Job Summary
We are seeking a highly skilled and experienced GRC (Governance, Risk, and Compliance) Expert to join our team. The ideal candidate will have a strong background in risk management, compliance, and security, with a minimum of 7 years of experience in GRC. This role requires excellent analytical skills, critical thinking, and the ability to work independently and as part of a team.
Key Responsibilities
• Work as part of a team of problem solvers, helping to solve complex business issues from strategy to execution.
• Delegate tasks to others to provide stretch opportunities and coach them to deliver results.
• Demonstrate critical thinking and the ability to bring order to unstructured problems.
• Use a broad range of tools and techniques to extract insights from current cyber trends.
• Review your work and that of others for quality, accuracy, and relevance.
• Know how and when to use tools available for a given situation and explain the reasons for this choice.
• Seek and embrace opportunities that give exposure to different situations, environments, and perspectives.
• Use straightforward communication in a structured way when influencing and connecting with others.
• Read situations and modify behavior to build quality relationships.
• Uphold the firm's code of ethics and business conduct.
Education & Experience Recommended
• Four-year or Graduate Degree in Computer Science, Information Technology, or any other related discipline or commensurate work experience or demonstrated competence.
• Typically has 7-10 years of work experience, preferably in cyber & IT security, or a related field.
Preferred Qualifications
• Demonstrates thorough abilities and/or a proven record of success in roles performing on GRC programs.
• Experience in risk management, compliance management, and/or enterprise governance as it relates to leveraging technologies throughout internal audit, risk, and compliance functions.
• Knowledge of cybersecurity frameworks and building programs or capabilities across an enterprise.
• Experience in designing, reengineering, optimizing, and documenting financial, operational, technology, and business requirements, processes, and workflows.
• Deep understanding of access control, specifically role-based access and inheritance of role and record-based permissions.
• Experience identifying sources of data outside of GRC solutions and designing integration approaches to share data between client and third-party systems.
• Experience with implementing GRC technology such as Navex IRM, RSA Archer, MetricStream, or ServiceNow.
• Knowledge of proper technical documentation techniques to capture GRC solution design and configuration.
Disclaimer
• This job description describes the general nature and level of work performed in this role. It is not intended to be an exhaustive list of all duties, skills, responsibilities, knowledge, etc. These may be subject to change and additional functions may be assigned as needed by management.