Senior GRC Analyst
New York, NY, US
Full Time Senior-level / Expert USD 122K - 132K
Fitch Group
We have breadth and depth across our global team, allowing us to deliver value to our clients. We employ more than 5,000 people in 31 countries, including nearly 1,700 analysts.Fitch Group’s Information Security Governance, Risk, and Compliance (GRC) function is seeking a Senior GRC Analyst for our New York or Chicago office.
The Information Security GRC function provides a framework for managing security risks across Fitch’s technology estate, enabling both regulated and non-regulated business units to operate securely.
The successful candidate will play a critical role in supporting our SOC 2 assessments and other security engagements, ensuring our organization's compliance with industry standards and enhancing our overall security posture.
What We Offer:
- Opportunity to work in a high-visibility role within a leading global financial information services company.
- Exposure to a collaborative team environment with a focus on continuous learning and development.
- Competitive benefits package and opportunities for career advancement.
- Chance to contribute to meaningful projects that impact the organization’s security posture.
We’ll Count on You To:
- Conduct and manage SOC 2 assessments, including planning, execution, and reporting.
- Collaborate with internal teams to develop and maintain security controls aligning with regulatory requirements and organizational security posture.
- Prepare and coordinate documentation for audits and regulatory engagements.
- Identify and recommend enhancements for existing security controls to mitigate risks.
- Provide guidance to internal stakeholders on compliance with various frameworks.
What You Need to Have:
- Minimum of 3-5 years of experience in a GRC or similar role within an information security context, ideally within a regulated environment
- Strong understanding of SOC2 Trust Services Criteria.
- Familiarity with regulatory frameworks such as SOX, Dodd-Frank, and DORA.
- Excellent communication and interpersonal skills.
- Relevant certifications such as CISA, CISM, or CISSP.
What Would Make You Stand Out:
- Familiarity with NIST CSF or ISO27001.
- Critical thinking ability with strong analytical and problem-solving skills.
- Ability to work independently and as part of a team.
- Experience of Atlassian suite (particularly Jira), SharePoint, MetricStream, and strong Excel.
Why Fitch?
At Fitch Group, the combined power of our global perspectives is what differentiates us. Our global network of colleagues comes together to accomplish things greater than they ever could alone.
Every team member is essential to our business and each perspective is critical to our success. We embrace a diverse culture that encourages a free exchange of ideas, guaranteeing your voice will be heard and your work will have an impact, regardless of seniority.
We are building incredible things at Fitch and we invite you to join us on our journey.
Fitch Group is a global leader in financial information services with operations in more than 30 countries. Wholly owned by the Hearst Corporation, we are comprised of three main businesses: Fitch Ratings | Fitch Solutions | Fitch Learning.
For more information, please visit our websites:
www.fitchratings.com | www.fitchsolutions.com | www.fitchlearning.com
Fitch is committed to providing global securities markets with objective, timely, independent and forward-looking credit opinions. To protect Fitch’s credibility and reputation, our employees must take every precaution to avoid conflicts of interests or any appearance of a conflict of interest. Should you be successful in the recruitment process at Fitch Ratings you will be asked to declare any securities holdings and other potential conflicts prior to commencing employment. If you, or your immediate family, have any holdings that may conflict with your work responsibilities, you may be asked to divest yourself of them before beginning work.
Fitch Group is proud to be an Equal Opportunity and Affirmative Action Employer. We evaluate qualified applicants without regard to race, color, national origin, religion, sex, sexual orientation, gender identity, disability, protected veteran status, and other statuses protected by law.
FOR NEW YORK AND CHICAGO ROLES ONLY: Expected base pay rates for the role will be between $122,000 and $132,000 per year. Actual salaries will be determined on an individualized basis and may vary based on factors including but not limited to education, training, experience, past performance, and other job-related factors. Base pay is one part of Fitch’s total compensation package, which, depending on the position, may also include commission earnings, discretionary bonuses, long-term incentives, and other benefits sponsored by Fitch.
#LI-EW1
#LI-Hybrid
#LI-Group
Tags: Audits CISA CISM CISSP Compliance Governance ISO 27001 Jira NIST SharePoint SOC SOC 2 SOX
Perks/benefits: Career development Competitive pay
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.