Senior Governance, Risk and Compliance (GRC) Analyst

Company: Clarivate
Company: Clarivate
Location: Kansas City, MO, United States
Commitment: Full time
Posted on: 2023-06-08 05:57
The Senior GRC Analyst will be a part of the Governance, Risk and Compliance (GRC) function of the Information security team at Clarivate, a dynamic team that is working cross company at all levels. The GRC team combines governance, risk management, and compliance in one coordinated model, consists of 10 members based globally, reports to the GRC Compliance Information security manager. We have a great skill set in project management, and we would love to speak with you if you have skills in information security.About You – experience, education, skills, and accomplishments BSc degree graduate in a relevant field or equivalent technical training.  3+ years demonstrated experience in Information security at a global company  3+ years experience with ISO 27001/2, PCI, SOC  English language at a high level - both written and spoken Project management skills to drive projects and initiatives across multiple departments  It would be great if you also had  Security certifications – CISO, CISSP and/or CISM highly preferredExperience in creating and implementing processesKnowledge of risk assessment and security baselinesKnowledge of ISO Certifications and NIST standardsExperience handling tasks in a matrixed organizationAdditional languages, an advantageWhat will you be doing in this role?Implement the key initiatives/projects focused on the reduction of security risks, governance, and compliance.Participate in security and privacy compliance assessments on new and existing systems, processes, and technologies.Support internal and external audit processes   such as ISO 27001/ISO 27002, SSAE 18 and leading standards for Information SecurityEnhance operational effectiveness of audit activities to further align to company strategy and risk managementAssist with education and awareness programs to promote security and privacy in the company.Inform the CISO or DPO regarding security and privacy concerns and recommend courses of actionTactically maintain and operate the risk management systemsParticipate in completing security questionnaires, contract reviews, RFPs, and tendersReview proposed changes on an ongoing basis to determine the impact on security and privacyAbout the Team  The Senior Governance, Risk, and Compliance (GRC) Analyst will be a part of the Information Security team, a dynamic team that works for cross-company at all levels. The Senior GRC Analyst will be responsible for maintaining and reporting on information security compliance processes, government, risks, key security initiatives and tests.Hours of WorkFull time, permanentHybrid working modelMust be within a commutable distance to our Overland Park, KS officeClarivate is an Equal Opportunity Employer Vets/Minorities/Women/Disabled
View Original Job Posting