The SENIOR SECURITY GRC SPECIALIST will govern and manage the risk assessment, remediation and monitoring of information and technology process risks, working with various control functions to ensure all identified risks are tracked and mitigated, and maintaining a strong working relationship with stakeholders.
Requirements
- Governance on risk and compliance performed by various technology and control functions.
- Managing the risk assessment, remediation and monitoring of information and technology process risks
- Serve as an internal risk consultant to the operating functions and business lines.
- Ensure process risk identification, assessment, quantification, reporting, communication, mitigation, and monitoring.
- Support implementation of information security policies as applicable
- Drive risk closure/ mitigation/ acceptance with stakeholders of business function and technology leaders
- Ensure periodic calendarized entitlement reviews are completed and risks are brought to an acceptable level.
- Working with various control functions to ensure all identified risks are tracked and mitigated.
- Working with the technology leaders to identify the control gaps.
- Work as a SME for risk and controls applicable to the operations performed by the function.
- Maintain strong working relationship with the stakeholders.
- Review and fine tune the policies and processes as per the industry best practices.
- Tracking of all identified risks by various control function and ensuring closure of the risks within the defined timelines.
- Prepare and maintain risk heat map and risk registers.
- Build the team and mentor the team members.
Benefits
- 401k Matching
- Generous Paid Time Off
- Retirement Plan
- Tuition Reimbursement