hybrid in Reston, VA
Salary: $120,000 to $135,000
Company
hirify.global delivers the industry's only true real-time cloud-based endpoint management and security offering.
What you will do
- Execute audits and risk assessments, communicating results and recommendations in high-quality reports.
- Write and revise policies, standards, procedures, and guidelines based on business needs.
- Participate in Information Security, Information Technology, and Product Security projects to drive process improvements and risk treatments.
- Review and respond to security questionnaires and due diligence requests.
- Assist in the assessment and review of new vendors to ensure adequate controls for security requirements.
- Prepare and present reports summarizing risk assessment findings to management.
Requirements
- Bachelor's Degree in Computer Science, Engineering, or equivalent experience.
- 3-5 years in information technology / information security auditing, preferably within a software engineering environment.
- Familiarity with frameworks: FedRAMP, StateRAMP, CMMC, ISO 27001:2013, SOC2, NIST Cyber Security Framework (CSF).
- Experience writing audit findings, reports, policies, standards, procedures, and guidelines.
- Working knowledge of risk assessment methodologies, contingency planning approaches, and data analysis techniques.
- Strong analytical and problem-solving skills.
Culture & Benefits
- 5 days set aside as volunteer time off (VTO) to contribute to the communities.
- Generous benefits package consisting of medical, dental and vision plan, family planning benefits, health savings account, flexible spending account, transportation savings account, 401(k) retirement savings plan with company match, life, accident and disability coverage, business travel accident insurance, employee assistance programs, disability insurance, and other well-being benefits.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →