7 часов назад
Senior Analyst, Information Security Risk and Compliance (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Analyst, Information Security Risk and Compliance (Cybersecurity): Enhancing IT general controls and automating governance, risk, and compliance processes across SOX, FedRAMP, PCI, ISO 27001, SOC 2, and NIST frameworks with an accent on audit readiness, control effectiveness, and risk-based compliance management. Focus on operationalizing common control frameworks, applying AI and automation to compliance workflows, and building reporting for senior management.
Location: Remote in the United States, California
Company
develops electric vehicle charging hardware, software, and mobile solutions for customers across North America and Europe.
What you will do
- Enhance IT general controls and mature the governance, risk, and compliance program through automation and common control frameworks.
- Maintain compliance with SOX, FedRAMP, PCI, ISO 27001, SOC 2, NIST 800-53, and related standards.
- Improve access management, change management, operational procedures, policies, and processes for in-scope IT systems.
- Collaborate with business stakeholders, control owners, internal auditors, and external auditors on current and planned compliance activities.
- Validate ITGC control design, documentation, execution, monitoring, and audit readiness.
- Build monthly and quarterly reporting on GRC activities and security project status for senior management.
Requirements
- Bachelor’s degree in business, information systems, engineering, science, or a related field, with at least 5 years of relevant experience.
- 8+ years of experience in internal controls and risk management, including ITGC SOX, SOC 1/2/3, or IT internal audit programs.
- Knowledge of Sarbanes-Oxley, NIST 800-53, FedRAMP, ISO 27001, NIST CSF, and relationships between security frameworks.
- Experience working with and managing internal and external auditors.
- Familiarity with SaaS applications such as NetSuite, Workday, Salesforce, and GitHub, plus AWS and Google Cloud from an IT controls perspective.
- Strong communication, stakeholder management, organizational, risk assessment, and compliance reporting skills.
Culture & Benefits
- Remote work arrangement.
- Inclusive and diverse workplace with reasonable accommodations throughout the employment process.
- Work on electric vehicle charging hardware, software, and mobile solutions.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 часа назад
Senior GRC Manager (Cybersecurity)
1 день назад
Security Partner (FinTech)
133 109 - 239 596$
4 дня назад
Security Engineer, Senior (Cybersecurity)
99 000 - 225 000$
8 часов назад
Principal/Senior Consultant, Governance, Risk & Compliance (Cybersecurity)
5 дней назад
Senior Information Systems Security Officer (Cybersecurity)
Plaid
5 дней назад
Security Analyst, Third-Party Ecosystem Risk Management
119 000 - 176 000$