Senior GRC Analyst-Risk Management-San Antonio, TX Job at H-E-B, San Antonio, TX

bURXYnd4eTVYTXdWSzV5b00rZCtPcjBt
  • H-E-B
  • San Antonio, TX

Job Description

Responsibilities H-E-B is a leading innovator in technology, and recently we've been investing in our customers' digital experience. Our Digital Technology Partners collaborate to design, construct, implement, and support technology solutions, using the best available technologies to deliver modern engagement, reliability, and scalability to meet customer needs. As a Senior Governance, Risk, & Compliance (GRC) Analyst, you'll assess and document H-E-B information asset compliance and risk posture. You'll also coach and mentor. Once you're eligible, you'll become an Owner in the company, so we're looking for commitment, hard work, and focus on quality and Customer service. 'Partner-owned' means our most important resources--People--drive the innovation, growth, and success that make H-E-B The Greatest Omnichannel Retailing Company. Do you have a: HEART FOR PEOPLE... strong interpersonal skills? HEAD FOR BUSINESS... ability to stay current on technology trends? PASSION FOR RESULTS... drive to develop / implement risk management? What is the work? Analytics / Information Technology / Auditing:

  • Contributes to development / continuous improvement of H-E-B security program goals and objectives.
  • Leads development / implementation of system-wide risk management function to ensure information security risks are identified / monitored.
  • Serves as SME and advisor to help manage risk at an acceptable level.
  • Collaborates to define information security policies, standards, and procedures, and to ensure controls are adequate, appropriate, and effective.
  • Establishes / maintains control objectives and procedures; maintains a risk register to identify / evaluate / prioritize / monitor risk findings to be reported to executive committee.
  • Performs internal risk assessments; validates effectiveness of security controls; recommends appropriate actions to mitigate risks; assesses / evaluates / makes recommendations related to adequacy of security controls.
  • Supports internal and external audit processes for related compliance requirements.
  • Supports vulnerability management efforts (e.g., remediation tracking, status reporting, enhancements)
  • Liaises with external auditors on regulatory assessments.
  • Stays current on developing regulatory concerns and changing IT and InfoSec trends.
  • Establishes / maintains robust reporting processes related to security topics.
  • May coach and mentor
What is your background?
  • A related degree or comparable formal training, certification, or work experience
  • 5+ years of experience in information security, IT risk management, or IT compliance
  • Extensive experience in IT systems, security policies, standards, industry trends, and techniques
  • Experience with secure network protocols and communications encryption between networked hosts
  • Experience working with hybrid cloud infrastructures.
  • Experience defining / delivering systems support strategy (business analysis, requirements gathering)
  • Experience in policy development and designing information security controls.
  • One or more professional security certifications (e.g., CISSP, CISA, CISM, CRISC)
Do you have what it takes to be an H-E-B Staff GRC Analyst?
  • Strong working knowledge of security i ssues for desktop, virtual, cloud services, and network infrastructures; of risk management methodologies, frameworks, principles (e.g., NIST, ISO 27001, ITIL, PCI, CCPA, SOC 2, etc.
  • Understanding of IT GRC / IRM platforms
  • Strong interpersonal and relationship-building skills
  • Strong communication and presentation skills
  • Strong problem-solving skills
  • Strong time management and prioritization skills; detail-oriented
  • Ability to quickly connect business requirements with GRC functional capabilities.
  • Ability to professionally handle confidential information.
  • Ability to meet deadlines and prioritize appropriately on concurrent projects.
  • Ability to analyze for potential future issues.
  • Ability to stay current on technology trends and quickly learn new technologies.
  • Ability to communicate and collaborate at all levels.
  • Ability to cope well with change and maintain composure under high-pressure situations.
  • Ability to articulate risk in terms of business impact and suggest reasonable strategies for mitigation.

JDSECURITY H-E-B

Job Tags

Work experience placement, Remote job,

Similar Jobs

RPG

MOV Technician Job at RPG

 ...exciting construction and maintenance projects in the industrial sector. We are currently hiring a skilled Motor Operated Valve Technician for multiple positions in the US. If you are a hardworking person who possesses the skills and ability to perform the job as outlined... 

EBizCharge

UX/UI Designer Job at EBizCharge

Headquartered in Irvine, California, EBizCharge specializes in developing payment processing applications that facilitate electronic payment processing within the workplace, enhance transaction security, and increase client profits. Our applications are PCI compliant and...

CMA Terminals Alaska

Safety & Compliance Officer Job at CMA Terminals Alaska

 ...This position is responsible for coordination and oversight of safety, health, and environmental policies and compliance for CMA Terminals...  ...responsible for working with the Health Safety & Environment Officer (HSEO) in NOR to ensure Alaska Operations are meeting... 

SNI Companies - Texas

Data Entry Clerk Job at SNI Companies - Texas

 ...insurance organization in the Southlake area that is seeking multiple Data Entry Clerks to join their team on a hybrid basis (with potential...  ...level opportunity for someone looking to gain additional experience in the Data Analytics sector! Responsibilities The ability... 

Trios Hospital

Registered Nurse (RN) - House Supervisor Job at Trios Hospital

Registered Nurse (RN) - House Supervisor at Trios Hospital summary: The Registered Nurse (RN) House Supervisor at Trios Health oversees hospital operations during shifts, acting as a liaison between staff, physicians, and other facilities. They ensure effective department...