Senior Technology Governance, Risk & Compliance Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Technology Governance, Risk & Compliance Analyst (Cybersecurity): Designing and maturing the Technology Unified Controls framework with an accent on risk-based control programs and regulatory compliance. Focus on navigating the full control lifecycle, implementing automation-first monitoring, and ensuring alignment with NIST, PCI, and SOC2 frameworks.
Location: Hybrid in New York City
Salary: $138,000 - $173,000 USD
Company
is a premier mobile gaming company in the United States and Canada, specializing in sportsbook, casino, and racing products.
What you will do
- Lead and mature a risk-based technology control program aligned with NIST CSF, GLI-GSF, PCI, SOC2, and SOX.
- Manage the full control lifecycle, including process discovery, implementation, testing, and continuous assurance.
- Develop executive reports on technology control health, risk posture, and identified issues.
- Serve as the primary first line of defense (1LOD) point of contact for compliance activities and regulatory examinations.
- Partner with Enterprise Risk Management to maintain the technology risk and controls framework.
- Establish and maintain comprehensive technology governance policies, standards, and procedures.
Requirements
- 5+ years of experience in technology and cybersecurity GRC across all three disciplines.
- Hands-on experience with the full control lifecycle, risk assessments, and maintaining risk registers.
- In-depth understanding of IT platforms including AWS, Okta, GitHub, and Atlassian products.
- Strong knowledge of industry frameworks such as NIST 800-53, SOC2, PCI, and SOX.
- Ability to translate risk/control standards into functional business requirements.
- Must be based in New York City for a hybrid work arrangement.
Nice to have
- Bachelor’s degree in a technical field such as Cybersecurity or Information Technology.
- Professional certifications like CISA, CISM, CISSP, CRISC, CGEIT, or PCI ISA/QSA.
- Previous experience working as a consultant in the risk, compliance, or audit space.
Culture & Benefits
- Comprehensive health plans including medical, vision, and dental insurance with mental health support.
- 401(k) matching program up to 5%.
- Generous paid time off, including personal time and 14 paid company holidays.
- Annual bonus and long-term incentive opportunities based on performance.
- Additional perks such as commuter benefits and pet insurance.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →