Search

GRC Consultant (Cybersecurity)

PublishedPublished: 6/14/2022
Technology

Job Description

One of InterEx’s key clients within the financial industry is looking for a GRC Consultant for a full time position.

\n


\n

This position will be 2 days on site in Chicago or Dallas and 3 days remote. Please note, only US citizens or Green-card holders are eligible for this position.

\n


\n

Job Description:

\n

    \n
  • Development, review and continuous improvement of the Security Services Department policies/procedures
  • \n

  • Recommendation of appropriate reporting frameworks, standards/best practices.
  • \n

  • Assist with remediating regulatory and Internal Audit findings
  • \n

  • Collect data to identify root cause of problems, identifying trends, formulating solutions, and escalating potential issues related to the lifecycle of remediation activities
  • \n

  • Be the POC for Security Services to senior management in Compliance, Internal Audit, Enterprise Risk Management, Legal and the Enterprise Project Management Office.
  • \n

  • Lead development, implementation, review and improvement of right sized management self-testing of controls.
  • \n

  • Lead Information Security Cyber Security Working Group Program efforts.
  • \n

  • Act on Security Services behalf related to compliance matters
  • \n

  • Manage Security Services responses to Third-Party requests and surveys
  • \n

  • Perform ad-hoc duties for Security Governance management as necessary
  • \n

\n


\n

Experience required:

\n

    \n
  • Knowledge of regulatory, legal rules & requirements (e.g., SEC, CFTC, Federal Reserve Board, etc.) within IT Security.
  • \n

  • Experience working with frameworks (e.g. NIST CSF, NIST 800-53, CIS 20, COBIT, COSO, ITIL, ISO 27001, CSA CCM, etc.)
  • \n

  • IT and risk management concepts
  • \n

  • IT Security policy, procedure and control writing.
  • \n

  • Basic knowledge of Cloud implementation/Cloud compliance
  • \n

  • Understanding of the Systems Development Life Cycle (SDLC) process (Agile) and Secure Software Development Lifecycle.
  • \n

\n


\n

If you feel you are right for this role and want to join my network, please get in touch.

Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...