Senior GRC Analyst

4 weeks ago


New York NY United States Cantor Fitzgerald Full time

The Information Security-GRC (Governance Risk and Compliance) Team is looking for an experienced risk and compliance professional to help drive the efforts across Cybersecurity controls framework initiatives, such as user access recertification, policy management, vendor assessment and client due diligence. This role will also be responsible furthering Cantor’s and its entities Cybersecurity control design model in alignment with industry frameworks. The role will also work closely with adjacent teams focused on standards, stakeholder assurance, and engagement with technology owners.


Qualification Requirements:

  • 3-5 years of experience in risk and control management.
  • 3-5 years of combined experience in areas such as audit, accounting, operational risk management, information technology/security.
  • Knowledge of various risk and control framework standards such as NIST, COSO, CMMI, ISO, SOC1/2, CobiT, etc.
  • Exposure to mapping cybersecurity control frameworks and risk management processes.
  • Exposure to access management processes, such as user access recertification.
  • Experience with RCSA (Risk Control Self-Assessment).
  • Familiarity with cybersecurity controls and remediations.
  • Experience with problem solving in a team environment by thinking outside of the box and providing innovative solutions, with and without technology.
  • Experience in Microsoft 365 (Project, PowerPoint, Excel, Word)
  • Public accounting "Big Four" audit experience preferred.
  • CISA certification preferred.
  • SOX experience preferred.


The expected base salary for this position ranges from $90,000 to $130,000. The actual base salary will be determined on an individualized basis considering a wide range of factors including, but not limited to, relevant skills, experience, education, and where applicable, licenses or certifications held. In addition to the base salary and a competitive benefits package, this position may be eligible for additional types of compensation including discretionary bonuses and other short and long-term incentives (e.g., deferred cash, equity, etc.).


  • GRC Analyst

    4 weeks ago


    Shelton, CT, United States Ovise Full time

    Ovise is exclusively partnered with one of the largest restaurant and franchisee brands in the world! They are looking to build out their GRC function, and as a GRC analyst, you will be directly involved with this initiative.The GRC Analyst will be responsible for assessing, managing, and mitigating risks related to an organization's information assets. This...


  • McLean, VA, United States Convergenz Full time

    Risk / GRC Analyst - Capital Markets and Mortgage RequiredEnsuring they are compliant with Mortgage and Capital Markets guidelines. Risk assessments on a quarterly bases, issue remediation- helping team on incident write ups, operational breakdown, control testing, adhoc projects- process documentation, helping with Gap Assessments. More on compliance /...

  • Senior GRC Analyst

    2 months ago


    New York, United States Cantor Fitzgerald Full time

    The Information Security-GRC (Governance Risk and Compliance) Team is looking for an experienced risk and compliance professional to help drive the efforts across Cybersecurity controls framework initiatives, such as user access recertification, policy management, vendor assessment and client due diligence. This role will also be responsible furthering...


  • Ashburn, VA, United States Infinitive Full time

    *Candidates must be local to the Washington D.C. metro area. About Infinitive:Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people...


  • New York, United States Ro Full time

    Ro is a direct-to-patient healthcare company with a mission of helping patients achieve their health goals by delivering the easiest, most effective care possible. Ro is the only company to offer nationwide telehealth, labs, and pharmacy services. This is enabled by Ro's vertically integrated platform that helps patients achieve their goals through a...

  • Senior GRC Analyst

    2 months ago


    new york city, United States Cantor Fitzgerald Full time

    The Information Security-GRC (Governance Risk and Compliance) Team is looking for an experienced risk and compliance professional to help drive the efforts across Cybersecurity controls framework initiatives, such as user access recertification, policy management, vendor assessment and client due diligence. This role will also be responsible furthering...

  • Senior GRC Analyst

    4 weeks ago


    Overland, MO, United States Clayco Full time

    About UsClayco is a full-service, turnkey real estate development, master planning, architecture, engineering, and construction firm that safely delivers clients across North America the highest quality solutions on time, on budget, and above and beyond expectations. With $5.8 billion in revenue for 2023, Clayco specializes in the "art and science of...

