American Tower
GRC Analyst
Boston, Massachusetts · Hybrid · Posted 1 month ago
Opens hdsn.fa.us6.oraclecloud.com
Get a version of your resume written for this job.
- Salary
- Not listed
- Job type
- Not specified
- Work mode
- Hybrid
- Source
- Oracle (employer's hiring system)
Skills mentioned
Data Analysis, Cybersecurity, IAM, ISO 27001, Project Management
About the role
The Team
The Analyst Governance, Risk, and Compliance, a member of the Information Security – Governance, Risk and Compliance (GRC) team, focuses on implementing and maintaining governance frameworks, managing risk remediation activities, and ensuring adherence to regulatory and internal security standards. The incumbent oversees requirements gathering and documentation for the Identity and Access Management (IAM) implementation. The incumbent administers GRC related inquiries from cross-functional business teams. The incumbent assists in the oversight and maintenance of policy and standards.
What You Can Offer Us
- Act as a liaison between IT and business units to support the development and implementation of governance policies, standards, frameworks, and tools that align with organizational objectives.
- Supports requirements gathering and documentation for InfoSec projects and programs, including proactively setting up and leading meetings to work through unclear requirements, workflows, and drive toward identification of solutions.
- Manages GRC ticket maintenance and provides guidance to stakeholders on GRC topics.
- Monitor and maintain risk remediation activities, ensuring compliance issues are addressed, risks are documented, and exceptions are tracked in accordance with established frameworks and standards.
- Provide guidance and training to stakeholders on governance, risk, and compliance topics to enhance awareness and improve adherence to processes.
- Engage constructively with business partners to address information security governance and compliance concerns, offering actionable recommendations for improvement.
- Assist with the development of security architecture and security policies, principles and standards
- Proactively research and stay up to date on the latest access security issues
- Other duties as assigned.
What You Need to Succeed
- Bachelor’s degree in Information Security, Cybersecurity, Risk Management, or equivalent work experience preferred.
- Minimum 2 years of experience in Governance, Risk, and Compliance (GRC) or Information Security required.
- Experience conducting requirements gathering sessions and documentation, including data analysis preferred.
- Experience developing, documenting and maintaining access and security policies, processes, procedures, and standards preferred.
- Strong organization, planning, and project management skills; ability to prioritize tasks for self and team to meet requirements and deadlines.
- Ability to work with different functional groups and levels of employees to effectively and professionally achieve results.
- Excellent written and verbal communication skills and ability to interact well with internal and external parties
- Ability to work individually and in team settings with cross-functional teams
- Strong computer skills, including Microsoft Office suite and Oracle.
- Knowledge of access, security, and risk assessment methods and technologies
- Knowledge of Information Security Standards (ISO 27001/27002, ITIL, etc.)
- Knowledge of Data Privacy and Compliance Regulations (MA CMR 201, HIPPA, Red Flag, etc.)
Job ID or-hdsn-fa-us6-oraclecloud-com-cx-1-2851 · Original posting ↗
Similar jobs
Information Security GRC Analyst III, Controls AssuranceNewFanatics Inc.Jacksonville, Florida
- GRC Analyst2dBase Power CompanyAustin, Texas · On-site
Senior GRC Analyst - Central or Eastern time, US or Canada2dShift TechnologyToronto, Ontario · Remote
Senior Security GRC Analyst3dSalesforceBellevue, Washington · On-site
- Sr. GRC Analyst-Enterprise Cybersecurity3dRivian and Volkswagen Group TechnologiesPalo Alto, California · Hybrid · US$117,200–161,150 / year