Governance Risk & Compliance Analyst (ISO 27001)
Milwaukee, WI, US, 53204
Requisition #: 19465
Functional Area: Audit/Risk/Compliance; Data Analytics; Software Development
Employment Type: Full-Time
Work Options: Remote / Work from Home in the US #LI-Remote
Work Hours: Standard Business Hours; 8:00am - 4:30pm CST
Position Summary
- Join one of J. J. Keller's fastest growing business units as we protect people and the businesses they run! This NEWLY created exciting position will support the implementation and maintenance of governance, risk and compliance processes that will protect client data and system integrity for our Managed Services team.
- This position is part of the Managed Services Technology team but also works closely with our corporate Risk & Compliance team, IT team, and other technology-based teams across the company.
- This role can work 100% remote in the US, on-site at our Corporate Campus in Neenah, WI or hybrid. Our organization is over 80% remote, so you can join and work remote and be part of a remote-first team.
Job Responsibilities
- Works with business unit leaders to develop and maintain ISO and SOC controls and related artifacts. Continuously improves the framework, methodology, standards, and system of internal controls.
- Conducts internal audits of controls to assess compliance with data security and privacy policies, procedures, standards, and/or regulations.
- Develops and performs tests to evaluate the design and effectiveness of key controls necessary for compliance.
- Reviews test findings, identifies control weaknesses, presents results, and recommends remediation actions.
- Supports issue management, risk acceptances, and corrective action plans.
- Supports corporate audits (internal and external) by fulfilling requests for documentation and participating in audit meetings. Reports on findings, tracks status, and ensures corrective actions are complete and sustainable.
- Assists with preparing and maintaining Business Impact Analysis documents for the business unit. Supports risk identification & assessment, response & mitigation, control monitoring & reporting.
- Coordinates disaster recovery testing for the business unit. Participates in corporate disaster recovery and business continuity assessments/activities.
- Performs security and compliance assessments on new and existing systems, processes, and technology.
- Assists with the preparation of data security questionnaires from customers.
- Monitors system maintenance, upgrades, and end-of-life timelines. Coordinates appropriate activities to remove expired systems from documentation and servers.
- Supports vendor audit/maintenance process and helps lead and define overall third-party risk management efforts.
Qualifications
Experience:
- 3+ years’ analyst experience in risk management or information …
This job isn't fresh anymore!
Search Fresh JobsJob Profile
Work from Home in the US
Benefits/Perks17 PTO days 17 PTO Days + 8 Paid Company Holidays + 1 Paid Floating Holiday 401(k) with employer match Annual Learning & Development Subscriptions Annual Profit Sharing Annual reviews Annual Reviews, Merit Increases Free access to FLEX by Fitness on Demand Free Onsite Wellness Clinic Medical, Dental & Vision Insurance Merit increases Quarterly bonus Quarterly Bonus Program Remote-first company Remote work Standard business hours Strong company culture Work-life balance Work/Life Balance & Flex Time
Tasks- Analysis
- Conduct internal audits
- Coordinate disaster recovery testing
- Design
- Develop and maintain ISO and SOC controls
- Development
- Documentation
- Monitor system maintenance
- Support corporate audits
- Testing
Analytical Business Continuity Planning Compliance Data Security Disaster Recovery Documentation Information security Internal Audits ISO 27001 Risk Assessment Software Development
Experience3 years
Education TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9