  • Sr. GRC Analyst

    1 week ago


    New York, United States Cantor Fitzgerald Securities Full time

    Job Description The Information Security-GRC (Governance Risk and Compliance) Team is looking for an experienced risk and compliance professional to help drive the efforts across Cybersecurity controls framework initiatives, such as user access recertification, policy management, vendor assessment and client due diligence. This role will also be responsible...


  • New York, United States Hamlyn Williams Full time

    Experienced Recruitment Consultant – GRC/Corporate Governance360/Full Desk Recruitment - Business Development and RecruitmentWhy Hamlyn Williams?Hamlyn Williams continues to be the global market leader in Regulated Industries Recruitment. Our brands span across Financial Services, Life Sciences & Technology. Founded in London in 2011, we have continued to...


  • North New Hyde Park, New York, United States Gedeon GRC Consulting Full time

    Job Summary:A highly skilled Senior Construction Project Coordinator is required by Gedeon GRC Consulting to ensure the success of infrastructure projects. The ideal candidate will have a strong background in construction inspection and management, with excellent communication skills to work closely with contractors and stakeholders.Key...


  • new york city (bloomfield), United States Ender-IT Full time

    Information Security Risk Analyst (GRC/NIST)Duration: 2 YearsLocation: Bloomfield, CT (900 Cottage Grove Rd, Wilde Bldg) Bachelor’s degree must. Any candidate with international experience in past 7 years DOES NOT qualify for the role. Responsibilities:Pull and prioritize intake requests from the backlog queue.Engage with internal customers to understand...


  • New York, New York, United States Intelligent Staffing Full time

    Cyber Security Threat Analyst Job Summary:At Intelligent Staffing, we are seeking a skilled Cyber Security Threat Analyst to review, monitor, and resolve security findings within our organization. This role involves conducting risk and vulnerability assessments, validation testing, compliance reviews, and audits following NIST standards.Key...


  • Atlanta, GA, United States Delta Air Lines, Inc. Full time

    How you'll help us Keep Climbing (overview & key responsibilities) Join Delta IT on our journey to becoming the best IT organization in the airline industry. Delta IT is on a journey of transformation. We are changing the way we do business from top to bottom. As thought leaders within Delta, we strive to create meaningful and innovative solutions and are...


  • Atlanta, GA, United States Delta Air Lines, Inc. Full time

    How you'll help us Keep Climbing (overview & key responsibilities) Join Delta IT on our journey to becoming the best IT organization in the airline industry. Delta IT is on a journey of transformation. We are changing the way we do business from top to bottom. As thought leaders within Delta, we strive to create meaningful and innovative solutions and are...


  • New York, United States CoreWeave Full time

    Job DescriptionJob DescriptionCoreWeave is the AI Hyperscaler™, delivering a cloud platform of cutting edge services powering the next wave of AI. The company's technology provides enterprises and leading AI labs with the most performant, efficient and resilient solutions for accelerated computing. Since 2017, CoreWeave has operated a growing footprint...


  • New York, United States Global Channel Management Full time

    About the job Senior Business Analyst Senior Business Analyst needs 12+ years experience Senior Business Analyst requires: WFH NY Advanced Excels skills required) Experience with ASC 606 Revenue Recognition, preferably understanding Experience with SaaS revenue recognition. Experience with ERP conversions/reconciliations Ability to work with...


  • New York, United States ADEX Full time

    Summary: This is a full-time position for a Senior Information Security Analyst ("Security Analyst") within the Information Security team that participates in all aspects of information security. The Security Analyst shall act as a risk manager with the responsibility for identifying, acting on and escalating risks and is held strictly accountable for the...


  • North New Hyde Park, New York, United States Gedeon GRC Consulting Full time

    Director of Bridge EngineeringGedeon GRC Consulting is seeking a highly experienced Bridge Engineer to lead our bridge design team. This senior-level position requires a strong background in project management, as well as expertise in bridge design and construction.Responsibilities:Collaborate with clients to ensure their expectations are exceeded.Develop...


  • New York, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • New York, NY, United States Flagstar Bank Full time

    Pay Range: 112- 140K JOB SUMMARY As a key member of the second line of defense Technology, Cyber, Third Party Risk Management & Resilience Risk Management team, the Technology Risk Senior Analyst will support the Technology Risk team to fulfill the Bank’s Second Line of Defense (“2LoD”) mandate to identify, measure, monitor, and manage the Information...