Lead Analyst, Information Security (Risk and Governance)

RXO Inc.

United States

Hybrid

USD 120,000 - 180,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Comprehensive medical, dental, and vis
401(k) retirement plan with company
Pre-tax accounts
Disability and life insurance
Employee Assistance Program (EAP)
Career and Leadership Development
Paid time off and holidays

Job summary

RXO Inc. is seeking a Lead Analyst, Information Security - Risk Governance to strengthen our security program. You will own the end-to-end risk lifecycle, partnering with business and tech teams to identify, assess, and mitigate risks that could impact the organization.

Based at RXO headquarters in Charlotte, NC and operating on a 4-day onsite schedule with remote Fridays, you will drive governance reporting, risk treatments, and executive dashboards to enable risk-informed decisions.

Qualifications

  • Bachelor's degree or equivalent in a related field.
  • 6+ years of information security, risk management, governance, compliance, or audit experience.
  • Experience managing enterprise risk management processes and risk lifecycles.
  • Ability to translate technical concepts into business risk discussions.

Responsibilities

  • Own end-to-end information security risk lifecycle, including identification, assessment, analysis, mitigation, acceptance, monitoring, and closure.
  • Partner with business and technology teams to identify risks and ensure risk treatment plans are in place.
  • Serve as administrator for AuditBoard, managing risk intake, issues, reporting, and governance workflows.
  • Maintain documentation of risks, controls, mitigation activities, and exception processes for audits and leadership reviews.
  • Track remediation efforts and validate effectiveness of actions.

Skills

Analytical thinking
Communication skills
Cross-functional collaboration
Risk assessment
Business risk translation
Presentation skills

Education

Bachelor's degree in Cybersecurity, Information Systems, Risk Management, Business, Finance, or related field

Tools

AuditBoard
Microsoft O365

Job description

Accelerate your career at RXO

RXO is a leading provider of transportation solutions. With cutting-edge technology at the center, we're revolutionizing the industry with our massive network and commitment to finding solutions for every challenge. We create more efficient ways for shippers and carriers to transport goods across North America.

As a Lead Analyst, Information Security - Risk Governance

you will be responsible for helping strengthen our security and risk management framework. In this role, you'll lead the administration and execution of our information security risk governance program, partnering with business and technology teams to identify, assess, monitor, and mitigate risks that could impact the organization. You'll play a key role in driving risk-informed decision making, enhancing governance processes, and ensuring security risks are managed in alignment with business objectives and regulatory expectations.

Work Location & Schedule

This position is based at RXO headquarters located at 11215 N Community House Road, Charlotte, NC 28277 and follows a 4 day onsite work schedule Monday through Thursday, and work from home on Fridays!

What your day-to-day will look like:
  • Own and manage the end-to-end information security risk lifecycle, including risk identification, assessment, analysis, mitigation planning, acceptance, monitoring, and closure.
  • Partner with business leaders, technology teams, security engineering, and operational stakeholders to identify and evaluate risks and ensure appropriate risk treatment plans are in place.
  • Serve as the primary administrator and subject matter expert for AuditBoard, managing risk intake, issue tracking, risk reporting, and governance workflows.
  • Maintain accurate and thorough documentation of risks, controls, mitigation activities, and exception processes to support audits, regulatory inquiries, and leadership reviews.
  • Track remediation efforts and validate the effectiveness of corrective actions and risk treatment plans.
  • Conduct and support periodic risk assessments and control reviews across key risk domains, including cloud security, identity and access management, third-party risk, artificial intelligence, and emerging threats.
  • Develop dashboards, metrics, executive summaries, and governance reporting to communicate risk posture and trends to senior leadership.
  • Translate complex technical risks into clear business impacts and recommendations for non-technical stakeholders.
  • Drive continuous improvement initiatives related to risk governance processes, reporting, and technology platforms.
  • Ensure alignment with internal policies, industry frameworks, and best practices, including NIST, ISO, COSO, and related standards.
  • Mentor and provide guidance to junior team members while contributing to the overall maturity of the Governance, Risk, and Compliance (GRC) program.
What you’ll need to excel:
  • At a minimum, you'll need: Bachelor's degree in Cybersecurity, Information Systems, Risk Management, Business, Finance, or a related field, or equivalent combination of education and experience.
  • 6+ years of experience in information security, risk management, governance, compliance, audit, or a related discipline.
  • Experience managing and facilitating enterprise risk management processes and risk lifecycle activities.
  • Strong analytical and problem-solving skills with the ability to assess and communicate risk effectively.
  • Experience partnering with cross-functional stakeholders and influencing decisions in a matrixed environment.
  • Ability to translate technical concepts into business-focused risk discussions and recommendations.
  • Strong written, verbal, and presentation skills.
  • Experience with Microsoft O365 applications.
It’d be great if you also have:
  • Experience supporting or leading information security risk programs within a large, complex enterprise environment.
  • Hands-on experience with AuditBoard or a comparable GRC platform.
  • Knowledge of information security frameworks and standards, such as NIST, ISO 27001, COSO, or similar.
  • Experience developing executive-level risk reporting, dashboards, and governance metrics.
  • Familiarity with transportation, logistics, supply chain, or other highly regulated industries.
  • Relevant certifications such as CRISC, CISA, CISSP, CGRC, or similar.
Does this sound like you? Check out what else RXO has to offer.
Why Join Us:
Our Benefits
  • Comprehensive medical, dental, and vision plans
  • 401(k) retirement plan with up to 5% company match
  • Pre-tax accounts to help streamline eligible expenses
  • Company-paid disability and life insurance
  • Employee Assistance Program (EAP)
  • Career and Leadership Development Programs
  • Paid time off, company holidays, and volunteer days
Our Culture

Our values are the key to our unique culture and our ability to deliver for everyone we serve. We do great things when we are inclusive and work together. To perform with excellence, we learn from one another, value diverse perspectives, operate safely and

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Analyst, Information Security (Risk and Governance)
Lead Analyst, Information Security (Risk and Governance)

RXO Inc. • Charlotte (NC)

On-site
USD 110,000 - 140,000
Medical, dental, and vision plans
401(k) retirement plan with company 5%
Employee Assistance Program (EAP)
+2
Lead Analyst, Information Security (Risk and Governance)
Lead Analyst, Information Security (Risk and Governance)

RXO • Charlotte (NC)

Hybrid
USD 120,000 - 170,000
Medical, dental, and vision plans
401(k) with company match
Lead Engineer, Information Security (Application Security)
Lead Engineer, Information Security (Application Security)

RXO • Charlotte (NC)

Hybrid
USD 140,000 - 190,000
Health plans
401(k)
Pre-tax accounts
+4
Senior Auditor
Senior Auditor

RXO, Inc. • Charlotte (NC)

Hybrid
USD 75,000 - 105,000
Comprehensive medical, dental, and eye
401(k) with company match
Pre-tax accounts
+4
Lead Engineer, Information Security (Application Security)
Lead Engineer, Information Security (Application Security)

Web: • Charlotte (NC)

Hybrid
USD 150,000 - 200,000
Medical benefits
Dental & Vision
401(k) match
+4
Senior Analyst, External Reporting
Senior Analyst, External Reporting

RXO, Inc. • Town of Charlotte (NY)

On-site
USD 90,000 - 115,000
Comprehensive medical, dental, and vis
401(k) retirement plan with up to 5%公司
Pre-tax accounts
+4
Analyst, Sales Analysis
Analyst, Sales Analysis

RXO Inc. • Charlotte (NC)

Hybrid
USD 70,000 - 90,000
Medical, dental, vision
401(k) plan
PTO & holidays
+1
HR Business Partner
HR Business Partner

rxo • Charlotte (NC)

Hybrid
USD 90,000 - 130,000
Analyst, Customer Accounts
Analyst, Customer Accounts

RXO • Marietta (GA)

On-site
USD 55,000 - 75,000
Medical, dental, and vision plans
401(k) with up to 5% company match
Paid time off and holidays
+1
Senior Analyst, Internal Audit
Senior Analyst, Internal Audit

RXO, Inc. • Town of Charlotte (NY)

On-site
USD 65,000 - 95,000
Medical, dental, vision plans
401(k) with company match
Pre-tax accounts
+4