Talent.com
Analyst, Senior GRC Information Security Analyst
Analyst, Senior GRC Information Security AnalystBanc of California • Santa Ana, CA, United States
Analyst, Senior GRC Information Security Analyst

Analyst, Senior GRC Information Security Analyst

Banc of California • Santa Ana, CA, United States
30+ days ago
Job type
  • Full-time
Job description

Description

BANC OF CALIFORNIA AND YOUR CAREER

Banc of California, Inc. (NYSE : BANC) is a bank holding company headquartered in Los Angeles with one wholly-owned banking subsidiary, Banc of California (the "bank"). Banc of California is one of the nation's premier relationship-based business banks focused on providing banking and treasury management services to small, middle-market, and venture-backed businesses. Banc of California offers a broad range of loan and deposit products and services, with full-service branches throughout California and Denver, Colorado, as well as full-stack payment processing solutions through its subsidiary, Deepstack Technologies. The bank is committed to its local communities by supporting organizations that provide financial literacy and job training, small business support, affordable housing, and more.

At Banc of California, our success is driven by our people, and we take pride in fostering an environment where everyone can reach their full potential. We embrace a culture of empowerment, progressive thinking, and entrepreneurial spirit, ensuring our team members have an opportunity to make an impact and play an important role in the future of Banc of California. Our core values - Entrepreneurialism, Operational Excellence, and Superior Analytics - empower us in creating a dynamic and inclusive workplace. We are committed to supporting your growth and well-being with comprehensive benefits, career development programs, a variety of employee resource groups, and more. TOGETHER WE WIN®

THE OPPORTUNITY

The Senior GRC Information Security Analyst role will be part of the Information Security Governance, Risk, & Compliance (GRC) team at Banc of California. The Information Security GRC team is responsible for the overall security posture of Banc of California by ensuring compliance with applicable regulations and contractual obligations and maintaining effective and efficient governance, risk, and compliance programs. In addition, the Information Security GRC team is directly involved with supporting and enabling Information Technology, Information Security compliance initiatives.

We seek a Senior GRC Information Security Analyst with extensive experience implementing, managing, and maturing compliance programs, including but not limited to SOC2, ISO27xxxx, GLBA, GDPR, and CCPA. The individual must possess a significant level of technical knowledge that allows for clear communication with security and technology stakeholders and the ability to provide actionable guidance and recommendations on processes.

As a member of the Information Security GRC team, this role will be instrumental in supporting the strategy of the GRC program in partnership with senior management. In addition to technical acumen, the role requires an individual who is results-oriented, pragmatic, and demonstrates effective problem-solving and communication skills. The Senior GRC Information Security Analyst often serves as the subject matter expert for colleagues and line-of-business managers, and experience with multiple technologies, compliance requirements and risk management methodologies are crucial. Performs all duties in accordance with the Company's policies and procedures, all U.S. state and federal laws and regulations, wherein the Company operates.

HOW YOU'LL MAKE A DIFFERENCE

Contribute to the development, management, and ongoing improvement of Information Security risk program, compliance initiatives, and overall security risk posture.

Partner with senior management to design and implement maturity strategies and operations into the Information Security GRC team.

Lead critical control activities with stakeholders across the business, quantifying risk, evaluating mitigations, and driving actions to measurably reduce risk.

Conduct regular risk assessments to identify potential threats and vulnerabilities across the organization analyzing their impact and likelihood of occurrence.

Generate reports on risk assessments, compliance status, and control effectiveness to communicate findings to stakeholders at various levels within the organization.

Establish and contribute to risk and compliance activities with an eye toward continuous controls monitoring automation.

Validate that information security requirements are built into architecture and new technology projects.

Maintain Information Security risk register, report monthly to appropriately address key risk areas.

Conduct technical security posture review for annual vendor monitoring and re-assessment processes for new and existing vendors.

Provide support to the Information Security Incident Response team during cyber / privacy incidents.

Support internal and external audits by providing documentation and supporting evidence of compliance.

Support policies and procedures maintenance aligned with in-scope security frameworks, regulations, and internal standards to manage identified risk effectively.

Prepare detailed reports for senior leadership, including KRI and KPI.

Act as a mentor, advisory, and escalation point for team members and stakeholders.

Treat people with respect; keep commitments; inspire the trust of others; work ethically and with integrity; uphold organizational values; accept responsibility for own actions.

Demonstrates knowledge of and adherence to EEO policy; shows respect and sensitivity for cultural differences; educates others on the value of diversity; promotes working environment free of harassment of any type; builds a diverse workforce and supports affirmative action.

Follows policies and procedures; completes tasks correctly and on time; supports the company's goals and values.

Performs the position safely, without endangering the health or safety to themselves or others and will be expected to report potentially unsafe conditions. The employee shall comply with occupational safety and health standards and all rules, regulations and orders issued pursuant to the OSHA Act of 1970, which are applicable to one's own actions and conduct.

Performs other duties and projects as assigned.

