CyberSecurity Specialist - GRC

Info Dinamica Inc
Phoenix, AZ, United States
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Control Objectives for Information and Related Technology (COBIT) Cyber Security Systems Development Life Cycle IT General Controls (ITGC)

Job description

We are seeking a highly skilled Technology Risk & Controls Analyst with experience in SDLC, Architecture, Information Security, and Technology Risk Management within the financial services industry. The role requires hands-on experience in IT ITAC, and Information Security control testing, risk assessments, audit support, and regulatory compliance activities. The successful candidate will act as a trusted risk advisor to technology teams while ensuring effective control design, testing, and remediation. Key Responsibilities Conduct IT ITAC, and Information Security control testing and document results. Perform Risk & Control Self-Assessments (RCSA) and identify technology risks and control gaps. Evaluate control design and operating effectiveness across SDLC, Architecture, and Technology processes. Manage audit findings, control deficiencies, and remediation activities through closure. Support internal/external audits, regulatory reviews, and compliance requests. Partner with SDLC and Architecture teams to provide risk guidance and governance oversight. Monitor risk metrics, control performance, and compliance status.

Requirements

5+ years of experience in Technology Risk, Information Security, IT Controls, Audit, or GRC within financial services. Hands-on experience with IT ITAC, and Information Security control testing. Strong knowledge of risk management, controls, RCSA, audit, and regulatory compliance. Experience supporting SDLC and Architecture governance processes. Excellent analytical, documentation, and stakeholder management skills. Preferred Qualifications Experience with AI-driven control testing automation or control monitoring solutions. Certifications such as CISA, CRISC, CISSP, CISM, or equivalent. Familiarity with regulatory and industry frameworks such as NIST, COBIT, ISO 27001, SOX, or FFIEC. IT& ITAC Control Testing Technology Risk Management Information Security Controls RCSA SDLC & Architecture Risk Governance Audit & Regulatory Compliance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:43 min

Reviewing deterministic security controls and compliance frameworks

Carey Liu Carey Liu · WWC Europe 2026

1:26 min

Bridging the sim-to-real gap with multi-control networks

Alexander Schwarz Alexander Schwarz · WWC 2025

3:46 min

Core terminology and audiences for interpretable artificial intelligence

Karol Przystalski · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:49 min

Verifying dependency metadata accuracy through controlled package installations

Uwe Korn Uwe Korn · WWC Europe 2026

3:21 min

Automating complete quality assurance pipelines with artificial intelligence

Evelyn Haslinger · LIVE

Videos

See all

Related articles

See all