Senior Governance, Risk, Compliance Analyst

Posted 2ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Senior GRC Analyst evaluating cybersecurity controls, privacy, and enterprise risk for Arctic Wolf’s security operations platform. Leading assurance reviews and compliance improvements across global cross-functional teams.

Responsibilities:

  • Evaluate and report on the adequacy and effectiveness of system designs and controls against business, operational, and control objectives
  • Lead discovery sessions with cross-functional teams to identify, document, and improve industry-wide compliance and control design and implementation
  • Plan and execute technical security and privacy assessments across enterprise information systems using industry frameworks
  • Plan, execute, and report on governance and assurance reviews, including post-remediation validations
  • Conduct ongoing control and risk assessments and help develop and execute assurance plans for high-risk areas
  • Lead improvements and innovative design of industry-wide compliance and controls
  • Lead compliance-related change management initiatives within the team and across the organization
  • Support management with complex issues involving internal and external auditors and external regulators
  • Create and communicate data-driven reports and updates to influence internal decisions and outcomes
  • Coordinate with Engineering, IT, Product, R&D, Finance, Legal, Internal Audit, and other cross-functional teams

Requirements:

  • 10+ years of experience in governance, risk management, or compliance
  • Exposure to management consulting, the technology industry, financial services, and/or project management
  • Knowledge of privacy and security frameworks and standards, including ISO 27001, SOC 2, CMMC, and PCI
  • Hands-on experience with GRC automation platforms and tools
  • Knowledge of accepted enterprise risk management frameworks
  • Understanding of cloud security controls and general application controls
  • Broad experience assessing cloud-native environments
  • Excellent presentation and report-writing skills
  • Effective project management skills
  • Excellent verbal and written communication skills
  • Analytical capacity and experience adding structure in complex, ambiguous environments
  • Cross-group collaboration skills, conflict resolution experience, and ability to influence cross-functionally and with executive-level audiences
  • Ability to adapt quickly to shifting priorities, demands, and timelines
  • Technical knowledge and experience working in a SaaS environment
  • Ability to work under pressure with multiple teams and stakeholders
  • Bachelor’s Degree
  • Bachelor’s degree in Business, Information Systems, Computer Science, or a related field preferred
  • CIA, CISA, CRISC, CISM, CISSP, or equivalent certification preferred
  • Background checks are required
  • Must satisfy applicable authorization requirements to receive software or technology controlled under U.S. export control laws and regulations, if applicable
  • Candidates interviewing remotely are expected to be on camera during all video interviews, subject to accommodations

Benefits:

  • Equity for all employees
  • Flexible time off and paid volunteer days
  • RRSP and 401k match
  • Training and career development programs
  • Comprehensive private benefits plan including medical, mental health, dental, disability, life and AD&D, and value-added services
  • Robust Employee Assistance Program (EAP) with mental health services
  • Fertility support and paid parental leave
  • Variable incentive compensation
  • New hire equity grants
  • Accommodations for candidates and employees with disabilities and/or other specific needs where possible