WHAT YOU'LL BRING

Bachelor's degree in information systems, engineering, business, risk management, or related field; and related certifications (e.g., CRISC, CISSP, CISS, CISM, CISA, Security+, CEH, GSEC).

5+ years of experience in GRC, security, risk management or related fields, particularly in highly regulated industries such as financial, professional services, or government, with expertise in navigating complex regulatory requirements.

High technical knowledge across Cybersecurity domains, including Security Operations, Incident Response, Security Engineering, Cloud Security, Artificial Intelligence (AI), Data Security, Configuration Management, Log Generation, Security Risk Assessments / testing methodologies, Secure Software Development Lifecycle, evaluating the adequacy and efficiency of internal controls.

Expert knowledge of GRC frameworks and regulations (e.g., PCI-DSS, GDPR, CCPA, GLBA, NIST, ISO 27001).

Strong knowledge in OWASP, CIS and / or other security standards and secure configuration baselines.

Experience developing and implementing GRC framework, policies and procedures.

Excellent analytical skills with the ability to assess complex risks and develop effective mitigation security strategies.

Proven ability to lead and manage projects, including coordinating cross-functional teams and delivering results on time.

Ability to adapt to a fast-paced and dynamic environment, with a focus on continuous improvement and innovation.

Ability to work on multiple GRC projects simultaneously.

Excellent communication and interpersonal skills.

HOW WE'LL SUPPORT YOU

Financial Security : You will be eligible to participate in the company's 401k plan which includes a company match and immediate vesting.

Health & Well-Being : We offer comprehensive insurance options including medical, dental, vision, AD&D, supplemental life, long-term disability, pre-tax Health Savings Account with employer contributions, and pre-tax Flexible Spending Account (FSA).

Building & Supporting Your Family : Banc of California partners with providers that offeradoption, surrogacy, and fertility assistance as well as paid parental leave and family support solutions including care options for your family.

Paid Time Away : Eligible team members receive paid vacation days, holidays, and volunteer time off.

Career Growth Opportunities : To support career growth of our team members, we offer tuition reimbursement, an annual mentorship program, leadership development resources, access to LinkedIn Learning, and more.

SALARY RANGE

The base salary ultimately offered is determined through a review of education, industry experience, training, knowledge, skills, abilities of the applicant in alignment with market data and other factors.

Banc of California is an equal opportunity employer committed to creating a diverse workforce. All qualified applicants will receive consideration for employment without regard to age (40 and over), ancestry, color, religious creed (including religious dress and grooming practices), denial of Family and Medical Care Leave, disability (mental and physical) including HIV and AIDS, marital status, medical condition (cancer and genetic characteristics), genetic information, military and veteran status, national origin (including language use restrictions), race, sex (which includes pregnancy, childbirth, breastfeeding and medical conditions related to pregnancy, childbirth or breastfeeding), gender, gender identity, gender expression, and sexual orientation. If you require reasonable accommodation as part of the application process, please contact Talent Acquisition.

Equal Opportunity Employer

This employer is required to notify all applicants of their rights pursuant to federal employment laws.

For further information, please review the Know Your Rights () notice from the Department of Labor.

Equal Opportunity Employer

PacWest Bancorp and its affiliates are fully committed to the principles of equal opportunity and diversity. We take pride in building a workplace culture where all employees feel supported and respected, and have equal access to career and development opportunities without regard to race, religion / creed, color, national origin, age, marital status, ancestry, sex, gender (including pregnancy, childbirth, breastfeeding or related medical conditions), gender identity / expression, sexual orientation, veteran status, physical or mental disability, medical condition, military status, genetic information, or any other characteristic protected by federal, state or local laws.

Create a job alert for this search

Information Security Analyst • Santa Ana, CA, United States

Related jobs
Sr Information Security Analyst

Sr Information Security Analyst

Farmers and Merchants Bank of Long Beach • Seal Beach, CA, United States
Full-time
Information Security Analyst designs, configures, administers, and monitors information security controls for the Bank.This position assists the CISO with risk assessment activities, selecting and ...Show more
Last updated: 5 days ago • Promoted
IT Security Analyst 3 - IS - Data Security - FT - Day - Onsite

IT Security Analyst 3 - IS - Data Security - FT - Day - Onsite

University Of California Irvine • Orange, CA, United States
Full-time
University of California, Irvine, and the only academic health system based in Orange County.UCI Health is comprised of its main campus, UCI Medical Center, a 459-bed, acute care hospital in in Ora...Show more
Last updated: 30+ days ago • Promoted
GSOC Analyst - On-Site / Physical Security

GSOC Analyst - On-Site / Physical Security

Metro One Loss Prevention Services Group • Newport Beach, CA, United States
Full-time
THIS IS NOT A REMOTE OR CYBERSECURTIY POSITION.Global Security Operations Center (GSOC) Analyst.Do you have a passion for service? Ready to build a career, not just find another job? Metro One Loss...Show more
Last updated: 16 days ago • Promoted
GSOC Analyst - On-Site / Physical Security

