GRC Security Analyst ensuring organizational cybersecurity through proactive vulnerability management and customer security inquiries. Collaborating across teams while supporting compliance and auditing processes.
Responsibilities
Vulnerability Remediation: Work collaboratively with IT and development teams to track, prioritize, and facilitate the remediation of identified security vulnerabilities. This includes monitoring vulnerability management platforms and generating reports to ensure timely closure of issues.
Customer Questionnaire Responses: Assist in completing customer security questionnaires and RFPs (Requests for Proposal). You'll gather necessary information from various internal teams, ensuring our responses are accurate, complete, and reflect our security practices.
Compliance & Audit Support: Help maintain and improve our compliance with various security frameworks (e.g., SOC 2, ISO 27001, NIST). You'll assist with internal and external audits by gathering evidence and documenting processes.
Policy & Procedure Maintenance: Support the GRC team in reviewing and updating security policies, standards, and procedures.
Serve as a liaison between the security team and other departments (e.g., Engineering, Sales, Legal) to ensure security requirements are integrated into business processes.
Requirements
Bachelor's degree in Computer Science, Information Security, or a related field
Familiarity with cybersecurity concepts such as vulnerability management, access control, and incident response.
Basic understanding of common security frameworks (e.g., SOC 2, ISO 27001, NIST).
Experience with or knowledge of vulnerability scanning tools (e.g., Nessus, Qualys) is a plus.
Exceptional written and verbal communication skills.
Strong attention to detail and organizational skills.
Ability to work independently and as part of a team.
A proactive and curious mindset with a strong desire to learn.
Senior Cyber Security Analyst protecting customers from cyber threats while enhancing cyber security services at technology firm. Focused on both security operations and technical delivery.
Cybersecurity Analyst assisting in the review and implementation of cybersecurity initiatives across a large environment at Kemper. Responding to cyber threats and improving processes and technologies.
Senior Information Security Analyst managing Information Security Management System at BMLL Technology. Supporting compliance with ISO 27001 and enhancing security measures.
Graduate Cyber Security Analyst at McKesson participating in a 24 - month Cyber Academy program. Monitor security alerts and contribute to incident response efforts while gaining mentorship.
Threat Intelligence Analyst role analyzing cyber threats and providing strategic recommendations. Working with cybersecurity teams at PwC Canada to safeguard client data and systems.
Contract Security Analyst specializing in security operations and incident response for cloud security at Embark. Focus on alert handling, detection engineering, and data loss prevention.
Cyber Security Analyst providing security operations support for USAF Cloud One project. Engaging in incident response and cybersecurity compliance activities within a hybrid environment.
Cybersecurity Analyst responsible for monitoring, analyzing, and responding to security incidents in SOC. Developing detection rules and conducting threat - hunting campaigns within a hybrid work setup.
Information Security Analyst working with Optasia to enforce security controls and protect data. Collaborating on technical projects and auditing systems in a hybrid work environment.
Cyber Security Analyst investigating and responding to security events at A+E Global Media. Collaborating cross - functionally to improve detection and response processes.