drjobs GRC Analyst العربية

GRC Analyst

Employer Active

The job posting is outdated and position may be filled
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

others - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Job Description

Job Description:

The Lead Metrics and Reporting Specialist is responsible for designing and maintaining a security metrics and reporting framework that aligns with industry standards with the goal of providing security and privacy insight. With security leads they will identify metrics to support governance requirements, inform stakeholders of the key security risks and key process indicators that enable the security leaders to effectively run the security program. The framework will include linkage between metrics, security controls, and policy and other governance requirements. They will facilitate regular reviews to ensure metrics stay relevant, correctly track security risk and are calculated accurately. To facilitate the production of metrics and reporting the Lead Metrics and Reporting Specialist will design and implement custom algorithms, workflow processes, and layouts for complex, enterprise-scale data sets used for modelling, data mining, and research purposes.

Functions

  • Develop data standards, policies, and procedures to structure the metrics and reporting framework.
  • Work with security program leaders to identify risk based security metrics that align with the security program and security risk management.
  • Maintain the mapping of security metrics to the security program (risks, governance requirements, policy, standards and security processes).
  • Identify sources, characteristics, and uses of the organization's data assets to inform the required security metrics
  • Determine how to display business rules and policies that transform data in an open and transparent manner, also highlighting any data quality or coverage issues, which allow stakeholders to understand and challenge assumptions.
  • Ensure the timely and accurate delivery of all scheduled reports and scorecards.
  • Coordinate with database and application teams to successfully display security metrics visualizations and security reports in an easy to use and easy to navigate method.
  • Provide actionable recommendations to critical stakeholders based on data analysis and findings.
  • Design creative formats to present data, especially to convey complex informat technical and non-technical audiences.
  • Responsibilities/Requirements

    • Knowledge of risk management processes.
    • Understanding of relevant laws, regulations, frameworks, and other governance requirements as they relate to cybersecurity and privacy.
    • Understanding of the security policies and standards.
    • Knowledge of cyber threats, vulnerabilities and incidents.
    • Ensure that all data used to create security metrics and report is sourced accurately and in a complete and accurate manner.
    • Ensure all metrics and reporting framework mandated processes and actions a completed on time and to a good quality.
    • Ensure system documentation is up to date Knowledge of all the tools and techniques used to analyze data or produce the security metrics and reports (SQL, Alteryx, Tableau, Excel etc.).
    • Research and identify new and emerging data management and reporting technologies that will enhance the metrics and reporting program.
    • Skill in creating and utilizing mathematical or statistical models.
    • Skill in assessing the predictive power of a model.
    • Skill in identifying hidden patterns or relationships.

    Employment Type

    Full Time

    Company Industry

    About Company

    100 employees
    Report This Job
    Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.