Cybersecurity Analyst - Governance, Risk, and Compliance (GRC)

Remote, USA Full-time
Primary Purpose This role will lead initiatives to foster a strong cybersecurity culture across the organization, driving awareness programs and educational campaigns to our employees. The Cybersecurity Analyst is part of a broader cybersecurity team that ensures all system design, implementation, and standards protect Sempra's network from cyber-attacks. The Analyst of Governance, Risk, and Compliance (GRC) is focused on preventing security threats and ensuring laws and industry standards are upheld, working with a cross-functional team of across various information security functions to conduct third-party assessments, cybersecurity clause review, exception request handling, SOC reviews, risk control evaluation, and threat intelligence monitoring. Duties and Responsibilities Technical Analysis & Delivery • Supports the implementation of the governance & risk frameworks, policy creation & management, IT control management, and security audits & assessments. • Manages issues and corrective actions plans identified in risk assessments through closure. • Reviews cybersecurity clauses in contracts, applicability criteria, exceptions requests and mitigating controls in accordance with company policies and industry standards. • Conducts SOC II reviews and audits. • Monitors Cyber Threat Intelligence resources (such as Sempra, CISA, FBI, and others). • Proposes and implements innovative ways to establish adequate controls, optimize risk management, and improve continuous monitoring. • Coordinates cybersecurity assessments (such as maturity, risk, and penetration testing). • Develops and monitors cybersecurity KRIs and KPIs. • Increases the level of maturity in risk management and controls. Communication & Stakeholder Management • Designs, implements, and manages a comprehensive Cybersecurity Awareness Program, including phishing simulations, threat education campaigns, and targeted training for high-risk roles. • Develops engaging content (videos, newsletters, infographics) to promote security best practices and reduce social engineering risks. • Coordinates Cybersecurity Ambassadors Community and champions cultural change initiatives across business units. Functional Area Leadership • Acts as the primary point of contact for awareness-related metrics and reporting to leadership, ensuring visibility into human risk trends and program effectiveness. Troubleshooting • Maintains good operational relationships with 3rd party risk assessment managed service providers to perform risk assessments, develop mitigation plans, and ensure appropriate service levels. • Ensures team works closely with System Engineers to implement security controls and patches based on capability and need. • Contacts and coordinates vendor, carrier, and remote support when necessary to resolve high-impact security issues. • Document problems and report to management, engineers and/or peers. Performs other duties as assigned (no more than 5% of duties). Apply tot his job
Apply Now

Similar Jobs

Security Analyst-IV

Remote, USA Full-time

Info Security Analyst II / IS - Information Security / Full-time

Remote, USA Full-time

Sr. Information Security Governance Analyst- Bridgewater, NJ or Morrisville, NC (Hybrid)

Remote, USA Full-time

Sr. Application Security Risk Analyst

Remote, USA Full-time

Program Manager, Security

Remote, USA Full-time

Senior Program Manager, Global Physical Security – Construction & Expansion (OCI)

Remote, USA Full-time

AVP, IAM Metric Program Manager

Remote, USA Full-time

Optiv Security Project Manager I | Remote, USA - 2024-11025-2690 in Overland Park, Kansas

Remote, USA Full-time

Program Manager, Cybersecurity

Remote, USA Full-time

Security Software Engineer at Canonical

Remote, USA Full-time

Commercial Insurance Client Service Specialist Addison - Spectrum

Remote, USA Full-time

Experienced Customer Service Advocate for National Remote Positions – Delivering Exceptional Healthcare Support and Building Trust with Members Across the U.S.

Remote, USA Full-time

Sr Clinical Trial Coordinator, Anywhere

Remote, USA Full-time

Clinical Research Associate 2, Sponsor Dedicated, IQVIA

Remote, USA Full-time

Partner Onboarding Specialist

Remote, USA Full-time

**Experienced Remote Data Entry Clerk - Typing: Unlock a Durable Career with Endless Opportunities at blithequark**

Remote, USA Full-time

Remote Data Entry Specialist for Travel Industry - Work from Home Opportunity at blithequark

Remote, USA Full-time

Ramp Agent - SAN (Part-Time)

Remote, USA Full-time

Global Audit / Advisory Consultant /Specialist III/

Remote, USA Full-time

**Experienced Full Stack Data Entry Specialist – Patient Care and Clinical Services**

Remote, USA Full-time
Back to Home