Fragomen

A World of Difference in Immigration

IT GRC Analyst

ComplianceComplianceFull TimeRemoteTeam 5,001-10,000H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

21 days ago

Salary

Not specified

Bachelor Degree5 yrs expEnglishCyber Security

Job Description

• Operationalizing Risk Management: Understand industry standard cybersecurity risks and how controls affect them. • Understand how GRC platforms work and how they support Risk Management. • Develop trusted relationships with senior business partners to gain an in-depth understanding of key business processes, products and services, and influences others to ensure business case and customer satisfaction goals are met. • Acquire fundamental knowledge of all Fragomen areas to better understand emerging risks. • Support the Service Delivery function to deliver reliable, best-in-class support services in a manner that meets our contractual obligations and delights our customers and clients. • Assist with vendor and third-party risk management. • Support ISO 27001, SOC 2 type 2 and PCI audits by gathering and documenting how Fragomen is meeting the control objectives identified in these standards. • Support completing client facing requests demonstrating Fragomen’s security controls to include demonstrating and understanding technical security controls. • Work closely with IT internal audit to meet IT security compliance obligations. • Collaboratively work with teammates and internal Fragomen teams and take direction from management to resolve assigned Client support work items with both speed and quality. • Acquire fundamental knowledge of all Compliance Operations areas to gain comprehensive knowledge of operations and industry standard best practices. • Support security awareness programs. • Collaborate with GRC oriented teams - the Office of Audit and Privacy, the Office of General Counsel, Information Security and Compliance - and legal/client relationship teams to continuously improve and demonstrate the firm’s commitment to data privacy and security. • Produce written and verbal communication, that when escalating matters, is summarized, and always clear and concise. • Provide ideas and suggestions for department process improvements.

Job Requirements

  • Minimum of 5 years of experience in the IT Security GRC field based on work history and/or education.
  • A strong understanding information security and data privacy frameworks and their control objectives including NIST Cyber Security Framework (CSF), NIST 800-53, and CIS.
  • Experience supporting ISO27X series, SOC2 and PCI compliance requirements and external audits, including control and evidence documentation.
  • Broad knowledge of Data Privacy regulatory landscape including but not limited to GDPR.
  • Experience in risk management and project management, including but not limited to documenting and developing remediation plans.
  • Experience supporting security awareness training.
  • Drafting IT Policies that align with industry best practice and cybersecurity frameworks.
  • Strong communication skills both written and verbal.
  • Outstanding work ethic.

Benefits

  • Health insurance
  • 401(k) matching
  • Flexible work hours
  • Paid time off
  • Remote work options

Related Categories

Related Job Pages

More Compliance Jobs

Full TimeRemoteTeam 500,000Since 1973

Responsible for supporting operations at FedEx, leveraging diverse skills for effective customer service and solutions. Requires significant experience and commitment to team values.

Kentucky

Compliance Analyst

Onebrief

Software for rapid military planning: make planning fast enough for today's environment

Compliance21 days ago
Full TimeRemoteTeam 1-10H1B No Sponsor

Compliance Analyst ensuring governance, risk and compliance program for Onebrief

CloudCyber Security
United States
$180K - $210K / year

Treasury and Compliance Manager

Discogs

We're on a mission to build the biggest and most comprehensive international music database and marketplace.

Compliance21 days ago
Full TimeRemoteTeam 51-200Since 2000H1B No Sponsor

The Treasury & Compliance Manager ensures accurate execution of capital movements and regulatory compliance across funds, overseeing cash operations, regulatory filings, and risk management processes.

Ai-Enabled ToolsCompliance WorkflowsFund OperationsRegulatory FilingsTreasury Operations
United States
$110K - $160K / year

Chief Compliance Officer

Novig

Building America's Sports Prediction Market

Compliance21 days ago
Full TimeRemoteTeam 11-50Since 2021

This role involves building and leading a best-in-class compliance framework for Novig's sports prediction market. Excited to build and lead a compliance framework with institutional-grade regulatory rigor. Motivated to apply expertise in CFTC DCM Core Principles to enhance a sca...

CFTC DCM Core Principlesregulatory examinationscompliance frameworksregulatory auditscross-functional collaboration
United States