GRC Risk Analyst at Tanium conducting compliance assessments and developing risk management policies. Collaborating with stakeholders to ensure adherence to regulatory requirements and industry standards.
Responsibilities
Executes audits and risk assessments, communicates results of findings and makes recommendations for improvement through concise, high-quality reports
Ensures company management is knowledgeable of the risks of noncompliance to information security standards and regulatory requirements
Writes and revises policies, standards, procedures, guidelines and other documentation based on Tanium’s business needs
Participates in Information Security, Information Technology and Product Security projects driving the implementation of new process improvements and risk treatments
Works closely with Information Security, Information Technology, Product Security and System Owners to review and respond to security questionnaires and due diligence requests
Assists in the assessment and review of new vendors to ensure adequate levels of controls are in place to maintain compliance with security requirements
Prepares reports summarizing risk assessment findings and presents them to management
Recommends changes in business processes or policies to manage risks
Ensures compliance with regulatory requirements related to risk management
Monitors risks, proposing preventive measures and solutions to prevent future risks
Requirements
Bachelor's Degree in Computer Science, Engineering or equivalent experience
3-5 years in information technology / information security auditing, preferably within a software engineering environment
Technical knowledge of fundamental audit and risk concepts within the context of information technology and information security
Familiarity with one or more of the following frameworks: FedRAMP, StateRAMP, CMMC, ISO 27001:2013, SOC2, NIST Cyber Security Framework (CSF)
Experience writing audit findings, reports, policies, standards, procedures and guidelines
Comfortable performing technical interviews with technical personnel and business process reviews with non-technical personnel
Working knowledge of risk assessment methodologies, contingency planning approaches, data analysis techniques and improvement tools including root cause analysis, corrective action, preventative action, Plan-Do-Check-Act and the cost of quality
Working knowledge of improvement programs such as Total Quality Management, ISO 9001, Six Sigma, Theory of Constraints or Lean
Experience managing projects, implementing change and tracking their implementation progress
Excellent knowledge of risk analysis methodologies and tools
Bilanzbuchhalter responsible for compliance and quality standards in financial services for Germany and Bulgaria. Focused on training, internal controls, and financial reporting.
Managing Environmental Permitting Lead at Anchor QEA leading waterfront development projects. Responsible for permitting strategies and regulatory approvals in the San Francisco Bay Area and beyond.
Associate for managing relationships with clients requiring FATCA/CRS compliance. Conducting documentation review and maintaining client portfolios while supporting team processes.
Regulatory Affairs Manager handling drug approval processes and regulatory affairs. Working with authorities and ensuring compliance for a leading international pharmaceutical firm in Munich.
Referent in Organisationsentwicklung and Governance supporting compliance and development at Diakonie Mark - Ruhr. Involved in building internal controls and quality frameworks in a social organization.
Lead compliance and AML efforts at Onafriq, a fintech company, overseeing FCA regulations. Act as MLRO ensuring robust compliance culture while supporting UK business growth.
Vendor Compliance Analyst coordinating Oracle solutions and troubleshooting customer scorecards at Helen of Troy. Collaborating with internal teams to ensure compliance and address issues efficiently.
Product Development & Regulatory Specialist in an innovative nutricosmetic company. Supporting product innovation and regulatory compliance for collagen - based supplements in global markets.
Director of Compliance leading compliance initiatives across the US Commercial organization at Organon. Implementing tools and processes to drive compliance and risk management initiatives.