Governance, Risk Management Consultant

Yantran LLC

SANTA CLARA, NM

JOB DETAILS
SKILLS
Analysis Skills, Business Processes, CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Computing, Communication Skills, Computer Science, Computer Security, Consulting, Cross-Functional, Detail Oriented, Documentation, Enterprise Protection, ISO (International Organization for Standardization), Incident Response, Industry Standards, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Interpersonal Skills, Maintain Compliance, Management Consulting, Multitasking, Privacy Regulations, Problem Solving Skills, Project/Program Management, Regulations, Regulatory Requirements, Risk Analysis, Risk Management, Security Information and Event Management (SIEM), Status Reports, Team Player, Training Program, Training/Teaching
LOCATION
SANTA CLARA, NM
POSTED
30+ days ago
Job Title: GRC Consultant
Location: CSI US CA Santa Clara
Years of Experience: 7 10 Years
Job Summary:
We are seeking a highly skilled Cybersecurity / Enterprise Security Contractor with a strong focus on Governance, Risk Management, and Compliance (GRC). The ideal candidate will possess extensive experience in information risk management and compliance, particularly with a CISM certification. This role is critical in ensuring that our organization adheres to regulatory requirements and maintains a robust security posture.
Responsibilities:
Develop, implement, and maintain GRC frameworks and policies to ensure compliance with industry standards and regulations.
Conduct risk assessments and audits to identify vulnerabilities and recommend mitigation strategies.
Collaborate with cross functional teams to integrate security practices into business processes.
Monitor and report on compliance status, providing insights and recommendations to senior management.
Stay updated on emerging threats, regulatory changes, and best practices in cybersecurity and compliance.
Provide training and awareness programs to staff on information security policies and procedures.
Assist in incident response planning and execution, ensuring effective communication and documentation.
Mandatory Skills:
CISM certification with a strong focus on Information Risk Management and Compliance.
Proven experience in developing and implementing GRC frameworks.
Strong understanding of regulatory requirements such as SOC 2 / ISO 27001
Experience in conducting risk assessments and audits.
Excellent analytical and problem solving skills.
Strong communication and interpersonal skills, with the ability to work collaboratively across teams.
Preferred Skills:
Additional certifications such as CISSP, CISA, or CRISC.
Experience with security tools and technologies (e.g., SIEM, vulnerability management tools).
Knowledge of cloud security and compliance frameworks.
Familiarity with data privacy laws and regulations.
Qualifications:
Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
7 10 years of experience in cybersecurity, with a focus on GRC.
Proven track record of managing compliance initiatives and risk management programs.
Ability to work independently and manage multiple projects simultaneously.
If you are a proactive and detail oriented professional with a passion for cybersecurity and compliance, we encourage you to apply for this exciting opportunity.

About the Company

Y

Yantran LLC