Experienced Cyber Protection and GRC Professional for Remote Data Entry and Compliance Management at blithequark
Introduction to blithequark and the Industry
blithequark is a leading organization in the field of cybersecurity, dedicated to protecting its assets and ensuring the highest level of security for its customers. The cybersecurity industry is rapidly evolving, with new threats and challenges emerging every day. As a result, the demand for experienced professionals who can guide GRC-related activities and ensure the clean execution of various tasks is on the rise. At blithequark, we are committed to staying ahead of the curve and are seeking an experienced GRC professional to join our team as a Cyber Protection and GRC Specialist.
About the Role
The Cyber Protection and GRC Specialist will be responsible for guiding GRC-related activities and ensuring the clean execution of various tasks within the team. The successful candidate will have experience in the field of cyber protection and will be able to assist in managing the internal safety compliance requirements and implementation of regulations, tactics, and frameworks. This is a remote, part-time or full-time opportunity, offering a competitive salary of $80,000 per year.
Key Responsibilities
- Assist in managing the internal safety compliance requirements and implementation of regulations, tactics, and frameworks at blithequark
- Help in the development and implementation of the third-party/internal risk management (TPRM) software
- Validate incoming third-party/internal risk assessment requests and operate with business stakeholders to confirm the details of the request and the scope of the engagement
- Conduct kick-off sessions with business stakeholders and any related third-party for conducting the TPA
- Coordinate the distribution of due diligence questionnaires to internal stakeholders/third-party, review submitted questionnaires for completeness, and identify risks arising from the current design and operational effectiveness of the internal/third-party's security controls
- File responses, associated findings, and remediation plans in the blithequark systems
- Draft/review reports for the checks performed and ensure respective business stakeholders finalize reviews
- Act as a strong liaison to ensure any queries are responded to concerning the risk control technique and evaluation to the business or third parties as required
- Carry out continuous monitoring of the third parties via blithequark systems for current/new findings and track any findings to closure
- Identify opportunities for improvement within the blithequark systems and strategies
- Work closely with the risk lead/supervisor to schedule and execute a range of different supporting activities related to the risk management program
Governance, Risk, and Compliance
The Cyber Protection and GRC Specialist will also be responsible for leading and assisting in the development of cybersecurity risk and compliance-related strategies to ensure the treatment of cybersecurity risk consistent with the organization's risk appetite. This will include maintaining and documenting compliance towards information security associated guidelines and processes through planning, testing, remediating, monitoring, and reporting on control reviews and risk assessments.
Competencies and Attributes for Success
To be successful in this role, the candidate will need to have:
- Outstanding stakeholder management skills
- A working understanding of information security related best practices and requirements, including ISO 2700x, SOC 2 requirements, SSAE 16/18 requirements, and others
- Experience in the management of risk, controls, and compliance
- Expertise in risk evaluation methodologies – qualitative/quantitative
- Super analytical and problem-solving abilities
- Super presentation making and delivery abilities
- Strong interpersonal abilities
- Ability to navigate rapid-paced environments and be flexible with working hours
- Fantastic communication abilities, both verbal and written
- Adapt quickly to changing conditions and power high-quality change
Preferred Education and Experience
The ideal candidate will have:
- A relevant Bachelor's/Master's degree from an accredited university or equivalent experience
- 4 years of experience in third-party risk management, information security, and audit & compliance monitoring (minimum of 2-3 years in TPRM/internal audit)
- Preferred experience with a large company and/or large four accounting company
- One or more credentials - CISA, CRISC, ISO27001 L.I, CISSP
- Experience in AI/ML is a plus
Career Growth Opportunities and Learning Benefits
At blithequark, we are committed to the growth and development of our employees. As a Cyber Protection and GRC Specialist, you will have access to a range of training and development opportunities, including:
- Professional certification programs
- Workshops and seminars
- Mentorship programs
- Opportunities for career advancement
Work Environment and Company Culture
blithequark is a dynamic and innovative organization that values its employees and is committed to creating a positive and supportive work environment. As a remote employee, you will be able to work from the comfort of your own home and will have access to a range of tools and resources to support your work.
Compensation, Perks, and Benefits
blithequark offers a competitive salary and benefits package, including:
- A salary of $80,000 per year
- Comprehensive health and dental insurance
- 401(k) matching program
- Paid time off and holidays
- Opportunities for career advancement and professional development
Conclusion
If you are a motivated and experienced GRC professional looking for a new challenge, we encourage you to apply for this exciting opportunity to join the blithequark team as a Cyber Protection and GRC Specialist. With a competitive salary, comprehensive benefits package, and opportunities for career growth and development, this is an opportunity not to be missed. Apply now to take the first step in your new career!
Apply for this job