Talent.com
Security Analyst III
Security Analyst IIIFanatics • New York, NY, United States
Security Analyst III

Security Analyst III

Fanatics • New York, NY, United States
3 days ago
Job type
  • Full-time
Job description

Job Description

Overview

As Fanatics Betting & Gaming (FBG) accelerates Fanatics' mission to build the ultimate digital sports platform, the Information Security Analyst III role is critical to ensuring our governance, risk, and compliance programs keep pace with our rapid growth and evolving regulatory landscape. As an Information Security Analyst II at FBG, you'll serve as a key contributor to our security compliance efforts, conducting user access reviews, managing audit readiness activities, and implementing controls that protect our customers and business operations across our real-time, high-performance betting and gaming systems.

This role combines deep GRC expertise, policy development skills, and collaborative partnership with stakeholders across the organization to strengthen our security posture and compliance programs. You'll lead user access review processes, develop and socialize security policies and standards, manage audit and assessment activities, support incident response efforts, and build dashboards that provide visibility into control effectiveness. Working in a highly regulated industry, you'll help ensure our systems meet rigorous security and compliance standards including SOC 2, ISO 27001, and SOX while enabling the business to innovate with confidence. We need analysts who can balance thorough compliance rigor with the practical realities of a fast-moving organization-who understand both security frameworks and how to make controls work effectively in the real world. If you're passionate about building strong compliance programs that actually make organizations more secure and have the experience to back it up, we want to talk with you.

Responsibilities :

  • Administer and enhance the user access review process to identify and address access control issues effectively.
  • Draft, refine, and socialize policies / standards (access control, change management, vendor security, incident response, data privacy); maintain clear SOPs and RACI.
  • Prepare high-quality evidence, narratives, and diagrams; coordinate with auditors / assessors; manage requests and deadlines.
  • Participate in Incident response efforts by conducting log analysis, gathering evidence, and executing remediation tasks.
  • Build dashboards for control health, User Access Reviews completion, vendor coverage, GDPR compliance metrics, and audit findings; present insights to InfoSec leadership and stakeholders.
  • Automate evidence collection and access reviews where possible; propose control enhancements that improve security and reduce operational toil.
  • Deliver security awareness presentations for both technical and non-technical users. Actively contribute to ongoing information security education through diverse methods such as phishing simulations, annual training sessions, on-demand courses, and workshops.
  • Support Governance, Risk, and Compliance (GRC) initiatives by implementing controls and gathering necessary evidence, and control testing.
  • Support InfoSec Risk Issue Intake process to assess and risk rank new issues, identify and document mitigation plans / timelines with risk owners and SMEs, and track to resolution.
  • Support quarterly user access review process (UARs) for SOX systems and ensure tickets are tracked to resolution and actioned within audit requirements. Complete lookback analysis where necessary
  • Support Data Loss Prevention process by triaging and investigating alerts in the Mimecast / Code42 solution.
  • Lead and coordinate GDPR compliance activities including Data Protection Impact Assessments (DPIAs), Records of Processing Activities (RoPA), data subject rights requests, and privacy audits.
  • Manage the Third Party Risk Management (TPRM) program including vendor security assessments, ongoing risk monitoring, review of vendor attestations (SOC 2, ISO 27001), and maintenance of the vendor risk register.
  • Conduct comprehensive security assessments of third-party vendors using standardized questionnaires and frameworks; work with vendors on remediation of identified gaps.
  • Participate in an on-call rotation to address security incidents and escalations promptly.

Qualifications :

  • Minimum of 4-5 years of experience as an Information security analyst or in a similar role
  • Ability to leverage security compliance frameworks to support control improvement and evidence correlation.
  • Working knowledge of SOC 2 (Trust Services Criteria) and ISO / IEC 27001 / 27002; familiarity with mapping controls across frameworks.
  • Strong understanding of GDPR requirements including data protection principles, data subject rights, DPIAs, cross-border data transfers, and breach notification requirements.
  • Proven experience managing Third Party Risk Management programs including vendor assessments, security questionnaire reviews, and ongoing vendor risk monitoring.
  • Practical experience running User Access Reviews : scoping, sampling, evidence collection including completeness and accuracy, exception handling, and remediation follow-through.
  • Solid grasp of least privilege, SoD, joiner / mover / leaver, break-glass, and privileged access management fundamentals.
  • Strong documentation skills (control narratives, test plans, SOPs) and stakeholder communication.
  • Comfort with spreadsheets and basic scripting / queries (e.g., SQL or Python) for sampling and evidence validation.
  • Foundational knowledge in Agile methodologies with ability to successfully collaborate with multiple stakeholders.
  • Ability to communicate effectively with technical and non-technical stakeholders.
  • Ability to prioritize and balance multiple projects simultaneously.
  • Ability to collaborate and work in a team environment.
  • Proven experience drafting documentation such as standards, policies and architecture diagrams.
  • Background in risk assessment methodologies such as NIST and FAIR is a plus
  • The expected salary range for this role is based on job-related knowledge, skills, and experience. This role is eligible for the Fanatics Betting and Gaming annual bonus program and an equity award.

