Jobs Companies Make-A-Wish America Security Governance, Risk & Compliance Analyst

Sobre esta vaga de Security Governance, Risk & Compliance Analyst na Make-A-Wish America

Make-A-Wish America · Remoto · Remote

Who We Are: 

Our vision is to grant the wish of every eligible child. Through our mission, we are uniting communities to grant life-changing wishes. As the world’s largest wish-granting organization, we strive to create a sense of community and an environment where we warmly embrace our wish families, volunteers, and colleagues.

Joining Make-A-Wish means becoming part of a mission that believes in the power of a wish.  

Location:

Applicants must be authorized to work for ANY employer in the U.S. We do not sponsor employment visas or other immigration processes to attain or maintain employment eligibility.

Remote positions are open to applicants based anywhere in the continental U.S. Hybrid positions are open to applicants based in the Phoenix, Arizona area. 

Position Summary

Work with a growing Information Technology Security team to support the organization's Governance, Risk, and Compliance (GRC) efforts. This role assists in maintaining policies, assessing risks, and ensuring compliance with regulatory requirements and internal standards. This position assists in the identification of control gaps, the development of remediation plans, and the monitoring of compliance activities. This position will contribute to activities such as audits, documentation, GRC application maintenance and the implementation of security controls, under the guidance of senior team members. 

Knowledge and Abilities

  • Demonstrated successful problem-solving abilities.
  • Proficiency in project management, research, and data analysis.
  • Critical thinking and analytical skills to identify and diagnose threats.
  • Detail-oriented with strong organizational skills.
  • Possess strong written and verbal communication skills.
  • Engage effectively with professionals at all levels of the organization.
  • Organizational skills to create detail reports.
  • Multitasking skills to complete other tasks while monitoring data systems.
  • Organize work and prioritize to meet deadlines. Make timely decisions with sound judgment.

Duties & Responsibilities

  • Assist in the development, implementation, and maintenance of GRC frameworks and managing third-party risk.
  • Contribute to the assessment and mitigation of organizational risks.
  • Maintain internal policies, standards and security baselines, oriented toward compliance and regulatory standards - as well as, enforcement of secure practices.
  • Manage risk acceptance and policy exception processes, ingesting risks and creating tracking, reporting and accountability mechanisms.
  • Participate in audits of security controls and processes.
  • Assist with the creation and maintenance of documentation related to GRC activities, TPRM, Business Continuity Planning (BCP), Business Impact Analysis (BIA) and Disaster Recovery.
  • Assist in the identification of control gaps.
  • Contribute to the development of remediation plans.
  • Conduct due diligence on potential third-party vendors to evaluate their security posture, financial stability, and compliance with relevant regulations.
  • Assist in monitoring compliance activities.
  • Collaborate with various departments to integrate TPRM into vendor management processes.
  • Perform vendor and product risk assessments, to align vendors and products with applicable standards, policies and security baselines.
  • Create and maintain vendor questionnaire and Data Protection Agreements (DPA).
  • Vendor Responsibility Agreement, covering performance standards, security obligations, adherence to the Change Management process, training, communications, and documentation.
  • Assist Legal with vendor reviews and responses.
  • Conduct audits of third-party security controls, processes and vendor performance compliance and address and risks that arise.
  • Aid in the development of risk training and awareness programs.
  • Maintain GRC monitoring applications.
  • Performs other related job duties, as assigned.

Qualifications

  • Bachelor’s degree in Computer Science or related technology field or equivalent experience required.
  • 5+ years of total experience with 2+ years of hands-on experience designing, building, and supporting enterprise GRC and TPRM solutions.
  • Understanding of GRC concepts and frameworks (e.g., ISO 27001, NIST, Cybersecurity Framework (CSF), SOC, GDPR)
  • Experience: IT Compliance, IT Audit, IT Security, Cloud Security, PCI, HITRUST, HIPPA, GRC, Risk management, Risk analysis
  • Proficiency in Microsoft Office Suite (Word, Excel, PowerPoint).
  • Relevant and Current Certifications Preferred: e.g., Certified in Governance, Risk and Compliance (CGRC), Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), GRC Professional (GRCP), etc.
  • Knowledge and experience with OneTrust Tools is preferred.

