Immediate Hire: Junior IT Security Associate - Charlotte, NC (hybrid)

Charlotte, NC, US • Posted 8 hours ago • Updated 2 hours ago
Contract W2
On-site
Compensation information provided in the description
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Databases
  • AWS
  • azure
  • JIRA
  • microsoft excel
  • information security principles
  • GCP
  • banking
  • financial services
  • highly regulated environment.
  • understanding of how SaaS applications are built on cloud infrastructure
  • risk assessment concepts
  • control-based evaluations.
  • common security and regulatory frameworks
  • NIST
  • NYDFS Cybersecurity Regulation
  • GLBA
  • ISO 27001
  • NIST CSF
  • data privacy regulations such as CCPA/CPRA
  • enterprise systems
  • operating systems
  • identity
  • access concepts.
  • explain security risk clearly and concisely.
  • working independently
  • collaborating effectively across technical and business teams.
  • Well-organized
  • detail-oriented
  • able to manage multiple assessments and competing priorities.
  • strong sense of ownership and follow-through.
  • track and maintain risk assessment data and metrics using tools

Summary

Hello ,

Good Morning,

Please check the below Job Description and please share me the below skill matrix are requested from client end so please share me year of experience and in which project you have worked.

Job: Junior IT Security Associate

Location: Charlotte, NC (hybrid)

Exp Level: 5-7 yrs+

Interview: Teams (final round may be face to face)

Duration: 12 months+


Payrate: Max $39/Hr. On W2 in All Inc..

Description:

SMBC is seeking a 1st Line of Defense GRC Specialist at the Associate level who has a strong passion for Information Security risk management and is interested in building a career at a fast-growing reputable bank.

As an Associate within GRC, you will play a vital role in protecting SMBC's information assets by conducting comprehensive risk assessments, collaborating with stakeholders, and driving process improvements. Reporting to the Head of Security Risk Assessments, you will help shape the bank's security risk management practices and ensure compliance with internal and external standards.

Core Responsibilities:

Perform information security risk assessments for new and existing SaaS and cloud-based solutions, client initiatives, and regulatory-driven requests.

Review and assess third party security postures by analyzing SOC 1 and SOC 2 reports, ISO 27001 certifications, penetration test summaries, SIG responses, and security questionnaires.

Evaluate SaaS architectures, data flows, and hosting models, with particular attention to data protection, encryption, identity and access management, logging, and monitoring.

Identify control gaps, assess both inherent and residual risk, and partner with stakeholders to define practical mitigation strategies or compensating controls.

Translate technical and operational risks into clear, business focused language that resonates with both technical and non technical audiences.

Collaborate regularly with IT, business, risk, and compliance teams to support timely, well informed decision making.

Support remediation efforts by tracking open issues, validating responses, and documenting outcomes through established governance processes.

Stay current with information security policies, standards, and procedures, and help stakeholders understand how changes may impact risk assessments.

Contribute to the ongoing improvement of risk assessment processes, templates, and tooling

Required Experience and Skills

2 3 years of experience in banking, financial services, or another highly regulated environment.

Hands-on familiarity with cloud service providers such as AWS, Azure, or Google Cloud Platform, and an understanding of how SaaS applications are built on cloud infrastructure.

A solid foundation in information security principles, risk assessment concepts, and control-based evaluations.

Working knowledge of common security and regulatory frameworks, including NIST, NYDFS Cybersecurity Regulation, GLBA, ISO 27001, NIST CSF, and data privacy regulations such as CCPA/CPRA.

Basic understanding of enterprise systems, operating systems, databases, identity and access concepts.

Strong written and verbal communication skills, with the ability to explain security risk clearly and concisely.

Comfortable working independently while also collaborating effectively across technical and business teams.

Well-organized, detail-oriented, and able to manage multiple assessments and competing priorities.

A strong sense of ownership and follow-through.

Ability to track and maintain risk assessment data and metrics using tools such as Microsoft Excel, Jira, or similar platforms.

Preferred / Nice to Have

Experience supporting third party or vendor risk management programs.

Exposure to GRC platforms or security risk assessment tools.

Experience reviewing and interpreting SOC reports.

Current or in progress security certifications (e.g., CompTIA Security+, CompTIA Cloud+, AWS, Azure, Google Cloud Platform, CCSP, CRISC).

Thanks & Regards,

Rahul H | Floga Technologies.

Sr. Talent Acquisition Specialist
E: rahul

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91166516
  • Position Id: 2026-234
  • Posted 8 hours ago

Company Info

About Floga technologies

Floga Technologies envisions a future in which technology drives creativity, crosses boundaries, and enables organizations to prosper in an ever-changing digital landscape. We are dedicated to being the driving force behind this transition, guiding our clients to unprecedented success through cutting-edge IT solutions and intelligent consulting services.

Our aim is to be the preferred partner, known for our unwavering commitment to excellence, integrity, and innovation. We aspire to set the standard for leveraging technology's full potential, helping enterprises to realize their most ambitious goals, and, ultimately, making a lasting good effect on the global business community.

About_Company_OneAbout_Company_Two
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Charlotte, North Carolina

19d ago

Easy Apply

Contract

Up to $56

Charlotte, North Carolina

Today

Contract

Charlotte, North Carolina

Today

Contract

Charlotte, North Carolina

Today

Contract

Search all similar jobs