Information Security Governance Risk and Compliance Analyst Number of Positions: 1 Location: Okemos, MI Location Specifics: Hybrid Position Job Summary: At Delta Dental of Michigan, Ohio, and Indiana ...
Information Security Governance Risk and Compliance Analyst Number of Positions: 1 Location: Okemos, MI Location Specifics: Hybrid Position Job Summary: At Delta Dental of Michigan, Ohio, and Indiana ...
Lancing MI 48909 Duration: 12 Months Job Opportunity:- The role focuses on maintaining and enhancing the Web-based Governance, Risk, and Compliance (GRC) tool, Navex IRM (formerly Keylight)
Lancing MI 48909 Duration: 12 Months Job Opportunity:- The role focuses on maintaining and enhancing the Web-based Governance, Risk, and Compliance (GRC) tool, Navex IRM (formerly Keylight)
Demonstrate familiarity with Governance, Risk, and Compliance (GRC) software-preferably ServiceNow ... Acts as a trusted subject-matter contributor rather than an entry-level support role. Privacy by ...
Demonstrate familiarity with Governance, Risk, and Compliance (GRC) software-preferably ServiceNow ... Acts as a trusted subject-matter contributor rather than an entry-level support role. Privacy by ...
Supply Chain Manager
Lake Orion, MI · On-site
Inform Governance, Risk & Compliance (GRC) Coordinator/GRC Owner of any risk greater than 50k Euro. * Follows the Export Control procedures. * Be hands on * Perform other duties as assigned.
Supply Chain Manager
Lake Orion, MI · On-site
Inform Governance, Risk & Compliance (GRC) Coordinator/GRC Owner of any risk greater than 50k Euro. * Follows the Export Control procedures. * Be hands on * Perform other duties as assigned.
Cyber Risk Senior Associate
Detroit, MI · On-site
$55 - $60/hr
... governance, risk assessments, technical testing, and technology implementation/operations for the ... compliance requirements. • Support the execution of cybersecurity threat and risk assessments ...
Quick apply
Cyber Risk Senior Associate
Detroit, MI · On-site
$55 - $60/hr
... governance, risk assessments, technical testing, and technology implementation/operations for the ... compliance requirements. • Support the execution of cybersecurity threat and risk assessments ...
Quantify the risk and ROI of remediation. Deliver a prioritized governance backlog. * Phase 2 -- ... Microsoft Compliance Manager assessment selection, improvement-action plan, and executive reporting ...
Quick apply
Quantify the risk and ROI of remediation. Deliver a prioritized governance backlog. * Phase 2 -- ... Microsoft Compliance Manager assessment selection, improvement-action plan, and executive reporting ...
Quantify the risk and ROI of remediation. Deliver a prioritized governance backlog. * Phase 2 - ... Microsoft Compliance Manager assessment selection, improvement-action plan, and executive reporting ...
Quantify the risk and ROI of remediation. Deliver a prioritized governance backlog. * Phase 2 - ... Microsoft Compliance Manager assessment selection, improvement-action plan, and executive reporting ...
Quantify the risk and ROI of remediation. Deliver a prioritized governance backlog. * Phase 2 - ... Microsoft Compliance Manager assessment selection, improvement-action plan, and executive reporting ...
Quantify the risk and ROI of remediation. Deliver a prioritized governance backlog. * Phase 2 - ... Microsoft Compliance Manager assessment selection, improvement-action plan, and executive reporting ...
Third-Party Risk Analyst
Mason, MI · On-site +1
Prepare summaries and basic reports for governance or management review. * Assist in tracking ... Supports the third party life cycle processes ensuring compliance across the association * Some ...
Third-Party Risk Analyst
Mason, MI · On-site +1
Prepare summaries and basic reports for governance or management review. * Assist in tracking ... Supports the third party life cycle processes ensuring compliance across the association * Some ...
Prepare summaries and basic reports for governance or management review. * Assist in tracking ... Supports the third party life cycle processes ensuring compliance across the association * Some ...
Prepare summaries and basic reports for governance or management review. * Assist in tracking ... Supports the third party life cycle processes ensuring compliance across the association * Some ...
... governance, risk and compliance. The Lead to Revenue (L2R) team, within Oracle consulting, will ... PwC does not intend to hire experienced or entry level job seekers who will need, now or in the ...
... governance, risk and compliance. The Lead to Revenue (L2R) team, within Oracle consulting, will ... PwC does not intend to hire experienced or entry level job seekers who will need, now or in the ...
