Information Security GRC Analyst

Xylo Technologies, Inc.
United States
about 2 months ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security PCI Data Security Standards Information Security Management System

Job description

· Work Location: Role is 100% Remote. Preference will be given to local candidates who can come to the office as needed for client and departmental meetings, trainings, and other onsite activities.

Requirements

· 10+ Years of Experience in Information Security and Compliance.

· 2+ Years of Experience with security audits based on a standard control set as an auditor or responding information system security officer

· Must Have a Strong Working Knowledge of NIST 800-53 (2 Years of Experience)

· Prior Experience POA&M or CAP.

· Strong Communication Experience.

· Experience With Using A GRC Tool (Archer or Similar) (3 Years of Experience)

· Education - Bachelor’’s Degree - field of study is open, but the degree must be complete and verifiable

Preferred Skills

· Have completed an information security plan or system security plan notebook.

· Simultaneously, manage multiple infosec work efforts.

· Knowledge of IRS 1075, HIPAA, CJIS, MARS-E and/or PCI-DSS.

· Government sector experience

· Certification - CISA, GSLC, or equivalent certification

About the company

· Why is this position open: New Position to assist DIS with the execution of its responsibilities under the statewide information security program.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:03 min

Platform compliance and security certifications for sensitive data

Chad Carlson · WWC 2021

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · WWC Europe 2026

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · WWC Europe 2026

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all