Current jobs related to Senior Information Security Governance, Risk and Compliance Analyst - Dublin - Snowflake Computing


  • Dublin, California, United States Snowflake Computing Full time

    Job Title: Senior Security Compliance AnalystSnowflake Computing is seeking a highly skilled Senior Security Compliance Analyst to join our Global Security Compliance & Risk team. As a critical member of our team, you will play a key role in driving compliance across Product Engineering and Corporate Engineering.Key Responsibilities:Conduct Compliance Risk...


  • Dublin, United States Snowflake Computing Full time

    Build the future of data. Join the Snowflake team. Snowflake is growing and looking for a driven Senior Analyst to join our team. You will report to the IA Senior Manager, Business and help with an evolving workload in a fast-paced environment. Whether it is conducting operational audits or advisory engagements, supporting the Enterprise Risk Management...


  • Dublin, Ohio, United States Gainwell Technologies Full time

    Senior Security Compliance OfficerOverview:This role is pivotal in ensuring the integrity and confidentiality of sensitive information within the healthcare sector. The position requires a seasoned professional with extensive experience in healthcare compliance and security management.Location: RemoteKey Responsibilities:Oversee compliance with HIPAA...


  • Dublin, United States Intelliswift Software Full time

    Must Have skills:Information SecurityComputer Incident Response Team (CIRT) / Computer Emergency Response Team (CERT) / Computer Security Incident Response Center (CSIRC) / Security Operations Center (SOC)Perl or Python or PowerShellVPNFirewallStrong understanding of PCI, GLBA and IS/IT risk assessment, the Federal Financial Institution Examination Council...


  • Dublin, United States Intelliswift Software Full time

    Must Have skills:Information SecurityComputer Incident Response Team (CIRT) / Computer Emergency Response Team (CERT) / Computer Security Incident Response Center (CSIRC) / Security Operations Center (SOC)Perl or Python or PowerShellVPNFirewallStrong understanding of PCI, GLBA and IS/IT risk assessment, the Federal Financial Institution Examination Council...


  • Dublin, Ohio, United States Gainwell Technologies Full time

    Job SummaryWe are seeking an experienced Account Security Specialist to join our team at Gainwell Technologies. As a key member of our security team, you will be responsible for providing expert-level security guidance and support to our clients.Key ResponsibilitiesProvide strategic security guidance and support to clients, including risk assessments, policy...


  • Dublin, Ohio, United States Patelco Credit Union Full time

    About Patelco Credit UnionWe are a not-for-profit credit union dedicated to building financial health and wellbeing for our members. With over 85 years of experience, we have grown from $500 in assets to over $9 billion in assets and are the 7th largest credit union in California with branches throughout Northern California.Our MissionWe are committed to...


  • Dublin, California, United States Intelliswift Software Full time

    Job Title: Information Security ArchitectAt Intelliswift Software, we are seeking an experienced Information Security Architect to join our team. As a key member of our security team, you will be responsible for developing and implementing enterprise-wide security strategies and solutions to protect our organization's assets.Key Responsibilities:Develop and...


  • Dublin, California, United States Intelliswift Software Full time

    Essential Skills:Architectural DesignCybersecurityFirewall ManagementNetwork ProtectionEndpoint DefenseSecurity Information and Event Management (SIEM)Cloud SecurityKey ResponsibilitiesDevelop and establish enterprise-wide standards and best practices while engineering intricate, large-scale technological solutions to tackle complex security challenges...


  • Dublin, Ohio, United States Patelco Credit Union Full time

    About Patelco Credit UnionWe are a not-for-profit credit union dedicated to building financial health and wellbeing for our members. With over 85 years of experience, we have grown from $500 in assets to over $9 billion in assets and are the 7th largest credit union in California with branches throughout Northern California.Our MissionWe are committed to...


  • Dublin, United States Intelliswift Software Full time

    Must Have skills:ArchitectureInformation SecurityFirewallNetwork securityEndpoint securitySIEMCloudResponsibilities Responsible for developing standards and enterprise-wide best practices and for engineering complex, large-scale technology solutions to address highly complex and typically cross organizational security issuesTranslates advanced technology...


