Controls Mapping Governance Lead - Global Information Security
Core
Interpret information security requirements and map them to specific processes and controls to ensure sufficient coverage across the enterprise.
Role type
Senior IC information security governance analyst
Builds
Defensible mappings between regulatory/policy requirements and operational controls
Domain
Financial services / Information Security Governance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Regulatory interpretation, Control mapping, Process assessment, Evidence validation, Requirement analysis, Gap identification, Technical documentation, Stakeholder engagement, Analytical reasoning, Policy compliance
Preferred skills
Cybersecurity frameworks (NIST, ISO 27001, COBIT), GRC platforms, SharePoint workflows, Risk management
Technologies
GRC platforms, SharePoint
Responsibilities
Interpret laws, rules, regulations, policies, and standards; break complex requirements into individual must statements; Identify and assess candidate processes and controls; Review technical processes and challenge owner responses; Document clear, defensible mapping decisions; Use data and approved tools to support reporting and process improvement
Seniority
Senior, hands-on IC
