Talent.com
Senior Security GRC Analyst

Senior Security GRC Analyst

IBMNew York, NY, United States
2 days ago
Job type
  • Full-time
Job description

Introduction

A career in IBM Software means you'll be part of a team that transforms our customers' challenges into industry-leading solutions. We are an infinitely curious team, always seeking new possibilities, and dedicated to creating the world's leading AI-powered, cloud-native software solutions. Our renowned legacy creates endless global opportunities for our network of IBMers. We are a team of deep product experts, ensuring exceptional client experiences, with a focus on delivery, excellence, and obsession over customer outcomes. This position involves contributing to HashiCorp's offerings, now part of IBM, which empower organizations to automate and secure multi-cloud and hybrid environments. You'll join a team managing the lifecycle of infrastructure and security, enhancing IBM's cloud solutions to ensure enterprises achieve efficiency, security, and scalability in their cloud journey.

Your role and responsibilities

We're looking for a highly organized, analytical, and detailed-oriented Senior Security GRC Analyst with broad experience across all aspects in both commercial and public sector compliance.

In this role, you'll split your time between public sector and commercial compliance work. You'll focus primarily on supporting public sector initiatives, security governance, driving complex cross-org remediation projects, and internal and external audit. You'll have the opportunity to get deep into HashiCorp's product portfolio and technology stack to meaningfully mitigate risks. As a senior member of the team, you'll also help mentor junior analysts.

Security at HashiCorp is a remote team. While prior experience working remotely isn't required, we are looking for team members who can perform well given a high level of independence and autonomy.

In this role, your responsibilities will include :

Support public sector initiatives through an ISSO-like role. You'll serve as a liaison between the central FedRAMP team and HashiCorp, working closely with them and control and system owners to achieve, maintain and report on compliance with FedRAMP.

Deep diving into potential issues and gaps, and performing continuous monitoring and internal audit of controls. Where gaps are confirmed, you'll work with control owners to determine the root cause, identify durable solutions that will prevent reoccurrence, and drive remediation through completion.

Support rollout and evaluation of security controls and compliance requirements for new product and feature launches.

Participate in all aspects of external audit, including preparation, evidence collection, walkthroughs, and audit closure.

Lead security governance improvements and directly execute on governance initiatives and activities (including issues management, policy development, stakeholder communication and training, and reporting).

Lead efforts to make GRC more data driven and quantifiable.

Other GRC tasks and responsibilities as assigned.

This job can be performed from anywhere in the US

Required technical and professional expertise

10+ years of experience, with at least 5+ in GRC roles

Strong understanding of FedRAMP and SOC 2. You should feel comfortable walking through the details and lifecycle of each end-to-end.

Familiarity with modern tech environments (cloud, CI / CD, etc)

Familiarity with the function of an established security program

Strong attention to detail and excellent written and verbal communication with both technical and non-technical audiences

Comfortable working both independently and with other teams

Ability to prioritize, plan, execute, and track multiple projects at once following established processes and procedures.

Highly responsive

Preferred technical and professional experience

Experience working in a large, multi-cloud environment

Experience working in a large enterprise

IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.

Create a job alert for this search

Senior Security Analyst • New York, NY, United States

Related jobs
  • New!
SAP GRC Analyst

SAP GRC Analyst

US Tech Solutions, Inc.White plains- Westchester, NY
Temporary
Candidates are REQUIRED to be local to the Tri-State area (NY, NJ & CT).Fully remote positions are prohibited.Hybrid schedules are permissible with a minimum of 3 days on-site depending on assi...Show moreLast updated: 3 hours ago
  • Promoted
Security Analyst

Security Analyst

VirtualVocationsFlushing, New York, United States
Full-time
A company is looking for a Security Analyst to protect its blockchain infrastructure.Key Responsibilities Design, build, and tune real-time detections in Python for cloud-native services and bloc...Show moreLast updated: 30+ days ago
  • Promoted
Senior Information Security Analyst

Senior Information Security Analyst

VirtualVocationsBronx, New York, United States
Full-time
A company is looking for a Senior Information Security Analyst in the Information Technology field.Key Responsibilities Lead complex incident response investigations and forensic analysis Conduc...Show moreLast updated: 30+ days ago
  • Promoted
GRC Analyst

GRC Analyst

Mizuho Bank LtdNew York, NY, United States
Full-time
Join the Mizuho team as a GRC Analyst!.Communicate with auditors to answer questions and provide clarification.Review audit findings and provide feedback to management. Participate in meetings with ...Show moreLast updated: 2 days ago
  • Promoted
Security Supervisor

Security Supervisor

Childrens Specialized HospNew Brunswick, NJ, United States
Full-time
Job Title : Security Supervisor.Location : Children's Specialized Hosp.The above reflects the anticipated hourly wage range for this position if hired to work in New Jersey.The compensation offered t...Show moreLast updated: 2 days ago
  • Promoted
Senior Cybersecurity GRC Analyst

