See all roles

Experienced GRC Analyst – Third Party Risk Management & Cybersecurity Compliance (Remote)

Work from home Full-time role Hiring

--- About arenaflex Welcome to arenaflex, where innovation meets excellence in the digital landscape. We are a forward-thinking organization committed to delivering exceptional solutions while maintaining the highest standards of cybersecurity and operational excellence. As we continue to expand our global footprint, we are seeking a talented professional to join our dynamic Cybersecurity team. At arenaflex, we believe that strong governance, risk management, and compliance are the foundation of a secure and successful organization. Our Cybersecurity team comprises dedicated professionals who formulate and implement strategies to help the organization align with its business objectives while managing threats effectively and meeting industry standards. We work on cutting-edge technology and toward new innovations in the area of cybersecurity to deliver excellence in everything we do. We are currently looking for an experienced GRC (Governance, Risk, and Compliance) Professional to guide GRC-related activities and ensure the clean execution of various tasks within our team. This is a fantastic opportunity for a cybersecurity specialist who is passionate about Third Party Risk Management (TPRM) and wants to make a significant impact within a growing organization. Position Overview We are seeking a highly motivated and experienced professional to join arenaflex as a GRC Analyst specializing in Third Party Risk Management and Cybersecurity Compliance. In this role, you will be responsible for assisting with our third-party/internal threat control software while managing internal safety compliance requirements and implementing regulations, tactics, and frameworks. This position offers the flexibility of remote work and can accommodate both part-time and full-time schedules. You will report directly to the Manager of Governance, Threat and Compliance within our Cyber and Data Safety division.

Key Responsibilities

Third Party Risk Management (TPRM)

  • Manage and support the organization's Third Party/Internal Risk Management Software and processes
  • Assist in developing and implementing arenaflex's global third-party/internal risk methodology for conducting cyber threat-related due diligence examinations
  • Validate incoming third-party/internal risk assessment requests, working with business stakeholders to confirm the details of the request and the scope of the engagement
  • Conduct kick-off meetings with business stakeholders and any related third parties for conducting Third Party Assessments (TPA)
  • Coordinate the distribution of due diligence questionnaires to internal stakeholders and third parties, review submitted questionnaires for completeness, and identify risks arising from the design and operational effectiveness of internal/third parties' security controls
  • Document responses, associated findings, and remediation plans in arenaflex systems
  • Draft and review reports for the assessments performed and ensure respective business stakeholders finalize reviews
  • Serve as a strong liaison to ensure any queries are addressed concerning the risk management technique and evaluation to the business or third parties as required
  • Carry out continuous tracking of third parties via arenaflex systems for current and new findings and bring any findings to closure
  • Identify opportunities for improvement within arenaflex systems and processes
  • Work closely with Risk Lead/Supervisor to schedule and execute a range of other activities related to the risk management program

Governance, Risk, and Compliance

  • Lead and support the development of cybersecurity risk and compliance-related strategies to ensure treatment of cybersecurity risk consistent with the organization's risk appetite
  • Maintain and document compliance towards information security-related guidelines and processes through planning, testing, remediating, tracking, and reporting on control reviews and risk assessments
  • Lead the development and delivery of compliance and risk education and ongoing communications that help promote a culture of security and compliance
  • Stay abreast of regulatory changes, new guidelines, technology, and internal policy modifications to further identify new key risk areas
  • Lead activities to maintain and guide ISO 27001 certification and compliance

Essential Qualifications & Experience

  • Education: Relevant Bachelor's/Master's degree from an accredited university or equivalent professional experience
  • Experience: Minimum of 4 years of experience in Third Party Risk Management, information security, and audit and compliance tracking (with at least 2-3 years in TPRM or Internal Audit)
  • Industry Experience: Preferred exper

Apply tot his job Apply To this Job

You might like

Technical Operations Analyst with Python, Electronic Trading Systems Preferred – Work From Home

Work from home Full-time role

Entry Level Software Engineer – Remote Work Opportunity with Competitive Salary and Professional Growth

Work from home Full-time role

Remote Service Desk Analyst or IT Technical Support Analyst

Work from home Full-time role

Software Engineer (Backend Rust)

Work from home Full-time role

Customer Success (CS) Technical Specialist - (AI and Cross Platform)

Work from home Full-time role

Junior IT Support Officer (Remote)

Work from home Full-time role

Scientific and Technical Support Lead

Work from home Full-time role

Technical Support Analyst - REMOTE FROM HOME - Must be based in Kansas City Area

Work from home Full-time role

Technical Customer Support (Remote)

Work from home Full-time role

Technical Support(Level 3)

Work from home Full-time role

[Remote] Accounts Payable & Accounts Receivable Specialist

Work from home Full-time role

Experienced Data Entry Clerk – Flexible Remote Work Opportunity with Competitive Hourly Wage

Work from home Full-time role

[Remote] Software Engineer

Work from home Full-time role

Lead Relay Field Technician

Work from home Full-time role

Experienced Data Entry Specialist – Remote Opportunities with arenaflex

Work from home Full-time role

Senior Director of Security Architecture and Engineering (Public Sector)

Work from home Full-time role

NP / APRN - Telemedicine Primary Care Provider

Work from home Full-time role

Windows / Virtualization Systems Engineer

Work from home Full-time role

Project Manager / Admin Assistant with Monday.com Experience (8-10 hours per week)

Work from home Full-time role

Experienced Customer Service Representative – Delivering Exceptional Store Experiences at arenaflex

Work from home Full-time role