Senior GRC Analyst

1 month ago


Byron Center, Michigan, United States SpartanNash Company Full time

At SpartanNash, we deliver the ingredients for a better life through customer-focused innovation. We do this for our supply chain customers and U.S. military commissaries, retail store guests and, most importantly, our Associates. In fact, we see a day when each will say, "I can't live without them."

Our SpartanNash family of Associates is 17,000 strong, ranging from bakery managers to order selectors; from IT developers to vice presidents of finance; from HR Business Partners to export specialists. Each of them plays an integral role in SpartanNash's People First culture, Operational Excellence and Insights that Drive Solutions. Ready to contribute to the success of our food solutions company? Apply now

Location:

850 76th Street S.W. - Byron Center, Michigan 49315

Job Description:

Position Summary:

The Senior Governance, Risk, and Compliance (GRC) Security Analyst is responsible for supporting the security direction of the business and elevating the company's security posture. The Senior GRC Security Analyst is expected to support the security strategy of the business within new and existing information system capabilities. The position requires both an understanding of legacy systems, as well as new technologies and requirements. The Senior GRC Security Analyst is also responsible for maintaining the risk register and collaborating with IT teams to effectively drive risk reduction to manage corporate risk and strengthen security posture.

The role oversees the business' security requirements and obligations mandated by standards and regulations such as the Gramm-Leach-Bliley Act (GLBA), Sarbanes-Oxley Act (SOX), Health Information Portability and Accountability Act (HIPAA) and Payment Card Industry Data Security Standard (PCI DSS). In tandem with security leadership, the GRC security analyst consistently assesses and validates the assurance of the security program. As a primary point of contact for internal and external auditors, the Senior GRC Security Analyst monitors progress and enforces resolution of outstanding issues that may lead to non-compliance or security threats to the business. As a key member of the security team, the Senior GRC Security Analyst must focus on strong risk management and corporate resiliency, and not be driven solely by compliance. The Senior GRC Security Analyst will report to the Manager, IT Governance, Risk & Compliance.

Here's what you'll do:

  • Conduct enterprise-wide, ongoing risk analysis in tandem with compliance and security to identify potential risk and maintain oversight in a GRC-related platform.
  • Identify strengths and weaknesses in the security program as they relate to privacy, security, business resiliency, and compliance frameworks.
  • Document and enforce areas of security improvement that balance risk with business operations and do not diminish efficiencies or innovation.
  • Maintain strong oversight of third parties, vendors, and business partners to safeguard against undue risk presented by external entities. Escalate to security management and business unit leads when points of weakness are discovered.
  • Analyze findings, document, recommend, and report program gaps to security leadership.
  • Monitor current and proposed security changes impacting regulatory, privacy, and security industry best practice guidance.
  • Support audit practices and processes and work with the IT organization to ensure findings are remediated.
  • Document and capture qualitative and quantitative metrics to assess the success of the security program and provide regular reports to security and business leadership.
  • Ensure security and technology teams maintain up-to-date configuration documentation for systems and processes.
  • Liaison with auditors, both internal and external, to maintain and implement controls for compliance and privacy laws.
  • Foster strong relationships with internal business units and excel in risk management, technical controls, and cybersecurity communication.
  • Travel as needed to office locations and third-party on-site engagements.
  • Perform other duties as assigned.

Here's what you'll need:

  • Bachelor's degree in information assurance, MIS, cybersecurity, business, or equivalent experience.
  • Master's degree preferred.
  • At least five years of IT or cybersecurity experience (or IT coupled with cybersecurity), with at least two years in an operationally focused IT Assurance or security practitioner role.
  • Experience and understanding of various regulatory requirements and laws, including but not limited to PCI, SOX, HIPAA, and GLBA.
  • Experience with Payment Card Industry (PCI) assessments, PCI-P certification preferred.
  • Experience creating and maintaining cybersecurity policies, standards, and procedures.
  • Demonstrated knowledge of operating systems, networking security concepts, and industry best practices.
  • Demonstrated understanding of legacy and progressive technology and security controls along with respective risk.
  • Skilled at leading projects, collaborating with diverse teams, and promoting enterprise-wide risk management rigor and a security-first culture.
  • Excellent analytical, problem-solving, troubleshooting, and decision-making skills.
  • Highly organized and detail oriented, with excellent written and verbal communication skills.
  • Track record of acting with integrity, taking pride in work, seeking to excel, and being curious and adaptable.
  • Must be able to work independently and in a team setting.
  • CISSP, CRISC, CGEIT or GRCP are preferred, but not required.

