Security Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
The Cyber Security Governance, Risk, and Compliance (GRC) team is looking for a Principal Security Analyst to be a key member of a critical security program responsible for security risk and compliance activities across the entire enterprise. The role will require working with various company stakeholders to build and mature the processes of preparing for how Blackbaud identifies, documents, and assesses risk across the organization and determine the strength of our control framework and implementation., * Articulate security risk through the development of Key Risk Indicators (KRIs) and report to multiple stakeholder groups, including the Executive Leadership Team (ELT) and Board of Directors.
- Develop, assess, and implement cybersecurity controls and procedures required to protect the confidentiality, integrity, and availability of Blackbaud data.
- Lead and coordinate internal and external security, compliance, and regulatory assessments, including customer audits, independent attestations, certification audits, and third party reviews. Serve as the primary liaison with assessors and stakeholders to ensure successful completion of assessment activities and remediation efforts.
- Act as a key stakeholder in corporate governance forums and committees by serving as an active advocate for cybersecurity practices, risk management, and policy compliance.
- Partner with control owners to continuously monitor control implementations, assess effectiveness, and track noncompliance issues through resolution.
- Enhance change management processes to socialize, communicate, and educate stakeholders on policy, standard, and procedure updates.
- Identify opportunities to strengthen and mature the organization’s governance, risk, and compliance programs through continuous improvement initiatives and industry best practices.
Requirements
- 8+ year’s experience in Information Technology and/or Security
- 3+ year’s experience in leading audit/ assessment projects
- 3+ year’s experience in risk management frameworks (i.e., NIST CSF)
- 2+ year’s experience in quantitative risk management frameworks (FAIR, OCTAVE, etc.)
- Experience in corporate GRC solutions (Archer, ServiceNow, etc.)
- Experience in financial services, or other highly regulated industries (i.e. SOX, SOC, PCI DSS)
- Experience working in an agile team
- Demonstrated understanding of cyber risks and implementing mitigation plans
- Possesses effective communication and presentation skills
- Ability to handle multiple priorities and high stress situation
- Industry Certifications like: CISSP, CRISC, CISM/CISA, AWS certification(s), Azure certification(s)
Stay up to date on everything Blackbaud, follow us on Linkedin, Twitter, Instagram, Facebook and YouTube
Benefits & conditions
The starting base pay is $101,900.00 to $132,800.00. Blackbaud may pay more or less based on employee qualifications, market value, Company finances, and other operational considerations.
Benefits Include:
- Medical, dental, and vision insurance
- Remote-flexible workforce
- Wellness Programs
- 401(k) program with employer match
- Flexible paid time off
- Generous Parental Leave
- Donations for Doers
- Pet insurance, legal and identity protection
- Tuition reimbursement program
About the company
Blackbaud powers social impact through purpose-driven technology and responsible AI. Guided by our Intelligence for Good® vision, we’re building a culture where innovation, trust, and human expertise come together to help organizations make a greater difference in the world.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.workingnomads.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Data Analyst Salary in the UK
Understanding and Mitigating Common Web Vulnerabilities
What Are The Top Skills Required For Azure Developers?