... governance, risk and compliance. The Lead to Revenue (L2R) team, within Oracle consulting, will ... PwC does not intend to hire experienced or entry level job seekers who will need, now or in the ...
... governance, risk and compliance. The Lead to Revenue (L2R) team, within Oracle consulting, will ... PwC does not intend to hire experienced or entry level job seekers who will need, now or in the ...
IT Security Specialist
Pontiac, MI · On-site
Governance, Risk, and Compliance (GRC) * Cloud and hosted applications * Containerization * Application security * Network security and Zero Trust Architecture (ZTNA/NetSec) * Endpoint security and ...
IT Security Specialist
Pontiac, MI · On-site
Governance, Risk, and Compliance (GRC) * Cloud and hosted applications * Containerization * Application security * Network security and Zero Trust Architecture (ZTNA/NetSec) * Endpoint security and ...
IT Security Specialist
Pontiac, MI · On-site
... Governance, Risk, and Compliance (GRC) o Cloud and hosted applications o Containerization o Application security o Network security and Zero Trust Architecture (ZTNA/NetSec) o Endpoint security and ...
IT Security Specialist
Pontiac, MI · On-site
... Governance, Risk, and Compliance (GRC) o Cloud and hosted applications o Containerization o Application security o Network security and Zero Trust Architecture (ZTNA/NetSec) o Endpoint security and ...
Governance, Risk, and Compliance (GRC) * Cloud and hosted applications * Containerization o Application security * Network security and Zero Trust Architecture (ZTNA/NetSec) * Endpoint security and ...
Quick apply
Governance, Risk, and Compliance (GRC) * Cloud and hosted applications * Containerization o Application security * Network security and Zero Trust Architecture (ZTNA/NetSec) * Endpoint security and ...
Power Platform Developer
Brighton, MI · On-site
Drives outcomes through influence: business leaders, risk/compliance, IT/security, operations ... Exposure to Power Platform governance, environments, or Dataverse preferred. * Understanding audit ...
Power Platform Developer
Brighton, MI · On-site
Drives outcomes through influence: business leaders, risk/compliance, IT/security, operations ... Exposure to Power Platform governance, environments, or Dataverse preferred. * Understanding audit ...
Power Platform Developer
Brighton, MI · On-site
Drives outcomes through influence: business leaders, risk/compliance, IT/security, operations ... Exposure to Power Platform governance, environments, or Dataverse preferred. * Understanding audit ...
Power Platform Developer
Brighton, MI · On-site
Drives outcomes through influence: business leaders, risk/compliance, IT/security, operations ... Exposure to Power Platform governance, environments, or Dataverse preferred. * Understanding audit ...
IT Security Specialist
Pontiac, MI · On-site
Governance, Risk, and Compliance (GRC) * Cloud and hosted applications o Containerization * Application security * Network security and Zero Trust Architecture (ZTNA/NetSec) * Endpoint security and ...
IT Security Specialist
Pontiac, MI · On-site
Governance, Risk, and Compliance (GRC) * Cloud and hosted applications o Containerization * Application security * Network security and Zero Trust Architecture (ZTNA/NetSec) * Endpoint security and ...
... risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification ...
New
... risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification ...
New
IT Security Specialist
Pontiac, MI · On-site
Governance, Risk, and Compliance (GRC) * Cloud and hosted applications o Containerization * Application security * Network security and Zero Trust Architecture (ZTNA/NetSec) * Endpoint security and ...
IT Security Specialist
Pontiac, MI · On-site
Governance, Risk, and Compliance (GRC) * Cloud and hosted applications o Containerization * Application security * Network security and Zero Trust Architecture (ZTNA/NetSec) * Endpoint security and ...
Entrylevel Governance Risk Compliance information
What is the difference between Entrylevel Governance Risk Compliance vs Entrylevel Internal Auditor?
| Aspect | Entrylevel Governance Risk Compliance | Entrylevel Internal Auditor |
|---|---|---|
| Certifications | ISO 31000, CCPA, GDPR awareness | CPA, CIA, CISA |
| Work Environment | Corporate compliance departments, risk management teams | Internal audit departments, consulting firms |
| Employer & Industry Usage | Financial, healthcare, manufacturing | Financial services, government, consulting |
While both roles focus on organizational integrity, Entrylevel Governance Risk Compliance professionals primarily ensure adherence to regulations and manage risks, whereas Entrylevel Internal Auditors evaluate internal controls and financial accuracy. The GRC role emphasizes compliance frameworks and risk mitigation, while Internal Auditors focus on audit processes and financial integrity.
