Current jobs related to IT Security GRC Analyst - New London - RenaissanceRe

  • GRC Analyst

    2 weeks ago


    New York, New York, United States Chronograph Full time

    About ChronographChronograph is a cutting-edge fintech company that provides innovative technology solutions to private capital markets. Our mission is to empower investors with unparalleled insights and data management capabilities.The OpportunityWe are seeking an experienced GRC Analyst to join our team and help scale our internal and external compliance...


  • New London, Connecticut, United States RenaissanceRe Full time

    Job Title: IT Security Governance AnalystRenaissanceRe is a leading writer of Property & Casualty Reinsurance. We are seeking an IT Security Governance Analyst to join our Security team.Job Summary:The IT Security Governance Analyst will be responsible for managing the third-party vendor assessment program, including reviewing vendor assessment...


  • New Brighton, United States TEKsystems co Allegis Group Full time

    Description:Essential Duties and Responsibilities:This analyst role is a part of the Governance, Risk, & Compliance (GRC) pillar of our client's global Information Security program. The GRC pillar is a crucial component to our client's security capabilities and is focused on overseeing our client's cybersecurity framework, strategic alignment to business...

  • GRC Analyst

    1 month ago


    New York, United States Vantage Talent Solutions Full time

    About the Company: Vanatange are currently supporting a leading Financial institution as their Information Security team continues to grow by finding a GRC Analyst with a focus on Third (3rd) Party Risk. You'll play a pivotal role in supporting the GRC Manager with all compliance efforts across the business with compliance regulations like SOC2, ISO etc. A...


  • New York, New York, United States NetCov Full time

    Job DescriptionNetCov is seeking a highly skilled GRC Security Specialist to join our growing Security Team. As a key member of our team, you will be responsible for ensuring the security and compliance of our clients' systems and data.Key Responsibilities:Conduct security audits and risk assessments to identify potential vulnerabilities and develop...


  • New York, United States Tata Consultancy Services Full time

    Job Title : Architect for SAP Security Function with experience in GRC in New York, NY or Mount Laurel, NJRelevant Experience(in Yrs) 12+Technical/Functional Skills 1. Design and configure activity groups, manual profiles/authorizations and users within the systems and clients.2. Design roles for each business functionality3. Work with the business users to...


  • New York, United States Tata Consultancy Services Full time

    Job Title : Architect for SAP Security Function with experience in GRC in New York, NY or Mount Laurel, NJRelevant Experience(in Yrs) 12+Technical/Functional Skills 1. Design and configure activity groups, manual profiles/authorizations and users within the systems and clients.2. Design roles for each business functionality3. Work with the business users to...


  • new york city, United States Tata Consultancy Services Full time

    Job Title : Architect for SAP Security Function with experience in GRC in New York, NY or Mount Laurel, NJRelevant Experience(in Yrs) 12+Technical/Functional Skills 1. Design and configure activity groups, manual profiles/authorizations and users within the systems and clients.2. Design roles for each business functionality3. Work with the business users to...


  • New Brighton, Minnesota, United States TEKsystems Full time

    About the RoleWe are seeking a highly skilled GRC/Data Governance Analyst to join our team at TEKsystems. As a key member of our Governance, Risk, and Compliance (GRC) pillar, you will play a critical role in overseeing our client's cybersecurity framework and ensuring alignment with business objectives.Key ResponsibilitiesDevelop and implement data...


  • New Bedford, Massachusetts, United States MultiPlan Full time

    About the Role:This is a dynamic and innovative role that supports leadership in all aspects of vendor and risk management programs, including audits, risk assessments, vendor management, policy management, and security awareness.As a trusted advisor and subject matter expert, you will provide IT risk management services to IT team members and business/risk...


  • New York, New York, United States RIT Solutions, Inc. Full time

    Job Summary:The EITS Security Risk Analyst will interface between the CISO's strategic and process-based activities and the work of the technology-focused analysts, engineers and administrators in the IT organization. The Security Risk Analyst must be able to translate the IT-risk requirements and constraints of the business into technical control...


  • New York, New York, United States Alignity Full time

    Job OverviewWe are seeking a highly skilled Cyber Control Findings Analyst to join our team at Alignity Solutions. As a key member of our IT Solutions Integrator/Consulting Firm, you will be responsible for evaluating, tracking, and addressing security issues within our organization.Key Responsibilities:* Perform risk and vulnerability assessments,...


  • New Bedford, Massachusetts, United States MultiPlan Full time

    About the Role:We are seeking a highly skilled IT Risk Management Specialist to join our team at MultiPlan. As a key member of our risk management team, you will be responsible for executing and maturing our vendor and risk management programs.Key Responsibilities:Provide IT risk management services to IT team members and business/risk owners.Collaborate...


  • New York, New York, United States Intelligent Staffing Full time

    Job Summary:Cyber Security Analyst - Risk and Complianceis responsible for reviewing, monitoring, and resolving security findings within an organization. This role involves conducting risk and vulnerability assessments, validation testing, compliance reviews, and audits following NIST standards. The ideal candidate will have expertise in conducting ISO 27001...


  • New York, New York, United States DailyPay Full time

    About DailyPayDailyPay is a leading on-demand pay solution that helps America's top employers build stronger relationships with their employees. Our award-winning technology platform enables workers to feel more motivated to work harder and stay longer on the job, while supporting their financial well-being outside of the workplace.As a GRC Security Analyst...


