> Markdown version of [/jobs/ext/1955646-cyber-security-technical-advisor-grc](https://www.wearedevelopers.com/jobs/ext/1955646-cyber-security-technical-advisor-grc). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Technical Advisor (GRC) - **Company:** Mitsubishi UFJ Financial Group - **Location:** Jersey City, NJ, United States (Remote available) - **Experience:** Experienced - **Salary:** $113,000.0 - $168,000.0 - **Contract:** Permanent contract - **Skills:** Cloud Computing, Cloud Computing Security, Configuration Management, Cyber Security, Information Systems, Data Security, Microsoft Exchange Server, Identity and Access Management, Internet Security, Information Systems Security Architecture Professional, Systems Development Life Cycle, Security Information and Event Management, Software Engineering, Strategies of Testing, Privacy Controls, Cloud Platform System, Test Scripts, Information Technology, Data Management - **Published:** August 6, 2026 - **Apply:** https://www.careerbuilder.com/job-details/cyber-security-technical-advisor-grc-avp-jersey-city-nj--f2c8047e-81f9-4efc-ac80-270e8ceaf278 ## About the Role * Experience: Minimum of 4 - 7 years' experience in a combination of risk management, information security, and IT roles. Prior audit experience a plus. High technical knowledge across Cybersecurity domains such as Identity Access Management, Data Security, Configuration Management, Log Generation, Incident Response, security risk assessment/testing methodologies, Secure Software Development Lifecycle, evaluating the adequacy and efficiency of internal controls; and identifying issues resulting from internal and/or external compliance examinations especially in cloud environments. * Cloud Security: In-depth knowledge of cloud security practices and technologies for major providers. * Documentation: Experience in writing process documentation and designing/executing control test scripts. * Regulatory Knowledge: Knowledge of domestic and international banking regulations (Reg W, Basel II, FFIEC, GDPR, etc.) and experience with enforcement agencies oversight activities (regulatory examinations, matters requiring attention (MRAs), consent orders, etc.) within a global systemically important financial institution's information technology and information security environments. * Technical Understanding: Understanding of the regulatory environment and regulations related to technology risk, and Office of the Comptroller of the Currency (OCC) and Federal Reserve Board (FRB) expectations. * Certifications: Professional certifications such as CCAK, CISA, CRISC, CISM, CGEIT, CSX, CISSP. * Collaboration: Ability to constructively work both independently and in collaborative environments involving all levels of management and employees. * Multitasking: Ability to manage multiple priorities concurrently, prioritize, and efficiently complete responsibilities while maintaining the highest quality. * Education: Bachelor's degree in related IT or Information Security disciplines. * Skills: Excellent analytical, organizational, and conceptual skills. Excellent oral and written communication skills. Education & Certifications: * Bachelor's degree in Information Security or a closely related discipline, or equivalent related experience * "Visa sponsorship/support is based on business needs. We do not anticipate providing visa sponsorship/support for this position.", Analysis Skills, Auditing, Banking Regulations, Best Practices, CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Computing, Communication Skills, Computer Security, Configuration Management, County Ordinances, Diversity, Documentation, Environmental Monitoring, Establish Priorities, Finance, Financial Regulations, Futures, Genetics, Identify Issues, Identity Data Management, Incident Response, Information Assets, Information/Data Security (InfoSec), Internet Security, Legal, Microsoft Exchange Server, Military, Multitasking, Organizational Skills, Performance Metrics, Presentation/Verbal Skills, Privacy Controls, Privacy Regulations, Quality Assurance Methodology, Quality Management, Regulations, Risk, Risk Analysis, Risk Management, Securities, Security Analysis, Security Information and Event Management (SIEM), Security Monitoring, Software Development Lifecycle (SDLC), State Laws and Regulations, Sustainability, Team Lead/Manager, Team Player, Test Scripts, Testing, Time Management, Writing Skills ## Description This role is a member of the CISO of America's team and will provide control design guidance and conduct independent control assessments within the Cybersecurity GRC function. The primary focus will be on the design, implementation, and testing of security controls, ensuring that technical systems and information assets are appropriately protected within the Cloud and on-prem environments. The role also emphasizes comprehensive risk management, including the identification, assessment, and management of inherent, control, and residual risks., Regulatory and Compliance * Maintain a high degree of knowledge with current and proposed security changes impacting regulatory, privacy, and security industry best practice guidance, leveraging technological solutions to meet enterprise needs. * Evaluate the extent to which the first line of defense is aligned with internal and external control standards, as well as regulatory and audit requirements. Communication and Guidance * Provide clear and consistent communications to lines of business related to cybersecurity topics. Guide the lines of business through assessments, translating the technology/security questions so that they can be understood by the business; then guide them as to how to gather the required information. Risk Management and Control * Ensure that internal controls designed to mitigate technology and cyber risks are managed, mitigated, and commensurate with the business risk. * Support Information Security oversight and governance by ensuring the control environment is monitored through relevant KRI/KPIs. * Ensure gaps are addressed via remediation plans with timely resolution which address root cause of control failures. Reporting * Compile and distribute program level reporting to relevant stakeholders. Implementation and Sustainability * Drive implementation, sustainability, and maturity of the firm's Information Security control framework. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Are Classical Automation Frameworks Dead? How AI Agents Are Transforming QA](https://www.wearedevelopers.com/videos/100243-are-classical-automation-frameworks-dead-how-ai-agents-are-transforming-qa) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [How to govern Vibe Coding for the Enterprise](https://www.wearedevelopers.com/videos/100290-how-to-govern-vibe-coding-for-the-enterprise) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Résumé-Driven Development: How IT trends affect the job market for software developers](https://www.wearedevelopers.com/magazine/59-resume-driven-development-how-it-trends-affect-the-job-market-for-software-developers) - [Software Developer Salary in Switzerland [2023]](https://www.wearedevelopers.com/magazine/215-software-developer-salary-in-switzerland-2023) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)