Remote Otter LogoRemoteOtter

Senior Information Security Governance & Risk Analyst - Remote

Posted 2 weeks ago
All others
Full Time
Worldwide

Overview

This role involves overseeing Landmark's risk management practices, performing both qualitative and quantitative data analysis, and effectively communicating findings to diverse audiences. Key responsibilities include leading risk assessments, presenting results, recommending actions, and promoting best practices. Additionally, the role focuses on enhancing risk management processes, conducting internal reviews, managing a team of analysts, and ensuring the effective implementation of risk treatment actions. Proficiency in FAIR is highly desirable.

In Short

  • Lead the performance of Risk Assessments and present detailed results, recommending actions to address risks and drive best practices.
  • Oversee the maintenance and continuous improvement of the risk management framework and artefacts.
  • Enhance and refine processes and procedures for risk analysis and management activities.
  • Integrate advanced risk management principals into policies, procedures, and standards, ensuring they are relevant and up to date.
  • Ensure that thorough internal reviews are conducted to assess and improve the organisation's risk posture.
  • Manage and mentor a team of risk analysts, providing guidance and support to ensure professional development and effective performance.
  • A working knowledge of the FAIR (Factor Analysis of Information Risk) assessment methodology is highly desirable.
  • Coordinate with teams to ensure effective implementation, verification, and closure of risk treatment actions.
  • Maintain our ISMS in line with the ISO27001:2022 standard and ensure policies and procedures are effective across our organisation.
  • Lead the response to 3rd party information security audits and questionnaires.
  • Lead collaboration with Compliance and other teams on external and internal audits and reviews.
  • Work closely with our procurement team to ensure that Supplier risks are effectively assessed and managed.
  • Review 3rd party and customer security schedules to ensure we can meet the obligations outlined.

Requirements

  • You will have experience in an Information Security GRC role or in compliance, auditing, data protection, information security, risk management, or a related field.
  • You will excel at translating policy statements into actionable, implementable risk and security controls that can be monitored, audited, and continuously improved.
  • You will possess the ability to evaluate their effectiveness and recommend enhancements.
  • The drive and motivation to make improvements.
  • Excellent communication skills.
  • A proven track record in identifying Information Security risks and providing suggestions on mitigation/treatment through the implementation of risk treatment plans.
  • Good understanding of common information risk and security management standards, frameworks, and laws/regulations: e.g. ISO/IEC 27001, GDPR, NIST 800-53, etc.
  • Experience using FAIR (Factor Analysis of Information Risk) methodology to quantify risks.
  • Experience with data mapping and risk assessment tools and processes that identify information security and cyber risks to business assets and operations is highly desirable.

Benefits

  • Competitive salary and benefits package.
  • Opportunities for professional development and career advancement.
  • Flexible working arrangements.
  • Work in a collaborative and supportive environment.
  • Engage in meaningful work that impacts the organization positively.

L.I.G.I

Landmark Information Group - Internal

Landmark Information Group is a leading provider of data and technology solutions, specializing in delivering critical information to support decision-making in various sectors. The company focuses on optimizing sales processes and enhancing operational efficiency, particularly through the management of bids and proposals. With a commitment to innovation and excellence, Landmark Information Group collaborates with multiple stakeholders to ensure compliance and alignment with business objectives, while continuously improving its services to meet client needs.

Share This Job!

Save This Job!

Similar Jobs:

Quantaleap

Senior Information Security Analyst - Remote

Quantaleap

2 weeks ago

The Senior Information Security Analyst will oversee security protocols and manage Active Directory within a remote work environment.

Worldwide
Full-time
All others
KPMG Australia logo

Information Security Risk Analyst - Remote

KPMG Australia

3 weeks ago

KPMG Australia is seeking an Information Security Risk Analyst to enhance their information security posture and manage cyber security risks.

Australia
Full-time
All others

T.I.S

Senior Information Security Analyst - Remote

Take-Two Interactive Software

5 weeks ago

Take-Two Interactive is seeking a Senior Information Security Analyst to lead security policy and compliance efforts in the gaming industry.

USA
Full-time
All others
$98,400 - $145,620/year
CarGurus logo

Information Security Risk Analyst II - Remote

CarGurus

3 weeks ago

CarGurus is seeking an Information Security Risk Analyst II to manage technology risk and compliance requirements within their Information Security Risk and Compliance team.

MA, USA
Full-time
All others
Granicus logo

Senior Information Security Analyst (Compliance) - Remote

Granicus

17 weeks ago

Granicus is seeking a full-time NetSuite Administrator to enhance and maintain their NetSuite Application, focusing on business processes and accounting practices.

India
Full-time
Finance / Legal