Cybersecurity Risk And Compliance Specialist
hace 3 semanas
Company Description
Experian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society.
We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for.
In addition, for the last five years we've been named in the 100 "World's Most Innovative Companies" by Forbes Magazine.
With a focus on our employees, we have been certified for the third time as Great Place To Work (GPTW).
Experian Consumer Information Services is redefining the way our clients do business within all aspects of the customer credit lifecycle.
Fueled by best-in-class data and innovative technology we help businesses make smarter decisions, identify consumers, make decisions on loans, market to prospects and collect.
**Job Description**:
**Key Responsibilities**:
- Comprehension of U.S. national and international laws, regulations, policies, and ethics related to financial industry cybersecurity
- Create, maintain, and communicate list of applicable regulations and requirements (PCI-DSS, Privacy, FedRAMP, etc.)
- Assist with developing controls, assessing evidence, and identifying gaps for remediation to meet compliance objectives
- Be familiar with inherent risks, controls, and residual risks as applicable for companies in the technology industry
- Knowledge of risk frameworks (NIST, ISO, COSO, etc.)
- Respond to client risk assessments, report status, and escalate as needed for each assessment
- Determine if responses to auditors and assessors accurately represents risk
- Maintain a database of responses to common questions as found in risk assessments
- Work with business partners to streamline data collection process
- Assist with tracking and remediating control gaps
- Ensure documentation provided to clients and regulators is current
- Assist with coordination and negotiation of internal and external audits to minimize business disruption
- Support development of security processes and procedures to ensure that security controls are managed and maintained
- Drive efforts to ensure consistency of controls across the business unit
- Assist in identifying potential risks that might negatively affect the business or security of data
- Act as a liaison between different clients, stakeholders, and business owners to ensure accurate risk and control information is being documented
- Developing a comprehensive understanding of operational processes and business strategies.
- Strong collaboration and self-management skills.
- Ability to work well in a dynamic, fast-changing environment that requires a high degree of multitasking
- Build relationships with key stakeholders across the organization to ensure buy-in, maintain compliance, identify improvement opportunities, and expand or reduce activities as needed.
- Mentor teammates on processes, best practices, prioritization, and issue resolution.
- Flexibility to be a utility player where needed as this business evolves.
**Qualifications**:
- 1-3 years previous experience in risk, vendor management, audit, or equivalent - preferably with a technology company or financial institution
- 1-3 years previous experience working with SaaS solutions
- Excellent problem solver, who can resolve issues effectively and creatively while maintaining a high level of integrity, confidentiality, and professionalism.
- Action-oriented team player with strong prioritization, operational, and planning skills
- Ability to listen intently, read policies and technical descriptions, and analyze information
- Conscientious self-starter, with a work attitude that exhibits flexibility, initiative, good judgment, and dependability.
- Consensus-building abilities with a proven track record of coordinating and mobilizing resources productively.
- Outstanding presence and solid communication skills, both written and verbal, who effectively communicates at all levels of the organization.
- Proven success navigating large, matrixed organizations.
- Ability to manage multiple projects and competing priorities
- Collaborative associate who excels at building relationships across all levels.
- Enterprise-level B2B experience working on a cross-functional team.
- Bachelor's degree or equivalent.
**Preferred Experience**:
- Industry certifications such as CISA, CRISC, or equivalent
- Ability to balance strategic thinking with attention to detail and pragmatic execution.
- Enterprise-level B2B experience working on a cross-functional team.
- Strong communication skills (verbal and written)
- Knowledge of human capital management systems and/or HR/Payroll/Tax related product offerings.
- Confident in managing relationships across sales, business, and technical teams, both face-to-face and remotely.
- Experience working at a technology company or consulting firm.
Additional Information
Our benefits include: Medical, life and dental insurance, Asociación Solidarista, International Shar
-
Cybersecurity Compliance Professional
hace 4 días
San José, San José, Costa Rica beBeeCompliance A tiempo completo $150.000 - $200.000Job Title: Cybersecurity Compliance LeadWe are seeking a skilled and experienced Cybersecurity Compliance Lead to oversee our enterprise-wide Security Compliance program. The ideal candidate will possess excellent leadership skills, have a deep understanding of security compliance regulations, and be able to effectively manage cross-functional...