As part of our People First culture, SpartanNash is proud to offer a robust and competitive Total Rewards benefits package.

SpartanNash is an Equal Opportunity Employer, including disability and veteran, that celebrates diversity and believes employing a diverse workforce is key to our success. We are committed to providing equal employment opportunities to all individuals.

We are not able to sponsor work visas for this position.



  • Byron Center, Michigan, United States SpartanNash Company Full time

    At SpartanNash, we deliver the ingredients for a better life through customer-focused innovation. We do this for our supply chain customers and U.S. military commissaries, retail store guests and, most importantly, our Associates. In fact, we see a day when each will say, "I can't live without them."Our SpartanNash family of Associates is 17,000 strong,...


  • Michigan Center, Michigan, United States National Guard Employment Network Full time

    Job Description ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization collaborates with partner companies to connect qualified talent with their available positions. This opportunity is open to Veterans, Transitioning Military, National Guard and Reserve Members, Military Spouses, Wounded Warriors, and their Caregivers. If you possess the necessary...


  • Michigan Center, Michigan, United States National Guard Employment Network Full time

    Job Description ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization collaborates with partner companies to identify qualified talent for their open positions. This role is available to Veterans, Transitioning Military, National Guard and Reserve Members, Military Spouses, Wounded Warriors, and their Caregivers. If you possess the necessary skills,...

  • Engineering Analyst

    4 weeks ago


    Byron, United States Constellation Energy Full time

    COMPANY OVERVIEWAs the nation's largest producer of clean, carbon-free energy, Constellation is a company purposely-built to meet the challenges of the climate crisis. Constellation has been the leader in clean energy production for more than a decade and we are growing our company and capabilities. Now, we're accelerating, speeding our low-carbon or...


  • Kennedy Space Center, United States JetBlue Full time

    The Senior Analyst Learning Analytics supports Crewleaders and Crewmembers, both operational and JetBlue University (JBU), in data driven decision making. Through the development and facilitation of both formal and informal learning opportunities, th Senior Analyst, Analytics, Analyst, Evaluation, Performance, Valuation, Technology, Airline


  • Byron, Illinois, United States Constellation Energy Full time

    COMPANY OVERVIEWAs the leading provider of clean, carbon-neutral energy in the nation, Constellation Energy is strategically positioned to tackle the pressing challenges posed by the climate crisis. With over a decade of experience in clean energy production, we are expanding our capabilities and workforce. We are committed to accelerating our low-carbon and...

  • Senior Fraud Analyst

    3 weeks ago


    Kennedy Space Center, United States Cornerstone TTS Full time

    Job Title: Senior Fraud Data Analyst Location: 100% Remote (Candidates must reside in any of the following states - AZ, FL, GA, IN, NC, KY, SC or TX. Applicants living outside of these states need not apply) Eligibility: Must be able to work in the US without requiring employer sponsorship now or any time in the future Duration: 6-Month Contract Start Date:...


  • Byron, United States Constellation Energy Full time

    COMPANY OVERVIEWAs the nation's largest producer of clean, carbon-free energy, Constellation is a company purposely-built to meet the challenges of the climate crisis. Constellation has been the leader in clean energy production for more than a decade and we are growing our company and capabilities. Now, we're accelerating, speeding our low-carbon or...


  • Byron, United States Constellation Energy Full time

    WHO WE AREAs the nation's largest producer of clean, carbon-free energy, Constellation is focused on our purpose: accelerating the transition to a carbon-free future. We have been the leader in clean energy production for more than a decade, and we are cultivating a workplace where our employees can grow, thrive, and contribute. Our culture and employee...

  • Senior .NET Analyst

    6 days ago


    Newton Center, Massachusetts, United States eTeam Full time

    Position Overview:We are seeking a highly skilled Senior .NET Analyst to join our dynamic team at eTeam. This role demands extensive experience in software development, particularly in .NET technologies.Key Responsibilities:Utilize over 10 years of .NET programming expertise to develop robust applications.Lead back-end development initiatives using .NET...


