Lead Governance, Risk, & Compliance Analyst
Remote - Minnesota, United States
Arctic Wolf
Arctic Wolf delivers dynamic, 24x7 AI-driven cybersecurity protection tailored to the needs of your organization. Ready to boost your cyber resilience?At Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on the Forbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber 60 lists, and we recently took home the 2024 CRN Products of the Year award. We’re proud to be named a Leader in the IDC MarketScape for Worldwide Managed Detection and Response Services and earning a Customers' Choice distinction from Gartner Peer Insights. Our Aurora Platform also received CRN’s Products of the Year award in the inaugural Security Operations Platform category. Join a company that’s not only leading, but also shaping, the future of security operations.
Our mission is simple: End Cyber Risk. We’re looking for a Lead Governance, Risk, and Compliance Analyst to be a part of making that happen.
About the Role
The Lead Governance, Risk, & Compliance Analyst works with cross-functional stakeholders to understand the business and the risks and compliance needs of the organization to establish and maintain governance, risk and compliance processes. This role excels in organizing, planning and delivering results and relishes working with others to achieve critical security outcomes. This role champions the customer’s right to privacy and security and build in those requirements into product offerings & services as well as day-to-day business processes.
Responsibilities
Collaborate with multiple organizational stakeholders to drive development, maintenance and implementation of internal security & privacy policies, standards, procedures/guidance and governance program documents that allow Arctic Wolf to comply with several security/privacy frameworks, contractual obligations and regulatory requirements.
Facilitate security and privacy policy & standards lifecycle management.
Ensure approved security & privacy policies and standards are communicated to appropriate audiences and accounted for in various Standard Operating Procedures.
Lead and support Arctic Wolf’s internal and external audit/assessment activities
Lead and support Arctic Wolf’s internal Risk and Compliance program execution.
Mature and support Arctic Wolf’s Vendor Due Diligence Program execution.
Mature and support Arctic Wolf’s Customer Due Diligence Program execution.
On an as-needed basis, provide advisory services to other teams on applicability and implementing/maintaining compliance with the Privacy and Security policies and standards through the course of their business operations.
Administer and operate GRC toolset to automate processes and programs to gain efficiencies.
Provide Program level metrics & reporting for consumption by Senior & Executive management.
Who You Are
Strong project management skills to ensure accountability and results.
Ability to put into practice security & privacy frameworks & standards such as ISO 27001, SOC2, GDPR, IRAP, FedRAMP, StateRAMP, CMMC, PCI DSS and HIPAA.
Excellent written and verbal communication skills, especially translating between business and GRC/technical terminology.
Ability to work under pressure with multiple stakeholders.
Minimum Qualifications
5+ years of experience in a GRC lead/program management capacity within a technology/SaaS company.
Preferred Qualifications
A Bachelor’s Degree in Computer Science, Information Systems, Engineering, or related technical field; or equivalent experience.
Certifications such as CRISC, CISA, CISSP, CISM, etc. are considered preferentially.
About Arctic Wolf
At Arctic Wolf, we foster a collaborative and inclusive work environment that thrives on diversity of thought, background, and culture. This is reflected in our multiple awards, including Top Workplace USA (2021-2024), Best Places to Work – USA (2021-2024), Great Place to Work – Canada (2021-2024), Great Place to Work – UK (2024), and Kununu Top Company – Germany (2024). Our commitment to bold growth and shaping the future of security operations is matched by our dedication to customer satisfaction, with over 7,000 customers worldwide and more than 2,000 channel partners globally. As we continue to expand globally and enhance our technology, Arctic Wolf remains the most trusted name in the industry.
Our Values
Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion, and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that—by protecting people’s and organizations’ sensitive data and seeking to end cyber risk— we get to work in an industry that is fundamental to the greater good.
We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.
We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities.
All wolves receive compelling compensation and benefits packages, including:
Equity for all employees
Flexible time off and paid volunteer days
RRSP and 401k match
Training and career development programs
Comprehensive private benefits plan including medical, mental health, dental, disability, life and AD&D, and value-added services
Robust Employee Assistance Program (EAP) with mental health services
Fertility support and paid parental leave
Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire employee experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodations by emailing recruiting@arcticwolf.com.
Security Requirements
Conducts duties and responsibilities in accordance with AWN’s Information Security policies, standards, processes and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies).
Background checks are required for this position.
This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations (“EAR”). Please note that, if applicable, an offer for employment will be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: CISA CISM CISSP Cloud CMMC Compliance Computer Science CRISC FedRAMP GDPR Governance HIPAA ISO 27001 PCI DSS Privacy SaaS SOC 2
Perks/benefits: 401(k) matching Career development Equity / stock options Fertility benefits Flex hours Flex vacation Health care Medical leave Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.