Senior Security GRC Analyst

2 weeks ago


Chicago, United States InRule Technology, Inc. Full time
Job DescriptionJob Description

At InRule Technology, we revolutionize the way organizations in more than 40 countries worldwide make mission-critical decisions by infusing cutting-edge technology into their processes. Some of the largest banks, insurance companies, healthcare organizations, and governments rely on InRule to deliver frictionless, intuitive solutions that provide the power of computing without the complexity of programming.   

As part of the InRule Technology team, you'll be at the forefront of a technological revolution, helping drive adoption of our powerful AI Decisioning platform that weaves together declarative logic, non-declarative machine learning, and human-in-the-loop automation.  In 2023, Forrester named InRule a Leader in The Forrester WaveTM: AI Decisioning Platforms. 

Reporting to the VP, Technical Operations, the Senior Security GRC Analyst will drive planning and execution of our global Governance, Risk, Compliance (GRC) initiatives and audits. At InRule, this is a vital role that collaborates closely with other departments to ensure compliance with regulations and industry standards.  

Location: Remote (preference for Chicago, IL, or Central/Eastern Time Zone) 

What you'll do... 

  • Coordinate, conduct and function as primary contact for all internal and external audits. 

  • Delegate control ownership to relevant participants across departments, monitor compliance status and follow up to ensure timely completion of recurring compliance requirements related to SOC2, ISO27001, GDPR, and HIPAA. 

  • Work with the Data Protection Officer (DPO) to execute data deletion requests, maintain our privacy policy and track data sub-processors. 

  • Conduct risk assessments and software vulnerability assessments to identify potential cybersecurity threats; document and follow-up on security-related findings. 

  • In preparation for external audits, support monitoring, evidence collection, gap assessments and reviews as needed. 

  • Conduct periodic reviews and audits of internal policies, controls and processes; publish findings outlining successes and opportunities for improvement.  

  • Partner with business stakeholders (such as Engineering and IT Operations management) to identify risks, propose mitigation strategies and inform on emerging security threats and trends. 

  • Develop and maintain standard GRC documentation, such as policy and procedure documents or project plans. 

  • Manage and document scalable processes and automation to support our growth and compliance initiatives. 

  • Develop and assess operating effectiveness of controls. 

  • Assist in completion of customer assurance activities, such as security questionnaires. 

  • Perform vendor security evaluations of existing and new vendors. 

What you'll bring... 

  • At least 5+ years of experience managing or maturing ISO27001 and/or SOC2 compliance at a software company, ideally within a high-growth Cloud/SaaS environment 

  • Experience working with external auditors to efficiently drive an audit cycle to successful completion 

  • Ability to identify gaps, create mitigation plans, and work with control owners to implement changes 

  • Experience interacting with current and prospective customers to help navigate the security review process 

  • Strong communication skills with the ability to build relationships across departments and cultures as part of a global distributed team 

  • Experience using compliance and security tools; experience with Vanta highly desired 

  • Excellent interpersonal, communication, and presentation skills, including findings and report writing experience 

  • Experience completing customer security questionnaires  

  • Ability to execute with urgency and attention to detail 

  • Experience working with cloud technologies, preferably Azure 

  • Relevant information security certifications (such as CISM) a strong plus 

Powered by JazzHR

lkpj2nHtmq


  • GRC Security Analyst

    2 weeks ago


    Chicago, United States TAG - The Aspen Group Full time

    The Aspen Group (TAG) is one of the largest and most trusted retail healthcare business support organizations in the U.S. and has supported over 20,000 healthcare professionals and team members at more than 1,300 health and wellness offices across 48 states in four distinct categories: dental care, urgent care, medical aesthetics, and animal health. Working...

  • Grc Security Analyst

    4 weeks ago


    Chicago, United States Aspen Dental Full time

    The Aspen Group (TAG) is one of the largest and most trusted retail healthcare business support organizations in the U.S. and has supported over 20,000 healthcare professionals and team members at more than 1,300 health and wellness offices across 48 states in four distinct categories: dental care, urgent care, medical aesthetics, and animal health. Working...


  • Chicago, United States InRule Full time

    At InRule Technology, we revolutionize the way organizations in more than 40 countries worldwide make mission-critical decisions by infusing cutting-edge technology into their processes. Some of the largest banks, insurance companies, healthcare organizations, and governments rely on InRule to deliver frictionless, intuitive solutions that provide the power...

  • GRC Security Analyst

    4 weeks ago


    Chicago, United States InRule Technology Full time

    At InRule Technology, we revolutionize the way organizations in more than 40 countries worldwide make mission-critical decisions by infusing cutting-edge technology into their processes. Some of the largest banks, insurance companies, healthcare organizations, and governments rely on InRule to deliver frictionless, intuitive solutions that provide the power...

  • GRC Security Analyst

    2 months ago


    Chicago, United States InRule Technology, Inc. Full time

    Job DescriptionJob DescriptionAt InRule Technology, we revolutionize the way organizations in more than 40 countries worldwide make mission-critical decisions by infusing cutting-edge technology into their processes. Some of the largest banks, insurance companies, healthcare organizations, and governments rely on InRule to deliver frictionless, intuitive...

  • GRC Security Analyst

    4 weeks ago


    Chicago, United States InRule Technology, Inc. Full time

    Job DescriptionJob DescriptionAt InRule Technology, we revolutionize the way organizations in more than 40 countries worldwide make mission-critical decisions by infusing cutting-edge technology into their processes. Some of the largest banks, insurance companies, healthcare organizations, and governments rely on InRule to deliver frictionless, intuitive...


