Sr. Information Security Analyst
Core
Senior Information Security professional owning and maturing risk management processes, controls, and governance for a technology-driven financial services company.
Role type
Senior IC Information Security Analyst (GRC)
Builds
Risk management processes, internal controls, and governance frameworks
Domain
Financial Services / Information Security
Required skills
Security GRC, technology risk, technology audit, security operations, security risk management, control design and operation, cloud security, third-party risk management, audit reporting, risk assessment, regulatory compliance
Preferred skills
CISSP, CISA, CISM, AWS Cloud certifications, regulated financial services experience, mentoring, governance committee leadership
Technologies
NIST CSF, SOC 2, ISO 27001, AI automation tools
Responsibilities
Lead major program areas like vulnerability management and third-party risk; design and document complex internal controls; author policy updates and KRI reporting; act as escalation point and reviewer for junior analysts; influence stakeholders on risk acceptance decisions.
Seniority
Senior, hands-on IC