Jobs
>
Atlanta

    Governance Risk - Atlanta, United States - PulteGroup

    Default job background
    Description
    Job Summary:

    Maintains and contributes to the design of the Company's cybersecurity Governance, Risk, and Compliance program (GRC). The GRC Analyst II plays a key role in assessing technology-related risks and ensuring compliance with relevant regulations, policies, standards, and controls designed to protect the organization's information assets.

    Learned professional who works independently with limited guidance except when dealing with unusual or complex scenarios. Provides guidance to less experienced GRC Analysts and leads process improvement efforts within the Information Security team.

    Primary Job Responsibilities

    Policies/Standards/Controls:
    • Develops and maintains cybersecurity policies, standards, and guidelines.
    • Implements and monitors compliance with cybersecurity control framework.
    • Ensures policies are up-to-date and align with industry best practices, regulatory requirements, and cyber frameworks.
    • Communicates policies to relevant stakeholders.
    Security Awareness:
    • Independently develops security awareness training programs and materials.
    • Plans and executes cybersecurity awareness events and communication campaigns.
    • Develops, organizes, and delivers training sessions to employees on security policies and best practices.
    • Monitors and reports on the effectiveness of security awareness initiatives.
    Cyber Risk Management:
    • Collects, analyzes, and presents cybersecurity program performance metrics and key risk indicators (KRIs).
    • Independently conducts regular assessments of cyber risks within applications, platforms, and processes.
    • Identifies risks and develops mitigation strategies and risk management plans
    • Manages third-party risk by assessing the security posture of external vendors and partners, implementing risk mitigation measures, and fostering secure third-party relationships.
    PCI, SOX, and Privacy Compliance:
    • Ensures appropriate design and operating effectiveness of regulatory and PCI-DSS controls.
    • Manages privacy-related data subject access requests.
    • Monitors compliance and reports effectiveness.
    • Independently performs periodic gap assessments to validate compliance.
    • Monitors regulatory environment and performs impact assessments.
    • Partners with auditors and manages action plans in response to audit discoveries.
    Management Responsibilities
    • Not applicable
    Scope
    • Decision Impact: Individual
    • Department Responsibility: Single
    • Budgetary Responsibility: No
    • Direct Reports: No
    • Indirect Reports: No
    • Physical Requirements: Not applicable
    Required Education/Experience
    • Minimum Bachelor's Degree in Cybersecurity or related field or a combination of related education and work experience in an Information Security role to equal 4 years.
    • Related Functional Experience: Minimum of 5 years of experience in cybersecurity or technical risk analysis.
    • Minimum of 3 years of experience in a GRC role.
    Required Skills/Knowledge
    • Depth of knowledge with cybersecurity control frameworks (NIST CSF preferred)
    • Working knowledge of cybersecurity policy lifecycle, standards, and guidelines.
    • Experience with PCI-DSS and SOX
    • Working knowledge of data governance and privacy regulations
    • Experience with security awareness techniques and processes in an enterprise environment.
    • Exceptional written and verbal communication skills that can be adjusted to relevant audiences.
    • Analytic and problem-solving skills.
    PulteGroup, Inc. and its affiliates do not accept unsolicited resumes from individual recruiters or third party recruiting agencies (collectively, "Recruiters") in response to job postings. If Recruiters nevertheless submit one or more unsolicited resumes to any employee at PulteGroup, Inc. or its affiliates without a valid written agreement in place for this position, it will be deemed the sole property of PulteGroup, Inc. and its affiliates. No fee will be owing or paid to Recruiters who submit unsolicited candidates, in the event the candidate is hired by PulteGroup, Inc. or its affiliates as a result of the referral, without a written agreement between PulteGroup, Inc. and through any means other than via our Applicant Tracking System.

    We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, disability status, genetic information, protected veteran status, or any other characteristic protected by law. We will provide a reasonable accommodation to a qualified applicant with a disability that will enable the individual to have an equal opportunity to participate in the application process and to be considered for a job.

    This Organization Participates in e-Verify

    Pulte Homes of Minnesota is an equal employment opportunity/affirmative action employer.

    California Privacy Policy

  • Mission Recruit

    Governance Risk

    2 weeks ago


    Mission Recruit Atlanta, United States

    Job Summary · Maintains and contributes to the design of the Companys cybersecurity Governance, Risk, and Compliance program (GRC). The GRC Analyst II plays a key role in assessing technology-related risks and ensuring compliance with relevant regulations, policies, standards, a ...

  • Mission Recruit

    Governance Risk

    2 weeks ago


    Mission Recruit Atlanta, United States

    Job Summary · Maintains and contributes to the design of the Companys cybersecurity Governance, Risk, and Compliance program (GRC). The GRC Analyst II plays a key role in assessing technology-related risks and ensuring compliance with relevant regulations, policies, standards, a ...

  • PulteGroup

    Governance Risk

    1 week ago


    PulteGroup Atlanta, United States

    Job Summary: · Maintains and contributes to the design of the Company's cybersecurity Governance, Risk, and Compliance program (GRC). The GRC Analyst II plays a key role in assessing technology-related risks and ensuring compliance with relevant regulations, policies, standards, ...

