FreshRemote.Work

Governance, Risk and Compliance Security Analyst II

Silver Triangle Building

Credit Acceptance is proud to be an award-winning company with local and national workplace recognition in multiple categories! Our world-class culture is shaped by dedicated Team Members who share a drive to succeed as professionals and together as a company. A great product, amazing people and our stable financial history have made us one of the largest used car finance companies nationally.

Our Engineering and Analytics Team Members utilize the latest technology to develop, monitor, and maintain complex practices that help optimize our success. Our Team Members value being challenged, are encouraged to express their ideas, and have the flexibility to enjoy work life balance. We build intrinsic value by partnering with all functions of our business to support their success and make strategic business decisions. We focus on professional development and continuous improvement while enjoying a casual work environment and Great Place to Work culture!

The Governance, Risk, and Compliance (GRC) Security Analyst II is responsible for supporting the security direction of the business and elevating the company’s security posture. The Senior GRC Security Analyst is expected to support the security strategy of the business within new and existing information system capabilities. The position requires understanding of legacy systems and new technologies and requirements. The Senior GRC Security Analyst is also responsible for maintaining the risk register and collaborating with IT teams to effectively drive risk reduction to manage corporate risk and strengthen security posture.

Outcomes and Activities:

  • This position will work from home; occasional planned travel to an assigned Southfield, Michigan office location may be required. However, this position is permitted to work at a Southfield, Michigan office location if requested by the team member ​
  • Assist in the execution of GRC initiatives, such as security attestations (PCI, SOC 2, ISO 27001), and vendor risk management.
  • Become an advocate and point of contact for security and compliance throughout the organization by articulating the value of 'security by design' practices and controls.
  • Manage and execute on assigned workstreams in conjunction with GRC team members, partnering with stakeholders in the organization as well as external auditors to facilitate scoping, fieldwork, and reporting.
  • Identify processes or areas with inefficiencies, partner with GRC and stakeholders to build consensus on a solution, and drive implementation and adoption.
  • Implements security controls, risk assessment framework, and program that align to regulatory requirements, ensuring documented and sustainable compliance that aligns and advances College business objectives.
  • Evaluates …
This job isn't fresh anymore!
Search Fresh Jobs