Senior Cybersecurity GRC Analyst

SchonfeldNew York, NY, United States
Full-time
The Schonfeld Cybersecurity Operations team is seeking a Governance Risk & Compliance Analyst.As the senior-most GRC analyst, you will shape Schonfeld's GRC strategy while directly managing key pol...Show moreLast updated: 2 days ago
  • Promoted
GRC Analyst

GRC Analyst

Robert HalfWoodbridge, NJ, US
Full-time
We are looking for a detail-oriented GRC Analyst to join our team in Woodbridge, New Jersey.In this role, you will support audit processes, oversee cybersecurity training initiatives, and ensure co...Show moreLast updated: 9 days ago
  • Promoted
Senior Application Security Manager

Senior Application Security Manager

VirtualVocationsBronx, New York, United States
Full-time
A company is looking for a Senior Manager, Application Security to lead their Application Security program.Key Responsibilities Manage and grow the Application Security, Vulnerability Management,...Show moreLast updated: 17 days ago
  • Promoted
Cybersecurity Sr. GRC Analyst

Cybersecurity Sr. GRC Analyst

RIT Solutions, Inc.New York, NY, United States
Full-time
Hybrid (Tue-Thu) in King of Prussia, PA.Best possible, but keep at the lower end (Oil & Gas client budget).Our client, a top-tier Management Consulting firm, has partnered with an Oil & Natural Gas...Show moreLast updated: 2 days ago
  • Promoted
Risk Consulting - Risk Tech - SAP Security & GRC Manager - Multiple Locations

Risk Consulting - Risk Tech - SAP Security & GRC Manager - Multiple Locations

EYNew York, NY, United States
Full-time
Location : Atlanta, New York, New Jersey, Houston, Dallas, Chicago, Boston, Philadelphia, Los Angeles, Cleveland, Pittsburgh. At EY, we're all in to shape your future with confidence.We'll help you s...Show moreLast updated: 2 days ago
  • Promoted
  • New!
Workday HCM / Security Analyst

Workday HCM / Security Analyst

VirtualVocationsFlushing, New York, United States
Full-time
A company is looking for a Workday HCM / Security Analyst near-shore.Key Responsibilities Configure supervisory organizations, roles, and security groups Maintain user access and validate permissi...Show moreLast updated: 13 hours ago
  • Promoted
  • New!
Security Analyst / Compliance Specialist

Security Analyst / Compliance Specialist

VirtualVocationsNewark, New Jersey, United States
Full-time
A company is looking for a Security Analyst / Compliance Specialist to support enterprise-level geospatial systems and infrastructure within a federal environment. Key Responsibilities Monitor and a...Show moreLast updated: 15 hours ago
  • Promoted
  • New!
Senior Security Specialist

Senior Security Specialist

VirtualVocationsElizabeth, New Jersey, United States
Full-time
A company is looking for a Senior Security Specialist - Incident Management.Key Responsibilities Monitor and analyze alerts from various security platforms Lead incident containment, eradication...Show moreLast updated: 19 hours ago
  • Promoted
Sr Decision Support Analyst

Sr Decision Support Analyst

RWJBarnabas Health Corporate ServicesOceanport, NJ, United States
Full-time
Job Title : Sr Decision Support Analyst.Location : Barnabas Health Corp.Department : Financial Data and Reporting.The above reflects the anticipated annual wage range for this position if hired to wor...Show moreLast updated: 2 days ago
  • Promoted
Senior Security Solutions Architect

Senior Security Solutions Architect

VirtualVocationsJackson Heights, New York, United States
Full-time
A company is looking for a Senior Security Solutions Architect (Zero Trust & Cloud Security).Key Responsibilities Drive business development and presales efforts for Zscaler and Zero Trust securi...Show moreLast updated: 1 day ago
  • Promoted
JD Edwards Security Analyst

JD Edwards Security Analyst

VirtualVocationsAstoria, New York, United States
Full-time
A company is looking for a Security Analyst in JD Edwards.Key Responsibilities Define, implement, and maintain the role-based security model in JD Edwards EnterpriseOne 9.Manage users and roles i...Show moreLast updated: 1 day ago
  • Promoted
Senior Security Engineer

Senior Security Engineer

VirtualVocationsElizabeth, New Jersey, United States
Full-time
A company is looking for a Senior Security Engineer to lead the design and implementation of security controls for client systems. Key Responsibilities Apply Zero Trust principles and translate ar...Show moreLast updated: 30+ days ago
  • Promoted
Senior Security Analyst

Senior Security Analyst

DSNEdison, NJ, United States
Full-time
Senior Security Analyst (Onsite 4x / week | Hybrid).Monitor and respond to alerts from EDR, ITDR, SIEM, and cloud platforms. Lead security investigations and incident response.Zscaler, CrowdStrike, De...Show moreLast updated: 30+ days ago