Information Security Governance Risk and Compliance Analyst
Okemos, MI • Hybrid
Full-time
Medical, Dental
Posted 3 hours ago
Job description
Job Title:
Information Security Governance Risk and Compliance AnalystNumber of Positions:
1Location:
Okemos, MILocation Specifics:
Hybrid PositionJob Summary:
At Delta Dental of Michigan, Ohio, and Indiana we work to improve oral health through benefit plans, advocacy and community support, and we amplify this mission by investing in initiatives that build healthy, smart, vibrant communities. We are one of the largest dental plan administrators in the country, and are part of the Delta Dental Plans Association, which operates two of the largest dental networks in the nation.
At Delta Dental, we celebrate our All In culture. It's a mindset, feeling and attitude we wrap around all that we do - from taking charge of our careers, to helping colleagues and lending a hand in the community.
Position Description
Facilitates the timely completion of internal and external systems audits and assessments on behalf of Delta Dental of Michigan and its affiliates. This position will also help with the dailyGRC operations.
Primary Job Responsibilities:
Partner across ISS teams, departments, and affiliates to interpret technical requirements and map compliance requirements to control implementation, and maintains an understanding across our products of all current and emerging technologies, open system standards, and management technologies as they relate to the support of our business needs.
Evaluates vendor architectures, data flows, control evidence (SOC reports, pen tests, SIG), and confirming risk treatment for vendor access to sensitive data to support TPRM.
Drives the completion of third-party audits and helps enable company compliance with customer technical requirements, industry standards, and regulatory requirements. Examples include SOC, HITRUST, HIPAA, CMMC, FedRAMP, GovRAMP, NIST, and PCI.
Assist with customer and regulatory risk assessments, audits, attestations, and other security information requests.
Partner closely on security operations tasks with cross-functional teammates in IT, DevOps, Engineering, and Test.
Facilitate technical, operational,and regulatory outcomes across our client portfolio, including continuous monitoring and compliance audits.
Monitor and analyze security risks and metrics to identify trends, correlations, and variances and recommends improvements as needed.
Administers the enterprise GRC platform, including control libraries, evidence workflows, and reporting.
Maintains executive-level reports that provide visibility into key cybersecurity metrics and KPIs.
Facilitates automation for compliance controls, evidence collection, and compliance artifact generation using Sharepoint and Power Automate.
Documents gaps in POA&Ms with root cause, technical remediation steps, measurable milestones, and validation criteria; tracks remediation to closure and re-test control effectiveness.
Analyzes data flow diagrams (DFDs), network diagrams, and solution architectures to confirm trust boundaries, data classifications, encryption paths, and control placement across system components.
Perform other related assigned duties as necessary to complete the Primary Job Responsibilities as described above.
#LI-Hybrid
Minimum Requirements:
Position requires a bachelor's degree in information technology or related field and three years' experience in information technology with compliance and security standards and frameworks, including: GDPR, HIPAA, PCI DSS, CIS Benchmarks and NIST frameworks. CCSP, CISSP, CISA, GCSA, GCPN, GPEN, or similar certifications are preferred. Will accept any suitable combination of education, training, and experience.
Position requires demonstrated technical experience implementing and assessing information security and privacy controls aligned with GDPR, HIPAA, PCI DSS, CIS Benchmarks, and NIST frameworks (e.g., NIST SP 80053, 800171);handson experience in one or more enterprise IT domains, including operating systems, cloud and virtualized platforms, network security, identity and access management, logging and monitoring, or vulnerability management; knowledge of information security principles and practices, GRC solutions, intrusion detection systems, installation, configuration, monitoring and response to security systems, advanced security protocols and standards, software and security architectures, risk management, control techniques and frameworks, planning and project management, regulations, and laws; ability to lead teams; ability to collect and analyze complex data; use data extraction and analysis tools; ability to use active listening skills; and effective verbal and written communication
The company will provide equal employment and advancement opportunity within the context of its unique business environment without regard to race, color, religion, gender, gender identity, gender expression, age, national origin, familial status, citizenship, genetic information, disability, sex, sexual orientation, marital status, pregnancy, height, weight, military status, or any other status protected under federal, state, or local law or ordinance.
About Delta Dental of Michigan
Sourced by ZipRecruiter
Industry
Insurance services
Company size
501 - 1,000 Employees
Headquarters location
Okemos, MI, US
Year founded
1957