Senior Information Security GRC Analyst Job at NeoDym Technologies, Remote

MjByNmxNdytxOHk0R0NlVzFsUWlBNXhjSlE9PQ==
  • NeoDym Technologies
  • Remote

Job Description

JPC-7899-14-06/23

Role: Senior Information Security GRC Analyst

Location: 100% Remote

Duration: 12 Months

Position Overview

The South Carolina Department of Administration, Division of Information Security (DIS), is seeking a Senior Information Security GRC Analyst to support the statewide information security program.

This position will assist agencies with the development, implementation, and improvement of information security programs by providing tactical support, conducting assessments, documenting processes, tracking compliance efforts, and ensuring alignment with established security standards.

The ideal candidate will have extensive experience in information security governance, risk, and compliance (GRC), strong knowledge of security frameworks, excellent communication skills, and the ability to work with business and technical stakeholders.

Position Details

Position Title: Senior Information Security GRC Analyst

Division: Office of Information Technology Services (OTIS) Division of Information Security (DIS)

Location: Columbia, SC

Work Arrangement: Fully Remote (Onsite availability preferred for meetings, training, and departmental activities)

Duration: 12 Months

Extension: Possible

Start Date: Immediate

Openings: 1

Background Screening Required:

  • 7-year standard background check
  • Credit history check
  • Driving record (MVR)
  • E-Verify
  • SLED Check
  • CJIS certification (processed after start)

Responsibilities

Information Security Governance & Compliance

  • Support agencies in developing and implementing information security programs.
  • Provide tactical assistance to agencies for security program execution.
  • Develop, maintain, and track information security implementation plans.
  • Analyze agency security processes and procedures to ensure alignment with state security standards.
  • Evaluate information security practices and recommend improvements.
  • Ensure compliance with statewide information security policies and controls.

Security Assessments & Documentation

  • Conduct interviews with business owners, technical owners, administrators, managers, and third parties to gather security-related information.
  • Review existing policies, procedures, and documentation.
  • Document findings from interviews and document reviews.
  • Create and maintain formal security process documentation.
  • Develop security program artifacts and supporting materials.
  • Assess agency documentation to verify compliance with required security controls.

Risk Management & Process Improvement

  • Identify gaps in security processes and recommend remediation strategies.
  • Support development and tracking of:
    • Plans of Action and Milestones (POA&M)
    • Corrective Action Plans (CAP)
  • Assist agencies in improving security maturity and control implementation.
  • Identify, map, and re-engineer business processes where required.
  • Support continuous improvement of security governance processes.

Collaboration & Stakeholder Management

  • Work closely with technical teams, business teams, leadership, and external stakeholders.
  • Communicate security requirements effectively to technical and non-technical audiences.
  • Manage multiple information security initiatives simultaneously.
  • Coordinate schedules, resources, and deliverables.
  • Work effectively in a high-volume, fast-paced environment.

Required Skills & Experience

  • 10+ years of experience in Information Security and Compliance.
  • 2+ years of experience with security audits based on standard control frameworks as:
    • Auditor
    • Information System Security Officer (ISSO)
  • Strong working knowledge of NIST 800-53 (minimum 2 years experience).
  • Experience with:
    • POA&M
    • CAP processes
  • Strong experience using GRC tools such as:
    • Archer
    • Similar Governance, Risk, and Compliance platforms (3+ years)
  • Strong written and verbal communication skills.

Preferred Skills

  • Experience completing:
    • Information Security Plans
    • System Security Plans (SSP) / Security plan documentation
  • Ability to manage multiple security initiatives at the same time.
  • Knowledge of compliance frameworks and regulations including:
    • IRS 1075
    • HIPAA
    • CJIS
    • MARS-E
    • PCI-DSS
  • Government sector experience.

Additional Skills

  • Strong analytical and problem-solving skills.
  • Ability to identify and improve business processes.
  • Strong organizational and schedule management skills.
  • Ability to manage priorities and meet deadlines.
  • Excellent collaboration and communication skills.
  • Ability to work independently with minimal supervision.

Tools & Technologies

  • Governance, Risk, and Compliance (GRC) Platforms
  • Archer or similar GRC tools
  • NIST 800-53 Framework
  • Security assessment methodologies
  • Compliance tracking tools
  • Risk management processes

Education & Certifications

Required Education:

  • Bachelor's Degree

Preferred Certifications:

  • CISA
  • GSLC
  • Equivalent Information Security / Compliance Certifications

Desired Profile

  • Senior-level Information Security professional with strong GRC expertise.
  • Strong understanding of security frameworks, controls, audits, and compliance.
  • Experienced in working with government agencies and regulated environments.
  • Strong documentation and stakeholder management skills.
  • Proven ability to deliver security initiatives accurately and efficiently.

Job Tags

Work at office, Immediate start, Remote work

Similar Jobs

Griswold Home Care for Anoka County

Live in Caregiver Job at Griswold Home Care for Anoka County

Live In CaregiverJob description:This is a live in caregiver opportunity. We are providing 24 hour, 7 days a week live in care.You will be provided with sleeping accommodations The rate of pay is $350.00 per dayDo you have the desire to improve people... 

ACCESS

Case Worker Health Educator Job at ACCESS

Job Title: Case Worker Health EducatorFunctional areas/departments where this position may be located:~Community Health and Research...  ...degree~Required Disciplines:~Business, Marketing, Public Health, Social Work or Human Services based on assigned functional... 

Solomon Page

Freelance Assistant Sweater Designer Job at Solomon Page

We are looking for aFreelance Assistant Sweater Designer a top fashion company inNew York, New York.This role supports the design and development of womens and mens sweater/knitwear collections from concept through production. The designer will partner closely with... 

Compass Group

BARISTA at UT Dallas (FULL AND PART TIME) Job at Compass Group

 ...University of TX - Dallas We are hiring immediately for full-time and part-time BARISTA positions. Address : University of TX -...  ...shifts. This will be for the FALL semester at our brand new Starbucks on Campus. More details upon interview. Requirement : Barista... 

Confidential

Phlebotomist 4596 Job at Confidential

Our client is seeking virtual based Senior Account Executive to sell court reporting and deposition services Requirements: ~2+ years experience with selling Court Reporting services to law firms~ Demonstrated success in sales, negotiation, communication and problem...