Trust Analyst

atAbnormal SecurityRemoteUS flagUnited StatesFull-timeAnalystMid-levelSenior$114.8k – $165k/year

Posted 11 hours ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Lead and manage AI Governance, Data Governance, Security Governance, and various governance committees; establish agendas, facilitate stakeholder engagement, and ensure decisions are finalized

• Oversee the entire policy program, which includes drafting, revising, and maintaining policies, facilitating stakeholder review and acknowledgment, and managing the company's Policy Center

• Manage risk management operations, encompassing the risk register, risk assessments, risk exceptions, and the enforcement of the annual exception cap with renewal review and documentation

• Stay updated on regulatory and industry trends and provide strategic advice to leadership on program strategy and implications

• Ensure that program activities are aligned with the strategic objectives and execute GRC milestones punctually and to a high standard

• Enhance internal control effectiveness through monitoring, control improvements, and providing guidance on control design and operations

• Conduct compliance readiness assessments and supply updates, recommendations, and roadmaps to senior management and business partners

• Provide advice, education, and training for process, control, and risk owners regarding controls, documentation, and risk management duties

• Define and report on key risk indicators and key performance indicators

• Identify gaps or conflicts in policies and processes and collaborate with business partners to develop solutions

• Lead remediation and risk mitigation efforts, including root cause analysis, action plan development and tracking, and recognizing recurring risk patterns

• Design and oversee program operations and supporting technologies

• Participate in ad hoc projects

• Communicate findings related to control testing, audits, risk assessments, issue management, program health, achievements, and risks to project teams, partners, and senior management


⛳️ Requirements

• 4–7 years of experience in cybersecurity, technology risk, GRC, and/or technical compliance roles

• Minimum of 2 years dedicated to ISO 27001 implementation and maintenance

• Proven experience leading at least one complete ISO 27001 certification cycle, including the 2022 revision, from initiation to completion

• Project management experience managing multiple concurrent compliance projects, cross-functional teams, and utilizing Agile or Waterfall methodologies, with tools like ServiceNow

• Experience in owning or facilitating cross-functional AI, data, or security governance programs or committees

• Strong knowledge of security concepts, ISMS implementation and maintenance, control mapping across various frameworks, and continuous control monitoring and automation

• Experience in implementing and managing ISO 27001 and ISO 27701 compliance programs, including Statements of Applicability, risk treatment plans, risk acceptance criteria, internal audit programs, and management reviews

• Background in collaborating with external auditors and managing internal stakeholders

• Familiarity with audit automation and continuous control monitoring tools

• Capability to manage multiple stakeholders and vendors while ensuring project progress

• Bachelor’s degree or equivalent military experience (preferred)

• ISO 27001, ISO 27701, or ISO 42001 Lead Auditor Certification (preferred)

• Certifications such as CRISC, CISSP, CPA, CISA, PMP, or CISM (preferred)

• Experience with NIST CSF, NIST SP 800-53/171, or other control frameworks (preferred)

• Familiarity with AI governance frameworks such as ISO/IEC 42001 and NIST AI RMF (preferred)

• Experience within a technology, SaaS/cloud, or regulated public company (preferred)

• Over 2 years of experience with a Big 4 firm (preferred)


🏝️ Benefits

• Potential for bonus or incentive compensation

• Equity options may be available

• Comprehensive benefits package offered

• Pre-employment checks in accordance with applicable legislation and Abnormal AI’s security and privacy standards

People also viewed

Pearce Services10 hours ago

Senior Revenue Analyst

US flagCalifornia OnlyFull-timeAnalyst$90k – $95k/year
ApplyView job
General Dynamics Information Technology10 hours ago

Business System Analyst

US flagUnited States OnlyFull-timeAnalyst$93.7k – $115k/year
ApplyView job
Globalweb Corp11 hours ago

Requirements Analyst

BR flagBrazil OnlyFull-timeAnalyst
ApplyView job
Omie11 hours ago

Junior Implementation Analyst, Planning

BR flagBrazil OnlyFull-timeAnalyst
ApplyView job
Enterprise Community Partners11 hours ago

Lead Analyst, Sponsor Support

US flagUnited States OnlyFull-timeAnalyst$85k – $98k/year
ApplyView job
Implementation Engineers11 hours ago

Senior Digital Manufacturing Analyst

US flagCalifornia OnlyFull-timeAnalyst
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers