Senior Information Security GRC Specialist

New
RemoteFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Experience
Eight (8) years of experience in the IS GRC field or combination of experience and education in related disciplines.

Requirements

  • Experience in a BC/DR role, with a solid understanding of planning and testing.
  • Eight (8) years of experience in the IS GRC field or combination of experience and education in related disciplines.
  • Bachelor’s Degree, ideally in Computer Engineering, Computer Science, Cybersecurity or Information Systems Management.
  • Possess current relevant certifications (e.g., CISA, CISM, CRISC, etc.) or be willing to obtain within 1 year of assignment.
  • Familiar with compliance requirements such as FFIEC, PCI, GLBA, CCPA, SOX, etc.
  • Familiar with IS frameworks such as SOC 2, NIST, ISO, FISMA, etc.
  • Familiar with IS risk frameworks such as OCTAVE, FAIR, ISACA Risk IT, ISO 27005, NIST CSF, etc.
  • The ability to manage multiple priorities and navigate complex issues.
  • Strong documentation skills.
  • Excellent interpersonal and communication skills.

Responsibilities

  • Own and lead the enterprise Business Continuity and Disaster Recovery (BC/DR) program, including strategy, governance, and execution.
  • Define and maintain BC/DR frameworks, policies, and standards, including RTO/RPO expectations, system tiering, and recovery strategies.
  • Drive enterprise-wide Business Impact Analysis (BIA) processes to identify critical services, dependencies, and recovery priorities.
  • Establish and oversee BC/DR testing strategy, including scenario design, execution, and continuous improvement of recovery capabilities.
  • Lead or support risk assessments for critical systems, strategic initiatives, and operational processes.
  • Partner with Enterprise Risk Management (ERM), Legal, and Technology teams to align BC/DR with broader risk management practices.
  • Collaborate with business and technology leaders to embed resilience into operational processes and system design.
  • Monitor regulatory and industry developments (e.g., FFIEC, GLBA, ISO, NIST) and ensure the BC/DR program evolves accordingly.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now