  • Salary range is listed in USD; actual salary will vary based on location.
  • Salary Range : 170,000 - 255,000 per year (actual salary will be determined in part by a successful candidate's geographic location). In addition to base salary, bonus, and equity, full-time employees are eligible for Medical, Dental, Vision, 401K, paid time off, and other benefits like GymPass, Pet Insurance, Family Care Benefits, and more. We'll also give you $700 to set up your home office!
  • Create a job alert for this search

    Security Analyst Iii • New York, NY, United States

    Related jobs
    Securitization Analyst / Associate

    Securitization Analyst / Associate

    RBC Capital Markets, LLC • New York, NY, United States
    Full-time
    Production of marketing materials for existing and target clients.Provide data analysis, including statistical stratification of collateral portfolios, historical performance statistics, projection...Show more
    Last updated: 12 days ago • Promoted
    Security Analyst

    Security Analyst

    EY • Secaucus, NJ, United States
    Full-time
    At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst

    Security Analyst

    Vimerse InfoTech Inc • New York, NY, United States
    Full-time
    Location : New York, NY(Onsite).Professional References Required.Implemented vulnerability management.The position requires a broad foundation of IT / Security architectural experience with an underst...Show more
    Last updated: 3 days ago • Promoted
    Security Risk Analyst

    Security Risk Analyst

    RIT Solutions, Inc. • New York, NY, United States
    Full-time
    Onsite at 55 Water Street, NYC.Long Term Contract / Potential several years with Right to Hire.GRC focused Security role / Risk management, etc. The EITS Security Risk Analyst will interface between...Show more
    Last updated: 30+ days ago • Promoted
    Sr. II Security Analyst - Vulnerabilities

    Sr. II Security Analyst - Vulnerabilities

    NYU Langone Health • New York, NY, United States
    Full-time
    NYU Langone Health is a fully integrated health system that consistently achieves the best patient outcomes through a rigorous focus on quality that has resulted in some of the lowest mortality rat...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst

    Security Analyst

    Taxwell • New York, NY, United States
    Full-time
    Taxwell helps everyday Americans get every tax advantage they deserve by finding credits and deductions they never even knew existed. Our tax preparation software offers easy guidance and ensures yo...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst

    Security Analyst

    Velocity Search Group • New York, NY, United States
    Full-time
    Our client, a professional services company located in NY, NY is looking to hire a.This role collaborates with the Director of Infrastructure & Security to enhance and maintain the Firm's Informati...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst I

    Security Analyst I

    Richmond University Medical Center • New York, NY, United States
    Full-time
    It's fun to work in a company where people truly BELIEVE in what they're doing!.We're committed to bringing passion and customer focus to the business. Hours (United States of America).We are seekin...Show more
    Last updated: 3 days ago • Promoted
    Security Engineer II

    Security Engineer II

    Columbia Bank • Fair Lawn, NJ, United States
    Full-time
    Responsible for the day-to-day security operations and ownership over one or more security practice areas at Columbia Bank. The individual will serve as a technical operations subject matter expert ...Show more
    Last updated: 16 days ago • Promoted
    Senior Offensive Security Engineer / Senior Penetration Tester / Senior Security Analyst USA

    Senior Offensive Security Engineer / Senior Penetration Tester / Senior Security Analyst USA

    Zortech Solutions • New York, NY, United States
    Full-time
    Senior Offensive Security Engineer / Senior Penetration Tester / Senior Security Analyst.Seeking a candidate to plan and execute penetration testing operations in collaboration with business partners, ...Show more
    Last updated: 14 days ago • Promoted
    Senior Threat Analyst 1 (Nights / Weekends)

    Senior Threat Analyst 1 (Nights / Weekends)

    IS3 Solutions • Brooklyn, NY, United States
    Full-time
    We are looking for a SOC engineer for the following position : .Perform many critical functions within the Threat Management discipline including staffing 24x7x365 coverage at the City's Security Ope...Show more
    Last updated: 30+ days ago • Promoted
    Sr. II Security Analyst - Vulnerabilities

    Sr. II Security Analyst - Vulnerabilities

    NYULMC • New York, NY, United States
    Full-time
    NYU Langone Health is a fully integrated health system that consistently achieves the best patient outcomes through a rigorous focus on quality that has resulted in some of the lowest mortality rat...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst

    Security Analyst

    NumeriX • New York, NY, United States
    Full-time
    Since our founding in 1996, we have been at the vanguard of financial technology, providing groundbreaking expertise, quantitative analytics and software that redefine pricing and risk management i...Show more
    Last updated: 3 days ago • Promoted
    Security Analyst - SDR Security Operations

    Security Analyst - SDR Security Operations

    META • New York, NY, United States
    Full-time
    Meta is seeking a Security Analyst to join the Global Security Operations team.The Analyst will serve on the front lines of Meta's Security team and will lead and support security investigations ac...Show more
    Last updated: 3 days ago • Promoted
    Security Analyst - Expert

    Security Analyst - Expert

    Mindlance • New York, NY, United States
    Full-time
    Provide a short description of the Position : An application security engineer ensures software security by identifying vulnerabilities, implementing protective measures, collaborating with developm...Show more
    Last updated: 30+ days ago • Promoted
    Information Technology_USA - USA_Senior Security Analyst

    Information Technology_USA - USA_Senior Security Analyst

    SysMind Tech • Jersey City, NJ, United States
    Full-time
    Please strictly adpersonre to tperson following resume naming convention : .ALL CAPS, NO SPACES B / T UNDERSCORES.PTN_US_GBAMSREQID_CandidateBeelineID. PTN_US_9999999_SKIPJOHNSON0413.Show more
    Last updated: 3 days ago • Promoted
    Security Analyst - Penetration Testing

    Security Analyst - Penetration Testing

    Artech • Montvale, NJ, United States
    Full-time
    Job Title : Security Analyst - Penetration Testing.Required Skills & Qualifications.Applicants must be able to work directly for Artech on W2. Strong analytical and problem-solving skills.Excellent c...Show more
    Last updated: 3 days ago • Promoted
    Risk Monitoring Analyst

    Risk Monitoring Analyst

    Nuvei • Bronx, NY, US
    Full-time
    The world of payment processing is rapidly evolving, and businesses are looking for loyal and strategic partners, to help them grow. Meet Nuvei, the Canadian fintech company accelerating the busines...Show more
    Last updated: 21 days ago • Promoted