IT Compliance Analyst and Risk Manager(GRC)

Hybrid in Harrisburg, PA, US • Posted 12 hours ago • Updated 11 hours ago
Contract Independent
Contract W2
Contract Corp To Corp
6 Months
No Travel Required
Hybrid
$28/hr
Fitment

Dice Job Match Score™

🔗 Matching skills to job...

Job Details

Skills

  • Regulatory Reporting
  • Security Awareness
  • Regulatory Compliance
  • Data Analysis
  • Auditing
  • Continuous Improvement
  • Cyber Security
  • Reporting
  • Management
  • Information Security
  • SAP GRC
  • Decision-making
  • Training
  • Evaluation
  • Documentation
  • Phishing

Summary

Position Summary: Under the direction of the IT Compliance and Risk Manager, this position serves as a Security Awareness and Compliance Analyst within the  Information Security Office, supporting the Commonwealth''''s Governance, Risk, and Compliance (GRC). The GRC function provides governance, risk evaluation, and compliance oversight to support informed decision-making and the responsible adoption of technology across the Commonwealth.
The Security Awareness and Compliance Analyst administers the organization''''s Security Awareness and Phishing Program and supports governance, risk, and compliance initiatives. The employee develops and coordinates security awareness activities, manages phishing simulation campaigns, analyzes program effectiveness, and supports regulatory reporting while contributing to the overall maturity of the GRC program.
Description of Major Duties: 
• Administers and maintains the enterprise Security Awareness Program. 
• Plans, coordinates, and executes phishing simulation campaigns. 
• Tracks, analyzes, and reports security awareness and phishing metrics using established reporting tools. 
• Develops and distributes security awareness communications and educational materials. 
• Coordinates required cybersecurity awareness training activities across the organization. 
• Maintains awareness program documentation and records to support compliance and audit requirements. 
• Assists with preparation of reports supporting regulatory requirements, audits, and management reviews. 
• Recommends improvements to awareness activities based on metrics, emerging threats, and industry best practices. 
• Assists with governance, risk, and compliance initiatives as assigned. 
• Participates in continuous improvement activities supporting the organization''''s cybersecurity program. 
• Performs related work as assigned. 
Knowledge and Abilities
Knowledge of:
• Information security awareness principles 
• Cybersecurity fundamentals 
• Security awareness and phishing simulation platforms 
• Reporting and data analysis techniques 
• Compliance and audit support activities 
Ability to:
• Coordinate multiple projects and training activities 
• Analyze program metrics and identify trends 
• Communicate effectively with diverse audiences 
• Develop user-friendly educational materials 
• Establish productive working relationships with agency staff
 
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 90615200
  • Position Id: 9052062
  • Posted 12 hours ago
Contact the job poster
CV

Chandrakanth Vennapusa

Recruiter @ Leverage Technologies
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Harrisburg, Pennsylvania

Today

Easy Apply

Contract, Third Party

$22

Hybrid in Harrisburg, Pennsylvania

Today

Easy Apply

Third Party, Contract

Depends on Experience

Hybrid in Harrisburg, Pennsylvania

Today

Easy Apply

Third Party, Contract

Depends on Experience

Hybrid in Harrisburg, Pennsylvania

Today

Easy Apply

Contract, Third Party

$20 - $30

Search all similar jobs