GRC Risk Analyst at Tanium conducting compliance assessments and developing risk management policies. Collaborating with stakeholders to ensure adherence to regulatory requirements and industry standards.
Responsibilities
Executes audits and risk assessments, communicates results of findings and makes recommendations for improvement through concise, high-quality reports
Ensures company management is knowledgeable of the risks of noncompliance to information security standards and regulatory requirements
Writes and revises policies, standards, procedures, guidelines and other documentation based on Tanium’s business needs
Participates in Information Security, Information Technology and Product Security projects driving the implementation of new process improvements and risk treatments
Works closely with Information Security, Information Technology, Product Security and System Owners to review and respond to security questionnaires and due diligence requests
Assists in the assessment and review of new vendors to ensure adequate levels of controls are in place to maintain compliance with security requirements
Prepares reports summarizing risk assessment findings and presents them to management
Recommends changes in business processes or policies to manage risks
Ensures compliance with regulatory requirements related to risk management
Monitors risks, proposing preventive measures and solutions to prevent future risks
Requirements
Bachelor's Degree in Computer Science, Engineering or equivalent experience
3-5 years in information technology / information security auditing, preferably within a software engineering environment
Technical knowledge of fundamental audit and risk concepts within the context of information technology and information security
Familiarity with one or more of the following frameworks: FedRAMP, StateRAMP, CMMC, ISO 27001:2013, SOC2, NIST Cyber Security Framework (CSF)
Experience writing audit findings, reports, policies, standards, procedures and guidelines
Comfortable performing technical interviews with technical personnel and business process reviews with non-technical personnel
Working knowledge of risk assessment methodologies, contingency planning approaches, data analysis techniques and improvement tools including root cause analysis, corrective action, preventative action, Plan-Do-Check-Act and the cost of quality
Working knowledge of improvement programs such as Total Quality Management, ISO 9001, Six Sigma, Theory of Constraints or Lean
Experience managing projects, implementing change and tracking their implementation progress
Excellent knowledge of risk analysis methodologies and tools
Associate Product Compliance Engineer at MKS Inc. driving compliance and supporting sustainability initiatives for world - class products with global teams. Involves product certifications and environmental compliance management.
Compliance Officer at Baker Tilly Staples Rodway, supporting compliance processes with key regulatory and professional standards. Seeking detail - oriented candidates in a hybrid work environment.
Compliance Manager leading information security and compliance at Sona, an AI - native workforce management company. Own and evolve security and compliance systems across the UK and US.
Lead Compliance and Regulatory Reporting for Nium, the leader in real - time global payments. Collaborate with teams on regulatory guidelines and data governance.
Senior Analyst overseeing regulatory reporting for global payments infrastructure at Nium. Collaborating with teams to ensure compliance and data accuracy in reporting processes.
Regulatory Reporting & Client Money Officer responsible for regulatory compliance and safeguarding client funds at Sokin. Collaborating with Finance, Compliance, and Operations to ensure integrity and accuracy in reporting.
Chargé(e) de Qualité & Conformité au sein d'une organisation internationale. Rôle clé entre équipes françaises et britannique pour assurer la qualité et conformité réglementaire.
Regulatory Affairs Specialist ensuring compliance for IVD products. Collaborate with teams to develop regulatory strategies and prepare submissions to FDA and EU authorities.
Associate Director Regulatory developing and implementing worldwide regulatory strategies for new products at Grifols. Leading interactions with regulatory authorities and advising cross - functional teams.