Sr. Consultant - Governance, Risk & Compliance (GRC) for CyberOne in Plano, TX (salary not disclosed)
Responsible for serving clients and ensuring the successful execution of Information Security & Privacy projects such as data privacy impact assessments, consulting on strategic initiatives to improve an organization’s security program, and much more. Develop lasting relationships with client personnel and seek to further these relationships through quality product delivery. Responsible for understanding their client’s business and continual demonstration of technical expertise in the Information Security & Privacy field. Develop contacts within the business community and serve as ambassadors of CyberOne in the market.
Essential Functions
Education/Experience/ Required Experience
8-10 years’ experience implementing and delivering GRC technology enablement services using GRC/IRM platforms, i.e., Policy and Compliance Management, Supplier Risk Management, Cyber-Risk Management, Audit Management, Business Continuity, and other risk management processes.
5-6 years’ experience performing supplier risk assessment and management services.
8+ years’ experience leading discussions and services with clients to create a risk-aware culture through proper technology enablement of risk-related processes using GRC/ IRM solutions.
8-10 years’ experience implementing and delivering GRC technology enablement services using GRC/IRM platforms, i.e., Policy and Compliance Management, Supplier Risk Management, Cyber-Risk Management, Audit Management, Business Continuity, and other risk management processes.
5-6 years’ experience performing supplier risk assessment and management services.
8+ years’ experience leading discussions and services with clients to create a risk-aware culture through proper technology enablement of risk-related processes using GRC/IRM solutions.
8-10 years’ experience designing and architecting solutions to automate client processes into GRC solutions to meet their unique requirements.5+ years of relevant consulting or industry experience, preferably in a professional services environment. (Big 4 is a plus).
5+ years' experience performing security and risk maturity assessments against the following frameworks and regulations, but not limited to,
- NIST Cybersecurity Framework (CSF)
- PCI DSS
- ISO 27001/27002
- CMMC
- GDPR and CCPA
- NIST 800-53
- Unified Compliance Framework (UCF)
- GLBA
- COBIT
- SOC Type 1 and 2
- Sarbanes Oxley
Preferred Education / Experience
Bachelor’s degree in relevant discipline (e.g. MIS, CIS) preferred.
Certificate and License Requirements
Professional certifications such as CISSP, CISA, CRISC, CGEIT, GRCP. or other relevant certifications.
Skills/Abilities
Work Environment
For more info.: https://hubs.ly/Q026NB7L0
Request a demo of ControlSight and see how Unified Compliance connects mandates, policies, and controls into one living fabric.