  • Kennedy Space Center, United States Universal Destinations & Experiences Full time

    Universal Orlando Resort believes in-person collaboration is key to our success. Many of our Team Members work in a hybrid capacity, contributing from the workplace a minimum of three days per week. There are also roles that require being on-site ful Senior Analyst, Financial, Financial Planning, Analyst, Forecasting, Planning, Technology


  • State Center, Iowa, United States Mediacom Communications Full time

    Located in a dynamic environment, Position: Senior Financial Analyst, Accounting About Us: Mediacom Communications has established a significant presence across the nation, operating in numerous states with a dedicated workforce committed to bridging the digital gap between urban and rural areas. Our innovative services include high-speed internet,...


  • Dorchester Center, United States The Ladders Full time

    Position OverviewThe Senior Financial Planning & Analysis (FP&A) Analyst collaborates closely with executive leadership to improve the organization’s financial outcomes by aiding in the formulation of financial strategies and forecasts while delivering actionable insights to enhance financial performance.Key ResponsibilitiesEnhance the efficiency of...


  • Kennedy Space Center, United States University of Central Florida Full time

    Position Overview: The Finance Business Center at the University of Central Florida is seeking qualified professionals for the role of Finance/Budget Analyst III. This position is responsible for executing financial transactions within the university's financial frameworks. The Analyst will engage in the collection, evaluation, and reconciliation of...


  • Kennedy Space Center, United States AssuredPartners Full time

    Position Overview:As a Senior Business Insights Analyst at AssuredPartners, you will play a crucial role in interpreting extensive data sets to derive actionable insights that drive strategic decision-making. Key Responsibilities:1. Analyze complex data to identify trends and patterns that inform business strategies across multiple regions.2. Develop and...

  • Risk Analyst Senior I

    3 months ago


    Dorchester Center, United States Federal Reserve Bank of Cleveland Full time

    Company Federal Reserve Bank of Boston Risk Analyst Senior I This job is eligible for a hybrid schedule with some on-site work expected. The individual is expected to reside in the 1st District unless you were given an exception As part of the Central Bank of the United States, the Boston Fed works to promote sound growth and financial stability in New...


  • Dorchester Center, United States MFS Investment Management Full time

    At MFS, you will find a culture that supports you in doing what you do best. Our employees work together to reach better outcomes, favoring the strongest idea over the strongest individual. We put people first and demonstrate care and compassion for our community and each other. Because what we do matters - to us as valued professionals and to the millions...

  • Revenue Analyst

    2 weeks ago


    Kennedy Space Center, United States Hilton Grand Vacations Full time

    WORK FOR A WINNING TEAM THAT NOW OFFERS BENEFITS FROM DAY ONE, PLUS DAILY PAY - At Hilton Grand Vacations, you will become a part of a culture that encourages and motivates you toward achieving your goals. Heres why you will love it here: Recognition Revenue, Revenue Manager, Analyst, Senior Analyst, Hospitality, Technology, Hotel


  • Kennedy Space Center, United States University of Central Florida Full time

    Position Overview: The Finance Business Center at the University of Central Florida is seeking a skilled Finance/Budget Analyst III. This role involves managing financial transactions within the university's financial systems. The Analyst will be responsible for gathering, evaluating, and reconciling financial data, transactions, and budgets. Additionally,...


  • Kennedy Space Center, United States University of Central Florida Full time

    Position Overview: The Finance Business Center at the University of Central Florida is seeking a seasoned professional for the role of Finance/Budget Analyst III. This role involves managing financial operations within the university's financial frameworks. The Analyst will be responsible for compiling, assessing, and reconciling financial data,...


  • Kennedy Space Center, United States University of Central Florida Full time

    Position Overview: The Finance Business Center at UCF is seeking qualified candidates for the role of Finance/Budget Analyst III. This role involves the management of financial transactions within the university's financial systems. The Analyst will be responsible for gathering, evaluating, and reconciling financial data, transactions, and budgets....


  • Kennedy Space Center, United States University of Central Florida Full time

    Position Overview: The Finance Business Center at UCF is seeking qualified candidates for the role of Finance/Budget Analyst III. This position involves managing financial transactions within the university's financial systems. The Analyst will be responsible for gathering, interpreting, and reconciling financial data, transactions, and budgets....


  • Kennedy Space Center, United States University of Central Florida Full time

    Position Overview: The Finance Business Center at the University of Central Florida is looking for a seasoned professional to fill the role of Finance/Budget Analyst III. This position involves the management of financial transactions within the university's financial frameworks. The Analyst will be responsible for compiling, evaluating, and reconciling...