Analyst, Information Security GRC

ICE

Atlanta (GA)

On-site

USD 90,000 - 120,000

Full time

18 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Intercontinental Exchange, Inc. is seeking an Analyst, Information Security GRC to support the global Information Security program. You will gain exposure to the full suite of ICE's businesses and products underpinning the company.

The role focuses on governance, risk, and compliance, developing security metrics, maintaining policies, and handling regulator and customer inquiries. A background in information security and strong written communication are essential.

Qualifications

  • Bachelor's degree or higher in Information Security, Engineering, MIS, CIS, or related field or equivalent experience.
  • Advanced certifications such as CISSP are preferred.
  • Experience with regulatory compliance and governance is a plus.

Responsibilities

  • Security Metrics – Produces regular reports on the Information Security program.
  • Policies and Procedures – Maintains corporate IS policies and maps to control standards.
  • Regulator, Audit, and Customer Inquiries – Responds to inquiries in an organized, repeatable fashion.
  • Recertification – Manages hire, transfer, termination protocol and access reviews.
  • Security Awareness – Builds and maintains security education programs.
  • Risk Assessment – Documents and reports risks, controls, findings, and remediation activity.

Skills

Security Metrics
Policies & Procedures
Regulator Inquiries
Recertification
Security Awareness
Risk Assessment

Education

CISSP or advanced certification
University degree in Information Security or related

Tools

NIST CSF
CIS
GRC Platforms
Excel

Job description

Job Purpose

The Analyst, Information Security GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.

Overview

The Analyst, Information Security GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.

Information Security (“IS”) Is Charged With
  • Preventing impactful cybersecurity and physical security incidents,
  • maintaining a reputation with customers, regulators, and key stakeholders as running a best-in-class cybersecurity and physical security program, and
  • avoiding negative impact to business agility and growth from cybersecurity and physical security policies and controls.

Governance, Risk, and Compliance maintain said policies, ensure controls are operating effectively via assessment and attestation, and own the vulnerability management program to identify and correct any problems within.

Responsibilities
  • Security Metrics – Uses automated and manual processes to produce regular reports communicating the status of the Information Security program
  • Policies and Procedures – Maintains corporate Information Security policies and departmental procedures and maps them to relevant control standards
  • Regulator, Audit, and Customer Inquiries – Organizes and updates departmental documentation and responds to inquiries in an organized and repeatable fashion
  • Recertification – Operates periodic processes to ensure hire, transfer, and termination protocols are complied with and regular access reviews are conducted
  • Security Awareness – Builds and maintains company awareness and education programs
  • Risk Assessment – Builds and operates the company platform to document, measure, and report assessments, risks, controls, findings, and remediation activity
Knowledge And Experience
  • University degree in Information Security, Engineering, MIS, CIS, or related discipline or equivalent years of experience required
  • Experience with Systems Administration and/or IP Networking is a plus
  • Experience with Regulatory Compliance is a plus
  • Experience in an exchange, trading facility, or financial services is a plus
  • Experience with senior management and board metrics generation and communication is a plus
  • Advanced certifications (for example, the CISSP)
  • Advanced technical writing and/or communication education and experience
Specific Technologies

Excel, Workflow automation tools, Data collection, normalization, indexing, correlation, and visualization. Scripting, regular expressions, string-parsing, light SDLC, and project management. NIST Cyber Security Framework, CIS, and GRC Platforms.

Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Analyst, Information Security GRC
Analyst, Information Security GRC

ICE • Jacksonville (FL)

On-site
USD 90,000 - 130,000
Analyst, Information Security GRC
Analyst, Information Security GRC

ICE • Provo (UT)

On-site
USD 85,000 - 115,000
Analyst, Information Security GRC
Analyst, Information Security GRC

ICE Clear Europe Limited • Northern (KY)

Hybrid
USD 90,000 - 130,000
Senior Engineer, Information Security GRC
Senior Engineer, Information Security GRC

ICE • Atlanta (GA)

On-site
USD 120,000 - 190,000
Engineer, Information Security GRC
Engineer, Information Security GRC

ICE • Jacksonville (FL)

On-site
USD 80,000 - 110,000
Senior Engineer, Information Security GRC
Senior Engineer, Information Security GRC

ICE Clear Europe Limited • Atlanta (GA)

On-site
USD 120,000 - 180,000
Senior Engineer, Information Security GRC
Senior Engineer, Information Security GRC

Intercontinental Exchange Holdings, Inc. • Atlanta (GA)

On-site
USD 120,000 - 180,000
InfoSec GRC Analyst - Risk, Policy & Compliance
InfoSec GRC Analyst - Risk, Policy & Compliance

ICE • Jacksonville (FL)

On-site
USD 90,000 - 130,000
InfoSec GRC Analyst — Risk, Policy & Compliance
InfoSec GRC Analyst — Risk, Policy & Compliance

ICE • Atlanta (GA)

On-site
USD 90,000 - 120,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000