  • Dublin, United States Intelliswift Software Full time

    Must Have skills:ArchitectureInformation SecurityFirewallNetwork securityEndpoint securitySIEMCloudResponsibilities Responsible for developing standards and enterprise-wide best practices and for engineering complex, large-scale technology solutions to address highly complex and typically cross organizational security issuesTranslates advanced technology...


  • Dublin, Ohio, United States Patelco Credit Union Full time

    About Patelco Credit UnionPatelco Credit Union is a not-for-profit financial institution dedicated to building financial health and wellbeing for its members. With a rich history dating back to 1936, the organization has grown from humble beginnings to become the 7th largest credit union in California, serving members across Northern California through its...


  • Dublin, California, United States Axelon Full time

    Senior Business Operations Analyst RemoteCompensation: $50-60 per hour*This position is primarily remote for the duration of the assignment, with occasional on-site requirements expected to be infrequent. Candidates local to the Bay Area are preferred for equipment setup.KEY ATTRIBUTES SOUGHT IN CANDIDATE: 1) Experience with clients is a plus but not...


  • Dublin, United States SVS Group Full time

    Job DescriptionJob DescriptionINFORMATION SECURITY ENGINEERPosition SummaryThe Information Security Engineer will be responsible for providing engineering design, analysis, and support for information security platforms and devices, routers, firewalls, networks, and operating systems, identifying relevant threats, recommending corrective actions, developing...


  • Dublin, California, United States Intelliswift Software Full time

    Job Title: Information Security ArchitectAt Intelliswift Software, we are seeking an experienced Information Security Architect to join our team. As a key member of our security team, you will be responsible for developing and implementing enterprise-wide security strategies and solutions to protect our organization's assets and data.Key...


  • Dublin, California, United States Intelliswift Software Full time

    Essential Skills:ArchitectureInformation SecurityFirewall ManagementNetwork ProtectionEndpoint DefenseSecurity Information and Event Management (SIEM)Cloud SecurityKey ResponsibilitiesDevelop and establish enterprise-wide standards and best practices while engineering intricate, large-scale technology solutions to tackle complex, cross-organizational...

  • Technical Analyst

    6 hours ago


    Dublin, Ohio, United States eInformatics Full time

    About eInformaticseInformatics is a leading healthcare IT company providing professional services and radiology and ambulatory software solutions to a healthcare provider customer base across North America.Job DescriptionWe are seeking a highly skilled IT Technical Analyst to join our team. As an IT Technical Analyst, you will use your analytical and...


  • Dublin, Ohio, United States Snowflake Computing Full time

    Build the Future of Data with SnowflakeSnowflake is seeking an experienced HRIS Analyst to join our HR Tech team in Dublin, CA. As a key member of our team, you will play a crucial role in developing and delivering solutions across Workday HCM, focusing on business enablement, user experience, and scalability.Key Responsibilities:Establish strong...


  • Dublin, United States State Street Corporation Full time

    Endpoint Security Analyst, AVP State Street is seeking an Endpoint Security Analyst for our Security Platforms team, which is part of the State Street Cyber Fusion Center. This team designs, manages, and supports the security tools which enable security operations across State Street. These tools are critical to State Street's security, enabling threat...

Senior Information Security Governance, Risk and Compliance Analyst

4 months ago


Dublin, United States Snowflake Computing Full time

Build the future of data. Join the Snowflake team.

We're at the forefront of the data revolution, committed to building the world's greatest data and applications platform. Our 'get it done' culture allows everyone at Snowflake to have an equal opportunity to innovate on new ideas, create work with a lasting impact, and excel in a culture of collaboration.

Snowflake Global Security Compliance and Risk (GSCR) team is focused on ensuring all our Snowflake products and services, and Corporate IT environment are secured, compliant with regulatory requirements and cybersecurity and third-party risks are managed. Our team works cross-functionally with various key stakeholders (Product Security, Engineering, Corporate IT and Security, Legal, Enterprise Risk Management, and Internal Audit).

The Senior Cybersecurity Risk and Policy Lead will be a critical and high-impact individual contributor role. This role will be responsible for managing the cybersecurity risks (identifying, assessing, managing, monitoring and communicating cybersecurity risks) and security policies (facilitate development, maintenance, and evolution of the security policy framework, and work with all security teams to implement, manage and track exceptions to policies, standards, and plans over time). Ideal candidates are highly motivated individuals who thrive in fast-paced environments, comfortable with modern technology stacks that leverage the cloud, and who see risk as something to manage pragmatically.

