GRC Analyst
Company: VALUECONNECT CONSULTING CORPORATION
Location: Boston
Posted on: April 17, 2025
|
|
Job Description:
Information Security Governance, Risk and Compliance (GRC)
Analyst
Please make an application promptly if you are a good match for
this role due to high levels of interest.
The Massachusetts Department of Transportation (MassDOT) is
actively hiring a Governance, Risk, and Compliance (GRC) Analyst!
Join a great team of cyber security professionals and help us
deliver our mission - which is to protect the confidentiality,
integrity, and availability of MassDOT's digital information and
systems.
GRC is a key pillar of the MassDOT Information Security program,
responsible for the alignment of IT activities to business goals
and the management of information security risks. Our GRC program
needs your help while we expand our implementation and tracking of
security safeguards across the organization.
The InfoSec GRC Analyst role will be a member of a 4-person team,
reporting to the GRC Lead and will work closely with the Chief
Information Security Officer (CISO) and InfoSec Lead.
The ideal candidate is a self-starter with a passion for building
relationships and collaboration. The candidate should have strong
written and verbal communication skills.
Sample Duties and Responsibilities:
Ability to read, comprehend, and analyze published:laws and
regulations, security policies and standards, and information
sharing agreements.
leading security frameworks such as the National Institute of
Standards and Technology (NIST) Cyber Security Framework.
security requirements of the Payment Card Industry Data Security
Standard and the maintenance of effective controls in our retail
networks.
Actively participate in risk assessments with the team and
facilitate the implementation of security safeguards across IT.
Develop tracking for ongoing risk mitigation work and the
maintenance of security safeguards.
Track security safeguards for several compliance programs including
Payment Card Industry Data Security Standard (PCI-DSS), Social
Security Administration (SSA), Federal Motor Carriers Safety
Administration (FMCSA), Criminal Justice Information Services
(CJIS), and agency requirements for issuance of Real ID in
Massachusetts.
About You
Required
Two plus (2+) years of training or practical experience in IT
Operations
Two plus (2+) years of training or practical experience in
Information Security Risk Management
Strong work ethic, great time management, and highly inclusive team
player
Effective verbal and written communicator, with excellent writing
skills
Authorization to work indefinitely in the U.S.
Preferred:
Bachelor's degree or equivalent in Cyber/Information Security
Industry certifications such as CISSP
Previous experience on a GRC team in a large organization
Previous experience with using enterprise GRC tools
Why Join MassDOT
Make a difference. We don't just go to work. We're a team of
employees and contractors committed to securing MassDOT's
information systems to ensure reliable, safe, secure transportation
systems and constituent services for the Commonwealth of
Massachusetts.
MassDOT has a diverse workforce and a flexible work environment.
Currently, the Information Security Team is working in a flexible
hybrid remote/in-office arrangement that is subject to change by
leadership. Our in-office location is Boston, MA 02116.
Keywords: VALUECONNECT CONSULTING CORPORATION, Peabody , GRC Analyst, Professions , Boston, Massachusetts
Click
here to apply!
|