  • PulteGroup

    Governance Risk

    1 week ago


    PulteGroup Atlanta, United States

    Job Summary: · Maintains and contributes to the design of the Company's cybersecurity Governance, Risk, and Compliance program (GRC). The GRC Analyst II plays a key role in assessing technology-related risks and ensuring compliance with relevant regulations, policies, standards, ...

  • PulteGroup

    Governance Risk

    2 weeks ago


    PulteGroup Atlanta, United States

    Policies/ Standards/ Controls:Develops and maintains cybersecurity policies, standards, and guidelines. Implements and monitors compliance with cybersecurity control framework. Ensures policies are up-to-date and align with industry best practices, r Compliance Analyst, Risk, Com ...


  • Mission Recruit Atlanta, United States

    Fortune 500 company · Fortune Best Places to Work · Great Culture + Benefits · Salary + healthy Bonus · Awesome culture · Our Fortune 500 and Fortune's Best Places to Work client is looking to expand their team of talented Information Technology professionals. They have an excell ...


  • PRGX Global, Inc. Atlanta, United States

    The Governance, Risk and Compliance Manager (Security) specializes in third-party risk assessments, ISO27001 audits, SOC2 audits, and client-conducted risk assessments. The position plays a pivotal role in maintaining and enhancing PRGX's governance, risk and compliance framework ...


  • Mission Recruit Atlanta, United States

    Fortune 500 company · Fortune Best Places to Work · Great Culture + Benefits · Salary + healthy Bonus · Awesome culture · Our Fortune 500 and Fortune's Best Places to Work client is looking to expand their team of talented Information Technology professionals. They have an e ...


  • Children's Healthcare of Atlanta North Atlanta, United States

    Note: If you are CURRENTLY employed at Children's and/or have an active badge or network access, STOP here. Submit your application via Workday using the Career App (Find Jobs). · Work Shift · Day · Work Day(s) · Monday-Friday · Shift Start Time · 8:00 AM · Shift End Time · 5:00 ...


  • RaceTrac Petroleum Atlanta, United States

    Job Description: · The Governance, Risk, & Compliance Analyst is responsible for contributing to our organization's compliance with regulatory requirements, such as PCI DSS, NIST. This person will be responsible for coordinating with company management and functional teams to id ...


  • Intercontinental Exchange Atlanta, United States

    Overview · Job Purpose · As a Business Analyst within the Risk Data Governance (RDG) platform, you will be responsible for drafting business and functional requirements to support development and implementation of quality standards defined in the risk data governance framework ...


  • Intercontinental Exchange Holdings, Inc. Atlanta, United States

    Overview: · Job Purpose · As a Business Analyst within the Risk Data Governance (RDG) platform, you will be responsible for drafting business and functional requirements to support development and implementation of quality standards defined in the risk data governance framework ...


  • PRGX Global Inc. Atlanta, United States

    The Governance, Risk and Compliance Manager (Security) specializes in third-party risk assessments, ISO27001 audits, SOC2 audits, and client-conducted risk assessments. The position plays a pivotal role in maintaining and enhancing PRGX's governance, risk and compliance framework ...


  • Intercontinental Exchange Atlanta, United States

    Overview · Job Purpose · As a Business Analyst within the Risk Data Governance (RDG) platform, you will be responsible for drafting business and functional requirements to support development and implementation of quality standards defined in the risk data governance framework f ...


  • Intercontinental Exchange Holdings, Inc. Atlanta, United States

    Overview: · Job Purpose · As a Business Analyst within the Risk Data Governance (RDG) platform, you will be responsible for drafting business and functional requirements to support development and implementation of quality standards defined in the risk data governance framework ...


  • Wells Fargo Atlanta, United States

    **About this role**: · **In this role, you will**: · - Lead and supervise risk and the operations of teller functions to deliver exceptional customer service and colleague experience, and ensure timely completion, quality, and compliance in teller functions · - Provide feedback a ...

  • Meridian Cooperative

    Enterprise Architect

    2 weeks ago


    Meridian Cooperative Atlanta, United States

    **Meridian Cooperative **is looking for an **Enterprise Architect** to join our development team of passionate innovators and problem-solvers, empowered to rise above challenges and swarm around solutions. Here, at our Dunwoody office, we are energized by the fact that our work i ...

  • VSC Fire & Security, Inc.

    Sprinkler Sales

    1 week ago


    VSC Fire & Security, Inc. Atlanta, United States

    **What we offer**: · - Competitive salary · - $68,000-$70,000 and up. Based on experience. · - Monday - Friday (occasional evening, weekend, and out-of-town work). · - Options for Medical, Dental and Vision insurance for you and your family. · - A 401K plan with a company match. ...


  • Nexus Cognitive Technologies LLC Atlanta, United States

    **Innovate, Impact, inspire - Your future begins here** · **ABOUT US**: At Nexus Cognitive, we are at the forefront of technological innovation, driving transformative solutions in the world of data and analytics. Our mission is to enable your business to harness the power of big ...


  • 3T Consulting Group Atlanta, United States

    - · **Key Responsibilities**: · - Manage relationships with internal and external project partners. · Oversee relationships, reporting, and communications with entities such points of contact. · Handle complex inter-team dependencies and bridge gaps in technical system management ...