Назад
Company hidden
6 дней назад

Senior Technology Governance, Risk & Compliance Analyst (Cybersecurity)

138 000 - 173 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Technology Governance, Risk & Compliance Analyst (Cybersecurity): Designing and maturing the Technology Unified Controls framework with an accent on risk-based control programs and regulatory compliance. Focus on navigating the full control lifecycle, implementing automation-first monitoring, and ensuring alignment with NIST, PCI, and SOC2 frameworks.

Location: Hybrid in New York City

Salary: $138,000 - $173,000 USD

Company

hirify.global is a premier mobile gaming company in the United States and Canada, specializing in sportsbook, casino, and racing products.

What you will do

  • Lead and mature a risk-based technology control program aligned with NIST CSF, GLI-GSF, PCI, SOC2, and SOX.
  • Manage the full control lifecycle, including process discovery, implementation, testing, and continuous assurance.
  • Develop executive reports on technology control health, risk posture, and identified issues.
  • Serve as the primary first line of defense (1LOD) point of contact for compliance activities and regulatory examinations.
  • Partner with Enterprise Risk Management to maintain the technology risk and controls framework.
  • Establish and maintain comprehensive technology governance policies, standards, and procedures.

Requirements

  • 5+ years of experience in technology and cybersecurity GRC across all three disciplines.
  • Hands-on experience with the full control lifecycle, risk assessments, and maintaining risk registers.
  • In-depth understanding of IT platforms including AWS, Okta, GitHub, and Atlassian products.
  • Strong knowledge of industry frameworks such as NIST 800-53, SOC2, PCI, and SOX.
  • Ability to translate risk/control standards into functional business requirements.
  • Must be based in New York City for a hybrid work arrangement.

Nice to have

  • Bachelor’s degree in a technical field such as Cybersecurity or Information Technology.
  • Professional certifications like CISA, CISM, CISSP, CRISC, CGEIT, or PCI ISA/QSA.
  • Previous experience working as a consultant in the risk, compliance, or audit space.

Culture & Benefits

  • Comprehensive health plans including medical, vision, and dental insurance with mental health support.
  • 401(k) matching program up to 5%.
  • Generous paid time off, including personal time and 14 paid company holidays.
  • Annual bonus and long-term incentive opportunities based on performance.
  • Additional perks such as commuter benefits and pet insurance.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →