Remote Otter LogoRemoteOtter

Information Security Risk Analyst II - Remote

Posted 3 days ago

Overview

The Information Security Risk Analyst II position at CarGurus is responsible for managing technology risk related to compliance requirements, focusing on audits and security awareness programs.

In Short

  • Maintain framework controls in the GRC platform.
  • Conduct proof of concept(s) on new risk technology.
  • Perform risk assessments and audits across the business.
  • Document and develop risk mitigation plans.
  • Deliver security awareness training to the organization.
  • Conduct third-party vendor security risk assessments.
  • Test the design and operational effectiveness of IT General Controls.
  • Work with financial application owners on controls.
  • Measure efficacy of controls and design improvements.
  • Stay current with industry trends in cybersecurity.

Requirements

  • Bachelor’s Degree in Information Security or related field.
  • 3 years of experience in risk management and compliance.
  • Knowledge of compliance frameworks (e.g., SOX, GDPR).
  • Experience with risk-based controls in cloud environments.
  • Understanding of risk assessment methodologies.
  • Ability to gauge organizational risks.
  • Knowledge of risk assessment tools and technologies.
  • Strategic thinking about security risks.
  • Willingness to learn new domains and technologies.
  • Strong communication skills and relationship-building abilities.

Benefits

  • Best-in-class benefits and compensation.
  • Equity for all employees.
  • Flexible hybrid work model.
  • Robust time off policies for work-life balance.
  • Daily free lunch and commuting cost coverage.
  • Access to meditation and fitness apps.
  • Career development programs.
  • Employee resource groups and communities.
  • Inclusive environment valuing diverse perspectives.
  • Support for accommodations during the hiring process.

Similar Jobs:

Proficio logo

Information Security Analyst II - Remote

Proficio

7 weeks ago

The Information Security Analyst II is responsible for managing security alerts and improving threat detection capabilities.

Information Security
SIEM
EDR
Splunk
Worldwide
Full-time
Software Development
Proficio logo

Information Security Analyst II - Remote

Proficio

7 weeks ago

The Information Security Analyst II is responsible for managing security alerts and improving threat detection capabilities.

SIEM
EDR
Splunk
Elastic
Worldwide
Full-time
Software Development

S.N.H.U

Information Security Analyst III - Remote

Southern New Hampshire University

2 days ago

Join Southern New Hampshire University as an Information Security Analyst III, where you'll lead the SOC team in monitoring and responding to cybersecurity incidents.

Cybersecurity
Security Operations Center (SOC)
Incident Response
SIEM
USA
Full-time
All others
$100,560.00 - $160,926.00/year
Ping Identity logo

Information Security Analyst - Remote

Ping Identity

1 week ago

Join Ping Identity as an Information Security Analyst to enhance customer security assurance and streamline the sales pipeline.

Information Security
Customer Assessments
Audits
Compliance
Worldwide
Full-time
All others
Roadie logo

Information Security Analyst - Remote

Roadie

1 week ago

The Information Security Analyst at Roadie will ensure the security and integrity of information systems through compliance audits and proactive security measures.

Information Security
HIPAA
SOC 2
Compliance
Worldwide
Full-time
All others