Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailNot Disclosed
Salary Not Disclosed
1 Vacancy
Title: GRC Policy Analyst
Location: Hybrid Remote / Boston MA
Duration: 12 Months
Mainly remote but may require 12 days/week hybrid particularly during beginning of engagement. Also requires an Onsite interview.
Responsibilities:
Oversee and manage NIST policy approvals and implementation at the MBTA
Manage NIST policies within the ERM platform
Coordinate with key stakeholders for nonNIST policies
Research and evaluate policies to ensure they are uptodate with current NIST guidance
Stay aware of policy trends and new laws/guidelines from the Federal to state and local level
Identify and implement GRC security controls based on the NIST framework.
Manage and implement the cybersecurity awareness program including annual training AUP acknowledgement tracking and phishing training
Collaborate with the GRC IT Risk Analyst on various projects for the GRC Department.
Full Time