Jobs
>
Coraopolis

    GRC Analyst II - Coraopolis, United States - DICK'S Sporting Goods

    DICK'S Sporting Goods
    DICK'S Sporting Goods Coraopolis, United States

    1 week ago

    DICK'S Sporting Goods background
    Description

    At DICKS Sporting Goods, we believe in how positively sports can change lives. On our team, everyone plays a critical role in creating confidence and excitement by personally equipping all athletes to achieve their dreams. We are committed to creating an inclusive and diverse workforce, reflecting the communities we serve.

    If you are ready to make a difference as part of the worlds greatest sports team, apply to join our team today

    OVERVIEW:

    We are seeking a highly motivated GRC Analyst II to help us maintain a robust cybersecurity governance, risk, and compliance program. The ideal candidate will play a pivotal role in reducing cybersecurity risk and maintaining technology compliance while enabling the business to serve our athletes and teammates. This position is ideal for candidates who are looking to further their career in the cybersecurity field.

    Policy/Standard/Control Statement Development and Maintenance:

    + Contribute to the creation and maintenance of cybersecurity control statements, policies, standards, and guidelines.

    + Ensure policies are up-to-date and align with industry best practices and frameworks.

    + Communicate policy changes and updates to relevant stakeholders.

    Security Awareness Training:

    + Assist in the development of security awareness training programs and materials.

    + Assist with the planning and execution of cybersecurity awareness events and communication campaigns.

    + Organize and deliver training sessions to teammates on security best practices.

    + Monitor and report on the effectiveness of security awareness initiatives.

    Technology Risk Assessment:

    + Assist with the collection, analysis, and presentation of cybersecurity program performance metrics and key risk indicators (KRIs).

    + Conduct regular assessments of technology-related risks within applications, platforms, and processes.

    + Identify risks and assist in the development of mitigation strategies and risk management plans.

    + Provide policy, risk, and compliance input on the design of required security measures.

    PCI and SOX Compliance:

    + Serve as a second line of defense to ensure appropriate design and operating effectiveness of PCI DSS and SOX controls.

    + Collaborate with cross-functional teams to implement necessary controls.

    + Maintain compliance documentation and reporting.

    QUALIFICATIONS:

    + 1-3 years of experience in cybersecurity, GRC, or technology audit

    + Some working knowledge and experience with cybersecurity controls frameworks such as the NIST CSF is preferred

    + Previous experience with cybersecurity policy lifecycle, control statements, standards, and guidelines is preferred

    + Some knowledge of PCI-DSS and SOX technology control requirements

    + Some knowledge of security awareness techniques and processes

    + Effective communication skills that can be adjusted to relevant audiences

    + Analytic and problem solving skills

    + Ability to work effectively in a team and remote work environment

    + Bachelors in Cybersecurity, MIS, Computer Science, or related field is preferred but not required

    Targeted Pay Range: $67,100 - $109,000. This is part of a competitive total rewards package that could include other components such as: incentive, equity and benefits. Individual pay is determined by a number of factors including experience, location, internal pay equity, and other relevant business considerations. We review all teammate pay regularly to ensure competitive and equitable pay. We also offer a generous suite of benefits. To learn more, visit

    + 1-3 years of experience in cybersecurity, GRC, or technology audit

    + Some working knowledge and experience with cybersecurity controls frameworks such as the NIST CSF is preferred

    + Previous experience with cybersecurity policy lifecycle, control statements, standards, and guidelines is preferred

    + Some knowledge of PCI-DSS and SOX technology control requirements

    + Some knowledge of security awareness techniques and processes

    + Effective communication skills that can be adjusted to relevant audiences

    + Analytic and problem solving skills

    + Ability to work effectively in a team and remote work environment

    + Bachelors in Cybersecurity, MIS, Computer Science, or related field is preferred but not required


  • DICK'S Sporting Goods

    GRC Analyst II

    6 days ago


    DICK'S Sporting Goods Coraopolis, United States

    At DICK'S Sporting Goods, we believe in how positively sports can change lives. On our team, everyone plays a critical role in creating confidence and excitement by personally equipping all athletes to achieve their dreams. We are committed to creating an inclusive and diverse wo ...

