Logo for Scalable OS

Associate Governance Risk and Compliance Analyst

Role overview

Qualifications

  • 1-3 years’ experience in an IT, Cybersecurity, or GRC-related field (Preferred)
  • Preferred certifications: CompTIA Security+, ISC2 CC, OCEG GRCP
  • Knowledge of Secure Software Development Life Cycle (SSDLC) practices is a plus
  • Basic operational capabilities for the Office 365 stack (Microsoft Word, Excel, Outlook)

Responsibilities

  • Coordinating and working with clients to develop formalized Written Information Security Programs (WISPs)
  • Performing cybersecurity due diligence assessments on client vendors
  • Assisting clients in meeting regulatory requirements via policy review and testing
  • Providing customized end-user security awareness training via presentations and simulated phishing campaigns

Key facts

Other skills

  • Communication
  • Organizational Skills
  • Time Management
  • Critical Thinking
  • Creativity
  • Detail Oriented

About the company

Scalable OS logo

Scalable OS

Staffing & Recruiting

ScalableOS is a premium offshore staffing partner offering custom solutions for MSPs. We provide dedicated staff based in the Philippines, 100% under your control. Your team with us operates as an extension of yours! We’re experts in helping MSPs grow quickly and profitably.

Company details

Company typeSME
IndustryStaffing & Recruiting
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

SUMMARY
Seeking someone passionate about information security and customer service to assist customers in meeting their cybersecurity regulatory and legal requirements. Analysts will work with customers to develop formalized information security policies, analyze the efficacy of current policies and procedures, evaluate the risks posed by third-party providers, provide security awareness training to clients, and provide insight into cybersecurity regulations. Analysts also lend their expertise to internal initiatives related to cybersecurity governance and compliance.

JOB RESPONSIBILITIES
• Coordinating and working with clients to develop formalized Written Information Security Programs (WISPs)
• Performing cybersecurity due diligence assessments on client vendors
• Assisting clients in meeting regulatory requirements via policy review and testing (e.g., Incident Response tabletop exercises)
• Coordinating with other analysts and engineers as part of vCISO advisory services
• Providing customized end-user security awareness training via presentations and simulated phishing campaigns
• Researching and keeping up to date with financial services, US healthcare, and data privacy requirements including DORA, FCA, CCPA, GDPR, HIPAA, FINRA, DFSA, CSSF, and NYDFS.
• Performing compliance information security gap assessments for various regulations and frameworks. (NIST CSF, CIS CSC v8, HIPAA, PCI-DSS, etc.)


Requirements

QUALIFICATIONS
• 1-3 years’ experience in an IT, Cybersecurity, or GRC-related field (Preferred).
• Preferred certifications: CompTIA Security+, ISC2 CC, OCEG GRCP
• Knowledge of Secure Software Development Life Cycle (SSDLC) practices is a plus.
• Basic operational capabilities for the Office 365 stack (Microsoft Word, Excel, Outlook)
• Strong ability to direct self-work with excellent organizational and time management skills.
• Excellent verbal and written communication skills, especially when communicating technical concepts to non-technical audiences.
• Critical and creative thinking to strategize how to add value to customer engagements and improve processes
• Exceptional spelling and grammar skills for writing and proofreading documents.
• Ability to remain flexible as processes continuously improve.

JOB REQUIREMENTS
• Should be willing to accept a long-term work-from-home arrangement.
• Should be amenable to a permanent night shift schedule.


Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Risk and Compliance Analyst Related jobs

Other jobs at Scalable OS

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.