Senior GRC Analyst
TinesFull Time
Senior (5 to 8 years)
Candidates must have a minimum of 5 years of experience in information security, IT audit, IT Risk Management, or as a GRC Analyst/Engineer. A deep understanding of at least a few of the following frameworks is required: CMMC, NIST 800-53 & 800-171, FedRAMP, SOC 2, PCI, and/or other global privacy compliance frameworks.
The GRC Analyst will manage and implement complex controls frameworks for large systems, including cloud infrastructure and SaaS services, and design automation solutions for evidence collection. Responsibilities include conducting risk assessments, identifying findings, recommending remediation strategies, assisting with automated controls, incorporating CMMC certification into compliance assessments, facilitating third-party vendor reviews, and participating in incident response activities.
Cybersecurity solutions for data protection and privacy
Virtru provides data protection and privacy solutions that ensure secure sharing, storage, and analysis of data throughout its lifecycle. The core of Virtru's offering is the Trusted Data Format (TDF), which allows users to maintain control over their data, ensuring it remains protected and accessible only to authorized individuals, regardless of where it is stored or shared. This platform is utilized by over 20,000 organizations across various sectors, including healthcare, finance, government, and education, to safeguard sensitive information and comply with regulatory requirements. Unlike many competitors, Virtru offers a suite of developer tools that can be integrated into existing applications and systems, allowing organizations to embed data protection seamlessly. The company's goal is to empower organizations to maintain control over their data while preventing breaches and ensuring compliance through subscription-based services and licensing agreements.