GSOC Analyst - On-Site / Physical Security

Metro One LPSG • Newport Coast, CA, United States
Full-time
THIS IS NOT A REMOTE OR CYBERSECURTIY POSITION • • •.LOCATED IN NEWPORT BEACH, CA • • •.Global Security Operations Center (GSOC) Analyst. Do you have a passion for service? Ready to build a career, not ju...Show more
Last updated: 16 days ago • Promoted
Risk Analyst (Remote)

Risk Analyst (Remote)

First American • Santa Ana, CA, United States
Remote
Full-time
Who We Are Join a team that puts its People First! First American's National Production Services division provides global title and escrow production support across all channels within First Americ...Show more
Last updated: 16 days ago • Promoted
Senior Security Engineer, Offensive Security

Senior Security Engineer, Offensive Security

Anduril Industries • Costa Mesa, CA, United States
Full-time
Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the def...Show more
Last updated: 30+ days ago • Promoted
Analyst

Analyst

California Staffing • Costa Mesa, CA, US
Full-time
The Analyst, under the direction of Right of Way Management or the Title Supervisor, should be knowledgeable of all right of way related documents, including, but not limited to, title reports, rig...Show more
Last updated: 7 days ago • Promoted
Officer, Senior Information Security Engineer

Officer, Senior Information Security Engineer

Banc of California • Santa Ana, CA, United States
Full-time
BANC OF CALIFORNIA AND YOUR CAREER.NYSE : BANC) is a bank holding company headquartered in Los Angeles with one wholly-owned banking subsidiary, Banc of California (the "bank").Banc of California is...Show more
Last updated: 30+ days ago • Promoted
Senior Security Engineer

Senior Security Engineer

Anduril Industries • Costa Mesa, CA, United States
Full-time
Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the def...Show more
Last updated: 2 days ago • Promoted
Itsm Analyst

Itsm Analyst

TEKsystems • Fountain Valley, CA, United States
Full-time
ITSM Analyst II is responsible for analyzing and improving business and technical processes and bridge the gap between business needs and technical requirements. This role collects and analyzes data...Show more
Last updated: 3 days ago • Promoted
Senior Information Security Architect - Cloud IAM

Senior Information Security Architect - Cloud IAM

First American • Santa Ana, CA, United States
Full-time
Join a team that puts its People First! Since 1889, First American (NYSE : FAF) has held an unwavering belief in its people. They are passionate about what they do, and we are equally passionate abou...Show more
Last updated: 30+ days ago • Promoted
Information Systems Security Manager

Information Systems Security Manager

Anduril Industries • Costa Mesa, CA, United States
Full-time
Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the def...Show more
Last updated: 5 days ago • Promoted
Information Security Manager-IAM

Information Security Manager-IAM

First American • Santa Ana, CA, United States
Full-time
Join a team that puts its People First! Since 1889, First American (NYSE : FAF) has held an unwavering belief in its people. They are passionate about what they do, and we are equally passionate abou...Show more
Last updated: 30+ days ago • Promoted
IT Security Analyst 3 - IS - Data Security - FT - Day - Onsite

IT Security Analyst 3 - IS - Data Security - FT - Day - Onsite

University of California • Orange, CA, United States
Full-time
University of California, Irvine, and the only academic health system based in Orange County.UCI Health is comprised of its main campus, UCI Medical Center, a 459-bed, acute care hospital in in Ora...Show more
Last updated: 30+ days ago • Promoted
Systems Security Engineer II

Systems Security Engineer II

Cambro Manufacturing • Huntington Beach, CA, United States
Full-time
First Shift (United States of America).The System Security Engineer Level II is required to be a highly skilled and hands-on security engineer, and will be responsible for helping to maintain and e...Show more
Last updated: 12 days ago • Promoted
SR. Security Architect

SR. Security Architect

Eclaro • Santa Ana, CA, United States
Full-time
Use your skills where innovative technology solutions begin.ECLARO's client is a leading technology solutions provider, collaborating with customers to manage their needs and achieve success in the...Show more
Last updated: 19 days ago • Promoted
Information Security Engineer

Information Security Engineer

O. C. Credit Union • Santa Ana, CA, United States
Full-time
Orange County's Credit Union is hiring : Information Security Engineer.Why Orange County's Credit Union?.With over 85 years of experience, serving 123,000+ members, and managing $2.Our mantra, "Putt...Show more
Last updated: 30+ days ago • Promoted
IT Security Analyst 3 - IS - Data Security - FT - Day - Onsite

IT Security Analyst 3 - IS - Data Security - FT - Day - Onsite

University of California - Irvine Health • Orange, CA, United States
Full-time
University of California, Irvine, and the only academic health system based in Orange County.UCI Health is comprised of its main campus,. UCI Health Community Network in Orange and Los Angeles count...Show more
Last updated: 30+ days ago • Promoted