IT GRC Analyst
4 weeks ago
Description The IT Governance, Risk, and Compliance (GRC) team functions include maintaining and auditing information security controls to ensure conformance or compliance with applicable standards and local laws and regulations; enterprise-wide IT security awareness programming; monitoring compliance with security policy and applicable law. Participate in risk assessments, third party risk reviews, and assisting with audit/compliance activities. RESPONSIBILITIES Perform security risk assessments for business and technology initiatives such as new vendors, critical vendors, and supporting software by reviewing security questionnaire responses, utilizing web app scanning technology and open-source software scanning technology, reviewing security compliance reports such as ISO27001, SOC 2, CSA, SIG, and more. Provide IT security due diligence reviews for sales and client functions. Assist in coordinating security awareness programming, including IT policy maintenance. Review policies and procedures related to Information Security and regulatory compliance. Engage in IT SOX, ISO 27001, SOC 1, SOC 2, PCI-DSS, FFIEC, PIPEDA, GDPR and other compliance activities. Ensure that data-related business requirements for protecting Paycom's sensitive data are clearly defined, communicated, understood and considered as part of operational planning and prioritization. Participate in management of an enterprise-wide data governance framework, with a focus on improvement of data quality, lineage and the protection of sensitive data through modifications to organization behavior, policies, standards and processes. Participate in risk assessments for projects. Engage in process review and improvement, document as required. Perform additional duties and assignments as requested. Qualifications Education/Certification: Bachelor's Degree required, CS, MIS or related field preferred Industry Certification (CISA, CRISC, CISM, CISSP, etc.) preferred PREFERRED QUALIFICATIONSExperience: 0-3 years of IT audit, or regulatory compliance Skills/Abilities: General knowledge of risks associated with cloud and on-premise technology Information security standards such as IT SOX, SOC 1, SOC 2, ISO 27001, PCI-DSS, FFIEC, PIPEDA, GDPR Strong analytical and problem-solving skills Excellent written and verbal communication skills Highly responsive with an ability to handle escalations quickly and professionally Excellent written and verbal communication skills Strong research skills and willingness to seek information Maintain effective working relationships with supervisor and coworkers Paycom is an equal opportunity employer and prohibits discrimination and harassment of any kind. Paycom makes employment decisions on the basis of business needs, job requirements, individual qualifications and merit. Paycom wants to have the best available people in every job. Therefore, Paycom does not permit its employees to harass, discriminate or retaliate against other employees or applicants because of race, color, religion, sex, sexual orientation, gender identity, pregnancy, national origin, military and veteran status, age, physical or mental disability, genetic characteristic, reproductive health decisions, family or parental status or any other consideration made unlawful by applicable laws. Equal employment opportunity will be extended to all persons in all aspects of the employer-employee relationship. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, training, promotion, discipline, compensation benefits, and separation of employment. The Human Resources Department has overall responsibility for this policy and maintains reporting and monitoring procedures. Any questions or concerns should be referred to the Human Resources Department. To learn more about Paycom's affirmative action policy, equal employment opportunity, or to request an accommodation - Click on the link to find more information: paycom.com/careers/eeoc
-
*GRC Analyst Lead
3 weeks ago
Oklahoma City, United States University of Oklahoma Full timeJob Description OU Information Technology is searching for a Lead GRC Analyst who will be responsible for ensuring the organization's information systems and processes align with established cybersecurity, privacy, and regulatory standards. This role conducts in-depth security consultations and risk assessments to evaluate the effectiveness of security...
-
*GRC Analyst Lead
3 weeks ago
Oklahoma City, United States The University of Oklahoma Full timeOU Information Technology is searching for a Lead GRC Analyst who will be responsible for ensuring the organization's information systems and processes align with established cybersecurity, privacy, and regulatory standards. This role conducts in-depth security consultations and risk assessments to evaluate the effectiveness of security controls, identify...
-
SAP GRC Analyst
3 weeks ago
City of White Plains, United States COGENT Infotech Full timeTitle: SAP GRC Analyst Location: White Plains, NY (2 days Onsite) Duration: 12 months contract About Cogent Infotech At Cogent Infotech, we believe in creating opportunities that empower individuals and transform organizations. With over 21 years of excellence in consulting and talent solutions, we pride ourselves on building inclusive workplaces and driving...
-
GRC (3rd Party Risk) Analyst
2 weeks ago
Peachtree City, United States Datamtx LLC Full timeJob Title: GRC (3rd Party Risk) Analyst Duration: 12 - 24 Month Project Engagement Role Summary: The GRC Analyst is responsible for managing Client's governance, risk, and compliance functions, with a specific focus on third-party risk management. This role ensures Client operates in a compliant manner, manages its risk register, and handles security...
-
SAP Security
1 day ago
Oklahoma City, Oklahoma, United States Insight IT Pty Full timeThe SAP Security/GRC Admin is responsible for the management and support of SAP Roles and Security with the Diamondback SAP environment. This position will provide technical and thought leadership in the design, development, implementation, and support of the SAP Role Administration functions across the entire landscape. This role will also provide key...
-
GRC Analyst
1 week ago
Oklahoma City, United States ACRISURE Full timeDepartment:Information SecurityReports to: Senior Director, Information SecurityRole SummaryYou will be a hands-on GRC professional who builds, monitors, and improves the frameworks that keep our organization compliant, resilient, and risk informed. You’ll work across technology, operations, and product teams to assess control effectiveness, manage...
-
GRC Analyst Lead
2 weeks ago
Oklahoma - Oklahoma City - Health Sciences Center, United States The University of Oklahoma Full time $100,000 - $120,000 per yearOU Information Technology is searching for a Lead GRC Analyst who will be responsible for ensuring the organization's information systems and processes align with established cybersecurity, privacy, and regulatory standards. This role conducts in-depth security consultations and risk assessments to evaluate the effectiveness of security controls, identify...
-
GRC Analyst
3 weeks ago
Oklahoma City, United States Acrisure LLC Full timeDepartment:Information Security Reports to: Senior Director, Information Security Role Summary You will be a hands-on GRC professional who builds, monitors, and improves the frameworks that keep our organization compliant, resilient, and risk informed. You'll work across technology, operations, and product teams to assess control effectiveness, manage...
-
GRC (3rd Party Risk) Analyst
4 days ago
Peachtree City, GA, United States Datamtx LLC Full timeJob Title: GRC (3rd Party Risk) Analyst Duration: 12 - 24 Month Project Engagement Role Summary: The GRC Analyst is responsible for managing Client's governance, risk, and compliance functions, with a specific focus on third-party risk management. This role ensures Client operates in a compliant manner, manages its risk register, and handles security...
-
Analyst, GRC – Public Sector
2 weeks ago
Carson City, Nevada, United States Socure Full time $80,000 - $120,000 per yearWhy Socure?At Socure, we're on a mission—to verify 100% of good identities in real time and eliminate identity fraud from the internet.Using predictive analytics and advanced machine learning trained on billions of signals to power RiskOS, Socure has created the most accurate identity verification and fraud prevention platform in the world. Trusted by...