  • TalentRemedy

    Senior GRC Analyst

    2 weeks ago


    TalentRemedy Washington, United States

    The GRC team facilitates the Information Security and data governance processes, enables risk-based decision-making, and delivers a compliance foundation to achieve and maintain compliance certifications. In this role, the Sr. GRC Analyst will help evolve, mature, and grow our GR ...

  • Piper Companies

    Remote GRC Analyst

    5 days ago


    Piper Companies Toronto, United States

    Piper Companies is seeking a Remote GRC Analyst to join an innovative Financial analytics company based in Toronto, Canada . The GRC Analyst will support the security strategy of the business within new and existing information system capabilities. · Responsibilities of the GR ...

  • TalentRemedy

    Senior GRC Analyst

    2 weeks ago


    TalentRemedy Washington, United States

    The GRC team facilitates the Information Security and data governance processes, enables risk-based decision-making, and delivers a compliance foundation to achieve and maintain compliance certifications. In this role, the · Sr. GRC Analyst · will help evolve, mature, and grow ...

  • IntePros Consulting

    Security Analyst III

    2 weeks ago


    IntePros Consulting Pittsburgh, United States

    Security Analyst · Pittsburgh, PA (hybrid) · Job Duties: · • Reviews and analyzes complex data and information to provide insights, conclusions and actionable recommendations provides direction and guidance on reports and analyses and ensures recommendations are aligned with c ...

  • IntePros Consulting

    Security Analyst III

    2 weeks ago


    IntePros Consulting Pittsburgh, United States

    Security Analyst · Pittsburgh, PA (hybrid) · Job Duties: · •Reviews and analyzes complex data and information to provide insights, conclusions and actionable recommendations provides direction and guidance on reports and analyses and ensures recommendations are aligned with cu ...


  • Federal Home Loan Bank Pittsburgh Pittsburgh, United States

    Position Summary · The ERM Analyst II will provide continuous interaction with various business units throughout the Bank. The primary areas of focus in this dynamic position will be risk assessments, end user computing (EUC) tools, fraud, and risk reporting including the Bank's ...


  • Genesis10 Pittsburgh, United States

    Genesis10 is currently seeking a Cyber Security Analyst with our corporate investment banking company client in their Pittsburgh, PA location. This is a 12+ month contract position with the potential of conversion to FTE. · Summary: · Seeking a Cyber Security Analyst · Cyber ri ...


  • Federal Home Loan Bank Pittsburgh Pittsburgh, United States

    Position Summary · The ERM Analyst II will provide continuous interaction with various business units throughout the Bank. The primary areas of focus in this dynamic position will be risk assessments, end user computing (EUC) tools, fraud, and risk reporting including the Bank's ...


  • Federal Home Loan Bank of Pittsburgh Pittsburgh, United States

    Position Summary · The ERM Analyst III is part of the Enterprise Risk Management (ERM) team. This individual will provide continuous interaction with various business units throughout the Bank. The primary areas of focus in this position will be leading the Bank's operating inci ...


  • First Quality Pennsylvania, United States

    First Quality was founded in 1989 and, in nearly three decades, has grown to be a global privately held company with over 4,000 employees. Its corporate offices are located in Great Neck, New York, with manufacturing facilities and offices in Pennsylvania, South Carolina, Georgia ...


  • A.C Company Canonsburg, United States

    No 3rd Parties/Sub Vendors · Applicants MUST currently be local to the Greater Pittsburgh, PA area to be considered. Anyone who is not will not be considered (No relocation). · Location: 100% On-site in Canonsburg, PA · Overview: · The A.C.Coy Company has an immediate opening to ...


  • A.C Company Canonsburg, United States

    No 3rd Parties/Sub Vendors · Are you ready to apply Make sure you understand all the responsibilities and tasks associated with this role before proceeding. · Applicants MUST currently be local to the Greater Pittsburgh, PA area to be considered. Anyone who is not will not be c ...


  • DANASTAR Professional Services, LLC Washington, United States

    DANASTAR is currently seeking talented, experienced Information System Security Officers (ISSO) for an exciting position supporting one of our premier clients. Our project is aimed at establishing cutting-edge techniques for network defense, identifying threats and detecting mali ...


  • DANASTAR Professional Services, LLC Washington, United States

    DANASTAR is currently seeking talented, experienced Information System Security Officers (ISSO) for an exciting position supporting one of our premier clients. Our project is aimed at establishing cutting-edge techniques for network defense, identifying threats and detecting mali ...