Information Security Analyst | GRC and Security Operations
I am an Information Security Analyst with experience across both the governance and the technical sides of security, which lets me translate between auditors, engineers, and leadership.
Governance, risk, and compliance:
• Vendor and third party security assessments, including SOC 2 report reviews• Built and own the standard vendor security review questionnaire used for all third party and AI tool evaluations• Security reviews of new tools and applications, including AI and other emerging technologies• Security policy development and review, risk assessment and treatment, and user access reviews, aligned to ISO 27001 practices• Primary point of contact during an external IT and security audit• Support for regulatory compliance, including DORA, and for incident response tabletop exercises
Technical security:
• Level three security investigations escalated from a third party SOC and endpoint detection and response platform• Phishing investigation and
Security awareness:
• Own the company wide security awareness program: training, phishing simulations, newsletters, and post activity reporting for the team and leadership
Education and focus:
• MBA holder, deepening ISO 27001 knowledge through ongoing mentorship and building toward formal GRC certifications, with a habit of thinking about security in terms of business risk and strategy• Detail oriented, organized, and a clear communicator, comfortable working remotely with international teams across time zones
I am open to part time, full time, associate, or contract roles in information security and GRC.
Experience: 2 - 5 years
Experience: 2 - 5 years
Experience: 2 - 5 years
“I have one of the best VAs I've had in a long time...she's been amazing”
Davonna Willis
SEE MORE REAL RESULTSOnlinejobs.ph "ID Proof" indicates if "they are who they say they are".
It DOES NOT indicate skill level.
ID Proof scores are 0 - 99 with 99 being the best. It is calculated based on dozens of data points.
It's intended to help employers know who they're talking to is real, and not a fake identity.