  • Chicago, United States Request Technology, LLC Full time

    ***Hybrid, 3 days onsite, 2 days remote******We are unable to sponsor as this is a permanent full-time role***A prestigious company is looking for an IT Security/GRC Manager. This manager will be a hands-on manager in enterprise GRC for applications, Infrastructure, 3rd party security, vendor risk management, and program management. This manager will manage...


  • Chicago, United States Request Technology, LLC Full time

    ***Hybrid, 3 days onsite, 2 days remote******We are unable to sponsor as this is a permanent full-time role***A prestigious company is looking for an IT Security/GRC Manager. This manager will be a hands-on manager in enterprise GRC for applications, Infrastructure, 3rd party security, vendor risk management, and program management. This manager will manage...


  • Chicago, United States Request Technology, LLC Full time

    ***Hybrid, 3 days onsite, 2 days remote******We are unable to sponsor as this is a permanent full-time role***A prestigious company is looking for an IT Security/GRC Manager. This manager will be a hands-on manager in enterprise GRC for applications, Infrastructure, 3rd party security, vendor risk management, and program management. This manager will manage...


  • Chicago, United States Request Technology, LLC Full time

    ***Hybrid, 3 days onsite, 2 days remote******We are unable to sponsor as this is a permanent full-time role***A prestigious company is looking for an IT Security/GRC Manager. This manager will be a hands-on manager in enterprise GRC for applications, Infrastructure, 3rd party security, vendor risk management, and program management. This manager will manage...

  • Security Grc Manager

    2 weeks ago


    Chicago, United States Kirkland and Ellis Full time

    **About Kirkland & Ellis** At Kirkland & Ellis, we are united in our ambition and drive to move forward. We share core values that help us achieve excellence: collaboration, talent empowerment, service, inclusion, respect and gratitude. Our people are our greatest asset, and we invest in the brightest talent and encourage a diversity of perspectives and...

  • GRC Analyst

    4 weeks ago


    Chicago, United States 1872 Consulting Full time

    GRC Analyst - Information Governance Focus Chicago, IL - 3 days onsite in the loop, 2 days WFH Summary The GRC Analyst focuses on information governance, compliance assessments, DLP, records/data retention, technical projects related to records/data management, insider threat and other similar areas. You will play a key role in optimizing data management...


  • Chicago, United States Careeraddict Full time

    *We are unable to sponsor as this is a permanent Full time role* *Hybrid 3 days onsite 2 days remote* A prestigious company is looking for an IT Security GRC Specialist. This specialist will be the SME for information security GRC and will perform key risk management functions within the security governance department. They will do 3rd party vendor risk...


  • Chicago, United States Request Technology Llc Full time

    NO SPONSORSHIPSecurity GRC Specialist IISalary: $120k to $140k Flex plus BonusMisc. Info: Hybrid 3 days onsite 2 days remote - ChicagoSelling Point: Must have great soft skills, be able to articulate and have good documentation skills. Enterprise GRC lots of 3rd party along with internal ISO NIST SOC SIGThe Security GRC Specialist II serves on the...


  • Chicago, United States Request Technology, LLC Full time

    NO SPONSORSHIPSecurity GRC Specialist IISalary: $120k to $140k Flex plus BonusMisc. Info: Hybrid 3 days onsite 2 days remote - ChicagoSelling Point: Must have great soft skills, be able to articulate and have good documentation skills. Enterprise GRC lots of 3rd party along with internal ISO NIST SOC SIGThe Security GRC Specialist II serves on the...


  • Chicago, United States Request Technology, LLC Full time

    ***We are unable to sponsor for this permanent full-time role******Position is bonus eligible***Prestigious Global Firm is currently seeking a GRC Security Risk Specialist. Candidate will work on the Governance, Risk Compliance team, leads and executes the programs within the GRC team, is a subject matter expert for Information Security (consulting to...


  • Chicago, United States Request Technology Full time

    ***We are unable to sponsor for this permanent full-time role******Position is bonus eligible***Prestigious Global Firm is currently seeking a GRC Security Risk Specialist. Candidate will work on the Governance, Risk Compliance team, leads and executes the programs within the GRC team, is a subject matter expert for Information Security (consulting to...


  • Chicago, United States Request Technology Full time

    ***We are unable to sponsor for this permanent full-time role*** ***Position is bonus eligible*** Prestigious Global Firm is currently seeking a GRC Security Risk Specialist. Candidate will work on the Governance, Risk Compliance team, leads and executes the programs within the GRC team, is a subject matter expert for Information Security (consulting to...


  • Chicago, United States Request Technology, LLC Full time

    Security GRC SpecialistSalary: open + bonusLocation: Chicago, ILHybrid: 3 days in-office, 2 days remote***We are unable to provide sponsorship for this role***QualificationsBachelor's degreeStrong knowledge on Security frameworks and technologies such as ISO 27001, NIST, SOCTechnical writing experience4+ years of Information Security experienceStrong...


  • Chicago, United States Request Technology, LLC Full time

    Security GRC SpecialistSalary: open + bonusLocation: Chicago, ILHybrid: 3 days in-office, 2 days remote***We are unable to provide sponsorship for this role***QualificationsBachelor's degreeStrong knowledge on Security frameworks and technologies such as ISO 27001, NIST, SOCTechnical writing experience4+ years of Information Security experienceStrong...