  • New York, New York, United States Bell Soft LLC Full time

    Job Title: Cyber Security GRC Specialist with Vendor Risk Assessment ExpertiseJob Description:We are seeking a highly skilled Cyber Security GRC Specialist with expertise in Vendor Risk Assessment to join our team at Bell Soft LLC.Key Responsibilities:* Ensure vendor security architecture and design meets firm policies, external guidelines, and regulatory...

  • Senior GRC Analyst

    2 weeks ago


    New York, United States Cantor Fitzgerald Full time

    The Information Security-GRC (Governance Risk and Compliance) Team is looking for an experienced risk and compliance professional to help drive the efforts across Cybersecurity controls framework initiatives, such as user access recertification, policy management, vendor assessment and client due diligence. This role will also be responsible furthering...

  • Senior GRC Analyst

    2 weeks ago


    new york city, United States Cantor Fitzgerald Full time

    The Information Security-GRC (Governance Risk and Compliance) Team is looking for an experienced risk and compliance professional to help drive the efforts across Cybersecurity controls framework initiatives, such as user access recertification, policy management, vendor assessment and client due diligence. This role will also be responsible furthering...


  • New York, New York, United States Innova Solutions Full time

    Job Title: Security Risk AnalystJob Summary:Innova Solutions is seeking a highly skilled Security Risk Analyst to join our team. As a Security Risk Analyst, you will be responsible for translating IT-risk requirements and constraints of the business into technical control requirements and specifications. You will also develop metrics for ongoing performance...

  • GRC Sr Specialist

    2 weeks ago


    New York, United States SMBC Group Full time

    The anticipated salary range for this role is between $90,000.00 and $135,000.00. The specific salary offered to an applicant will be based on their individual qualifications, experiences, and an analysis of the current compensation paid in their geography and the market for similar roles at the time of hire. The role may also be eligible for an annual...

IT Security GRC Analyst

2 months ago


New London, United States RenaissanceRe Full time
RenaissanceRe is a leading writer of Property & Casualty Reinsurance. For over 25 years, we have helped customers and communities recover and build resilience through our industry-leading ability to understand risk, source efficient capital and rapidly pay claims.

Our global team shares a passion for solving our customers' biggest problems through a collaborative and entrepreneurial culture that empowers employees and rewards creative thinking.

Position Overview:

RenaissanceRe is looking to recruit an IT Security GRC Analyst to their Security team that will take on ownership of the third-party vendor assessment program. In addition, the analyst will assist with various cyber GRC areas including client due diligence, security awareness, regulatory response, audit remediations, security controls strategy, and other ad-hoc projects.

Essential Functions of the Position
  • Manage the third party vendor assessment process by reviewing vendor assessment questionnaires including SOC 2 reports and ISO 27001 certifications. Validate the existence of the vendor's controls by reviewing evidence and lead any possible remediation efforts where a vendor's controls are deficient. Ensure that internal business partners are aware of any risks and work with Legal when certain control requirements need to be included into contracts. Prioritize, track, and report out on progress status, issues, and challenges on a regular basis for executive reporting.
  • Collaborate with the Security GRC Manager to respond to various IT audits from regulatory bodies, Internal Audit, and client due diligence. This is to ensure the organization is meeting its legal requirements, stated policies, and contractual obligations. Maintain an IT Controls Catalogue used to assist with therein mentioned audits.
  • Be actively aware and participate in other GRC activities so that you can ensure continuity of the activities in times of demand including security awareness, policy management, security controls catalogue, etc.
  • Research security controls and be able to translate the technical and non-technical aspects to key stakeholders for various IT platforms and solutions. Ensure that the security controls are deployed in alignment with the Security Team's goals by partnering with Infrastructure and Engineering.
Requirements
  • A bachelor's degree in Cyber Security, Information Technology, or a related field.
  • 3 - 5 years of experience in Governance, Risk, & Compliance within Information Security.
  • A solid understanding of the inter-play between Information Security, Infrastructure, and Engineering.
  • Audit like mindset to uncover control gaps and areas for improvement.
  • Experience working in a global and matrixed organization across functions and geographies.
  • Excellent communication skills with internal and external parties.
  • Ability to keep meticulous records of activities performed.
  • Pluses: Experience with a phishing platform, Jira, Azure, Office 365 E5
  • Nice to have skills, but not required: PowerShell, Phyton, VBA
Certifications/Licensure Requirements
  • CompTIA Security+ or similar certification (E.g. CySA+, CISSP, CISA, CISM, CEH) preferred.

Our people are our most valuable resource and core to our success. This is a fast-paced business environment, demanding a strong work ethic and a results-oriented approach. We offer competitive compensation and benefits, a comprehensive talent development program, and a reward system in which employees share in the success of the company. We are an engaged member of the communities in which we live and work and have a locally-led giving philosophy with generous employee matching program, global and local community grants and employee volunteerism.

We seek diversity, create equity, and practice inclusion. Our people are at the heart of everything we do. We are an equal opportunity employer. We provide equal opportunity to all qualified individuals regardless of race, color, religion, national origin, sex, sexual orientation, gender identity, marital status, pregnancy, disability, military status or other legally protected categories.