-
Cybersecurity Compliance Professional
hace 5 días
San José, San José, Costa Rica beBeeCompliance A tiempo completo $90.000 - $110.000Compliance SpecialistAre you looking to take your career to the next level and make a meaningful impact in the field of cybersecurity? We have an exciting opportunity for a Compliance Specialist to join our team.As a Compliance Specialist, you will play a critical role in ensuring that our organization's systems and processes are compliant with industry...
-
Governance Risk And Compliance Analyst I
hace 4 semanas
San José, San José, Costa Rica Emerson A tiempo completo**PRINCIPLE FUNCTIONAL RESPONSIBILITIES**- Operate compliance initiatives and reporting to improve the overall security posture of the organization- Support information security framework control gap assessments, gap remediation, ongoing security control compliance management, and continual improvement initiatives- Assist with information security audits...
-
Cybersecurity Architect And A Grc Manager
hace 3 semanas
San José, San José, Costa Rica Ynv Group A tiempo completoOverview:Tek is seeking a highly skilled and experienced Cybersecurity Architect and GRC Manager with expertise in Governance, Risk, and Compliance (GRC) to join our dynamic team.The role revolves around offering expert guidance and support in cybersecurity architecture and Governance, Risk, and Compliance (GRC) as a service tailored to meet the unique needs...
-
Cybersecurity Architect and a Grc Manager
hace 1 semana
San José, San José, Costa Rica YNV Group A tiempo completoOverview:Tek is seeking a highly skilled and experienced Cybersecurity Architect and GRC Manager with expertise in Governance, Risk, and Compliance (GRC) to join our dynamic team. The role revolves around offering expert guidance and support in cybersecurity architecture and Governance, Risk, and Compliance (GRC) as a service tailored to meet the unique...
-
Compliance, Risk Management, Governance
hace 3 semanas
San José, San José, Costa Rica CRG Solutions A tiempo completo**Compliance, Risk Management, and Governance Specialist**The Compliance, Risk Management, and Governance Specialist will play a crucial role in supporting the integration of new systems into Drata, facilitating audit evidence collection, assisting with risk assessment activities, tracking and reporting on the risk register, and aiding in the annual policy...
-
Compliance, Risk Management, Governance
hace 3 semanas
San José, San José, Costa Rica Crg Solutions A tiempo completo**Compliance, Risk Management, and Governance Specialist**The Compliance, Risk Management, and Governance Specialist will play a crucial role in supporting the integration of new systems into Drata, facilitating audit evidence collection, assisting with risk assessment activities, tracking and reporting on the risk register, and aiding in the annual policy...
-
Expert Cybersecurity Architect and GRC Manager
hace 1 semana
San José, San José, Costa Rica beBeeCybersecurity A tiempo completo $90.000 - $150.000Seeking Cybersecurity ExpertiseCytek's diverse clientele requires a cybersecurity architect and GRC manager to offer expert guidance in Governance, Risk, and Compliance (GRC) as a service.The role involves providing comprehensive advisory services on cybersecurity architecture and Governance, Risk, and Compliance (GRC), including evaluating existing systems,...
-
Cybersecurity Professional
hace 2 días
San José, San José, Costa Rica beBeeCybersecurity A tiempo completo $100.000 - $140.000Job DescriptionAs a Cybersecurity Specialist, you will play a vital role in helping our organization balance risk by aligning policies and procedures with our business and regulatory requirements.The team is responsible for the development, enforcement and monitoring of security controls, policies and procedures, disaster recovery programs, GRC (Governance,...
-
Compliance And Fraud Specialist
hace 4 semanas
San José, San José, Costa Rica Ynv Group A tiempo completoOverview:We seek to hire a Compliance and Fraud Specialist to join our compliance team.The role will help to manage and prevent the risk of money laundering and terrorist financing, designing the necessary controls and procedures to avoid reputational risk and the risk of contagion.The Compliance and Fraud specialist will also help to establish necessary and...