JOB RESPONSIBILITIES:

  • Ensure relevant cybersecurity risks identified are captured in the risk register and keep it updated with the related information
  • Facilitate risk decomposition (scenario generation) activities with the relevant key stakeholders and document the outcomes
  • Develop a broader understanding of the motives, targets and activities of cyber threat actors and manage threat actor profile for Snowflake
  • Perform cyber risk assessments on new and existing cyber security risks in partnership with risk owners and subject matter experts
  • Analyze cybersecurity risks to determine likelihood and impact to Snowflake business and describe risks in quantitative and qualitative terms
  • Implement a quantitative risk methodology based on FAIR approach and quantify cybersecurity risks in financial terms
  • Develop risk mitigation plan by partnering with the risk and system owners
  • Identify and develop appropriate metrics such as key performance indicators (KPIs) and key risk indicators (KRIs) to measure risks and highlight trends or themes
  • Track and monitor risk mitigation plan activities with metrics and timeline
  • Help make risk-based decisions and trade-offs impacting business strategies
  • Help project prioritization for quarterly planning activities that could mitigate the risks
  • Develop reports and dashboards to provide an update on risk posture to key stakeholders, risk owners and leadership team
  • Maintain a strong understanding of risk management methodologies and frameworks
  • Educate and build awareness of cybersecurity risk management across the organization
  • Empower key stakeholders and risk owners to use the common risk taxonomy
  • Influence behaviors to reduce cybersecurity risk and foster a strong risk-based culture throughout the organization
  • Assess, evolve, and drive the policy management framework for all Security policies and standards in partnership with Security teams and Security Risk Management
  • Review and make recommendations for streamlining existing and future security policies
  • Appropriately assess control design and effectiveness in order to ensure policy and standard enforcement
  • Create a process and collateral for rolling out new security policies to the whole company
  • Establish, document, and broadly communicate security policy management norms to the Security organization, outlining how to create, maintain, enforce, and deprecate security policies in line with enterprise policy requirements
  • Collaborate within Security Compliance, Product Security, Corporate Security, Legal and other partners to incorporate security and compliance requirements into the security policy framework and track policy implementation and issues
  • Manage the Security Exception Process to enable Security teams to track exceptions, manage approvals, and improve automation
  • Partner with Security Analytics team to develop key performance indicators and dashboards to monitor and report on the Security policies
  • Utilize people, process and technology in order to build tightly integrated policy tooling into a broad set of security internal tooling
QUALIFICATIONS:
  • Minimum of 10 years of tactical and operational experience in Governance, Risk and Compliance, or Information Security, with a focus on risk assessments/management
  • Strong analytical skills along with the ability to effectively communicate complex security related information including risk identification, assessment, and remediation activity.
  • Knowledge and practical experience with the following risk management frameworks: ISO, NIST, and FAIR.
  • Experience with creating and utilizing risk KPIs and KRIs with data visualization tooling.
  • Technical certifications within the area of security and risk are a strong plus (CISSP, CRISC, CISM or equivalent).
  • Knowledge and experience pertaining to:
    • AWS or Azure or GCP (or similar) cloud security and infrastructure
    • Software as a Service (SaaS) applications
    • CI/CD pipeline tools (such Github, Jenkins, etc.)
    • Network infrastructure security
    • Encryption technology and implementation
    • Database security
    • Operating system security
    • Artificial intelligence and machine learning
  • Expert, communicator and writer; you can coach others on their writing skills, you can adapt your communication style for your audience, and you have experience drafting policies, reports, and other written materials for a variety of executive audiences
  • Knowledge of global cybersecurity, technology and data privacy regulatory requirements
  • Experience reporting policy and compliance posture to senior stakeholders
  • Ability to direct cross functional work and hold others accountable to committed deadlines

Every Snowflake employee is expected to follow the company's confidentiality and security standards for handling sensitive data. Snowflake employees must abide by the company's data security plan as an essential part of their duties. It is every employee's duty to keep customer information secure and confidential.