Working Environment

  • Ability to thrive in a remote environment.
  • Some travel required.
  • May require work outside a traditional Monday – Friday work week, and outside normal business hours.
This Role's Hiring Range
$76,300$92,000 USD

What We Offer:

Benefits

  • Comprehensive benefit package, effective day 1: Medical, Vision*, Dental*, Wellness
  • Competitive compensation with annual incentive potential    
  • Health Savings Account and Flexible Spending Account Options    
  • Health Reimbursement Account fully funded by Make-A-Wish America
  • Short Term Disability*, Long Term Disability* and Life Insurance 
  • Additional Insurance Plans: Accident, Critical Illness, Hospital Indemnity, Pet Insurance through Figo 
  • 401(k) Retirement Savings Plan with 5% match after one year of service
  • Eligibility for student loan forgiveness through the Public Service Loan Forgiveness Program   
  • The organization will send a laptop, 24” monitor, and a docking station/adaptor to new hires 

Time Off

  • Competitive PTO starting at 15 days, with enhanced time off for senior roles
  • 10 Sick Days 
  • 11 Paid Holidays 
  • 2 Volunteer Days after one year of service 
  • 2 Personal Days accrued annually   
  • Parental Leave      

Also... 

  • Employee Awards and Recognition Programs    
  • Individual and Leadership Development     
  • Discounts and special offers for theme parks, events, hotels, concerts, and movie tickets  
  • Monthly premiums paid for the employee for vision, dental, and short/long term disability.

We are committed to creating an accessible and inclusive workplace. If you require an accommodation at any stage of the application process, please email hr@wish.org. We are happy to review your needs.

Pronto para se candidatar à Make-A-Wish America?
Candidatar-se à Make-A-Wish America

Como este salário de Compliance se compara

Esta vaga paga $84,150/yrabaixo da faixa típica para vagas de Compliance.

$84,097 a mediana $143,500 $227,105

Faixa típica $109,875–$175,182/yr, com base em 87 vagas de Compliance comparáveis na JobsRadar (pagamento anualizado em USD). Ver insights salariais de Compliance →

Sobre a Make-A-Wish America

At Make-A-Wish® America, we are more than just a workplace — our mission is transformative. Together, we fulfill life-changing wishes for children with critical illnesses. Inspired by one boy's wish to become a police officer, Make-A-Wish has, with the help of our volunteers, donors, staff, and supporters, granted over 600,000 wishes worldwide, making a profound impact on countless lives.

Ver todas as vagas na Make-A-Wish America →

Vagas semelhantes

Upstart
Compliance & Controls Manager, Growth
Upstart
⚡ Candidate-se cedo United States | Remote · local restrito $145,100–$201,100
● Nova 👁 Vista ✓ Candidatada há 1d
Baseten
GRC Manager
Baseten
⚡ Candidate-se cedo San Francisco Híbrido $150,000–$250,000
● Nova 👁 Vista ✓ Candidatada há 2d
AR
Fractional Compliance Manager (Advisor Network)
Arootah
⚡ Candidate-se cedo Remote · local restrito
● Nova 👁 Vista ✓ Candidatada há 2d
Mercury
Financial Crimes Compliance Modeling & Analytics Manager
Mercury
⚡ Candidate-se cedo San Francisco, CA, New York, N... · local restrito
● Nova 👁 Vista ✓ Candidatada há 2d
AN
Sr. Security Program Manager, Commercial & Federal Compliance
Anaplan
⚡ Candidate-se cedo Remote-Atlanta, United States · local restrito
● Nova 👁 Vista ✓ Candidatada há 2d
SE
Compliance Analyst
Sezzle
⚡ Candidate-se cedo Mexico, Remote · local restrito $21,600–$25,200
● Nova 👁 Vista ✓ Candidatada há 2d
Horizon3 AI
Senior Compliance Analyst
Horizon3 AI
⚡ Candidate-se cedo US, Remote · local restrito $109,000–$135,000
● Nova 👁 Vista ✓ Candidatada há 2d
Green Thumb
Regional Market Compliance Manager
Green Thumb
⚡ Candidate-se cedo Remote · local restrito $120,000–$140,000
● Nova 👁 Vista ✓ Candidatada há 2d
Twilio
Senior Manager, GTMA Analysis and Compliance
Twilio
⚡ Candidate-se cedo Remote - Canada · local restrito $132,640–$165,800
● Nova 👁 Vista ✓ Candidatada há 2d

Cadastre-se para receber sugestões sob medida com base nas vagas que você abre e nas buscas que você salva.

Mais vagas na Make-A-Wish America

Ver todas as vagas na Make-A-Wish America →

Candidatar-se agora
🤖

Opa — calma aí

A JobsRadar foi feita para pessoas de verdade passando por um momento difícil na busca por emprego — não para requisições automatizadas. Você está clicando rápido demais e agora está temporariamente bloqueado.

Volte mais tarde. Se você está mesmo procurando emprego, estamos com você — apenas aja como um ser humano.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Ganhe vantagem na sua busca por emprego.

Entre no nosso canal do Telegram para o que ajuda você a conseguir a vaga — referências salariais, o pulso semanal do mercado e avisos de novos recursos. Sem spam, só sinal.

Entre no canal — é grátis