Base: $90,000-$115,000; bonus/equity: not specifie...
Not specified
3 years it security experience
Iso27001 audit experience
Risk assessment execution
The IT Risk and Compliance Analyst role at BRG is a client-facing position focused on assessing and managing the firm’s compliance with information security standards and regulations. The role involves collaboration with various stakeholders and includes responsibilities such as evaluating security policies, responding to security incidents, and participating in vendor assessments
Job Summary
This role provides critical IT security, risk, and compliance advice to business units while maintaining the firm's Information Security Management Program.
The analyst is responsible for coordinating client security assessments, responding to due diligence questionnaires across diverse industries, and assisting with vendor vetting processes.
Candidates must possess strong analytical skills to evaluate gaps in operations and drive the security incident response process in a high-pressure consulting environment.
Matching Summary
Match Score: 75
The IT Risk and Compliance Analyst role at BRG is a client-facing position focused on assessing and managing the firm’s compliance with information security standards and regulations. The role involves collaboration with various stakeholders and includes responsibilities such as evaluating security policies, responding to security incidents, and participating in vendor assessments.
Salary
Base: $90,000-$115,000; Bonus/Equity: Not specified; Benefits: Travel expenses reimbursed
Skills & Requirements
Must-have
3 years IT security experience
ISO27001 audit experience
Risk assessment execution
Vendor vetting and due diligence
Security incident response governance
Nice-to-have
SOC2, HIPAA, HITRUST familiarity
GDPR and CCPA knowledge
GRC tools proficiency
Strong written communication skills
High-pressure environment adaptability
Key Requirements
Associate Degree or equivalent work experience
3 years in two major IT functions
3 years ISO27001 annual surveillance audits
Legal right to work in the U.S. without sponsorship