Security Analyst

Blackbaud, Inc.
United States
27 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$102,000.0 - $133,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Cyber Security Octave PCI Data Security Standards Information Technology Servicenow

Job description

The Cyber Security Governance, Risk, and Compliance (GRC) team is looking for a Principal Security Analyst to be a key member of a critical security program responsible for security risk and compliance activities across the entire enterprise. The role will require working with various company stakeholders to build and mature the processes of preparing for how Blackbaud identifies, documents, and assesses risk across the organization and determine the strength of our control framework and implementation., * Articulate security risk through the development of Key Risk Indicators (KRIs) and report to multiple stakeholder groups, including the Executive Leadership Team (ELT) and Board of Directors.

  • Develop, assess, and implement cybersecurity controls and procedures required to protect the confidentiality, integrity, and availability of Blackbaud data.
  • Lead and coordinate internal and external security, compliance, and regulatory assessments, including customer audits, independent attestations, certification audits, and third party reviews. Serve as the primary liaison with assessors and stakeholders to ensure successful completion of assessment activities and remediation efforts.
  • Act as a key stakeholder in corporate governance forums and committees by serving as an active advocate for cybersecurity practices, risk management, and policy compliance.
  • Partner with control owners to continuously monitor control implementations, assess effectiveness, and track noncompliance issues through resolution.
  • Enhance change management processes to socialize, communicate, and educate stakeholders on policy, standard, and procedure updates.
  • Identify opportunities to strengthen and mature the organization’s governance, risk, and compliance programs through continuous improvement initiatives and industry best practices.

Requirements

  • 8+ year’s experience in Information Technology and/or Security
  • 3+ year’s experience in leading audit/ assessment projects
  • 3+ year’s experience in risk management frameworks (i.e., NIST CSF)
  • 2+ year’s experience in quantitative risk management frameworks (FAIR, OCTAVE, etc.)
  • Experience in corporate GRC solutions (Archer, ServiceNow, etc.)
  • Experience in financial services, or other highly regulated industries (i.e. SOX, SOC, PCI DSS)
  • Experience working in an agile team
  • Demonstrated understanding of cyber risks and implementing mitigation plans
  • Possesses effective communication and presentation skills
  • Ability to handle multiple priorities and high stress situation
  • Industry Certifications like: CISSP, CRISC, CISM/CISA, AWS certification(s), Azure certification(s)

Stay up to date on everything Blackbaud, follow us on Linkedin, Twitter, Instagram, Facebook and YouTube

Benefits & conditions

The starting base pay is $101,900.00 to $132,800.00. Blackbaud may pay more or less based on employee qualifications, market value, Company finances, and other operational considerations.

Benefits Include:

  • Medical, dental, and vision insurance
  • Remote-flexible workforce
  • Wellness Programs
  • 401(k) program with employer match
  • Flexible paid time off
  • Generous Parental Leave
  • Donations for Doers
  • Pet insurance, legal and identity protection
  • Tuition reimbursement program

About the company

Blackbaud powers social impact through purpose-driven technology and responsible AI. Guided by our Intelligence for Good® vision, we’re building a culture where innovation, trust, and human expertise come together to help organizations make a greater difference in the world.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.workingnomads.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · WWC 2025

2:22 min

Foundational music theory for pitch detection

Omar Diop Omar Diop · WWC 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

2:12 min

Navigating technical clarity as a global black belt

Chris Heilmann +2 · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

Videos

See all

Related articles

See all