Job Description
📋 Description Support risk assessments across business and technology areas Maintain/update policies aligned with security frameworks Coordinate audits by gathering evidence and tracking findings Contribute to control testing and monitoring Maintain the risk register and risk treatment tracking Assist with customer-facing security reviews and due diligence 🎯 Requirements A bachelor’s degree in a relevant field or equivalent experience Foundational understanding of GRC concepts Familiarity with BIA/BCP concepts and recovery objectives Familiarity with at least one framework (NIST CSF, SOC 2, PCI DSS) Experience in a GRC, cybersecurity, internal audit, IT risk, or BCP context Clear written and verbal communication skills 🎁 Benefits Work from almost anywhere up to 20 days per year Company-paid therapy sessions through SpringHealth Company-paid HeadSpace subscription Company-wide week off a year No meeting Fridays Paid parental leave