Senior GRC InfoSec Lead: Audits, Risk & Compliance

Dorsey & Whitney LLP

Minneapolis (MN)

On-site

USD 115,000 - 155,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Dorsey & Whitney LLP is seeking a Senior GRC Information Security Systems Analyst to lead client and pre-contract security assessments and ISMS audits. You will maintain policies aligned to ISO 27001 and other frameworks, oversee NetDocuments access reviews, and partner with stakeholders to deliver cybersecurity consulting projects.

The role involves validating RBAC, entitlement processes, and DLP controls to meet client, ISO, and regulatory requirements, driving risk assessments and audit

Qualifications

  • Bachelor's Degree or equivalent in Business, Computer Science or equivalent experience.
  • 7+ years in information security roles with three or more frameworks (ISO 27001, SOC 2, GDPR, NIST CSF or NIST 800-53).
  • Experience implementing or maintaining ISMS aligned to frameworks like ISO 27001 or SOC 2.
  • Experience with information security policies, controls, standards and procedures across frameworks.
  • Experience delivering audit (re)certification, authorization, and risk assessments for client environments.
  • Hands-on IAM enhancements in hybrid environments (RBAC, least privilege, privileged access reduction).
  • Experience with Data Loss Prevention (DLP) and human risk programs.

Responsibilities

  • Support maintenance of Information Security documentation and respond to organizational changes.
  • Provide program reporting and dashboards for security committees.
  • Coordinate internal ISMS audits and management reviews.
  • Conduct risk assessments and collaborate with assessors and auditors for external surveillance.
  • Advise on Compliance requirements and Information Security Controls.
  • Automate and monitor compliance-related information security controls and exceptions.
  • Organize annual ISMS operation and internal audits.
  • Maintain and update policy documentation and the Statement of Applicability.
  • Complete client pre- and post-contract security controls and risk reviews.

Skills

ISMS management
Security risk assessments
Audit coordination
IAM enhancements
RBAC and entitlement

Education

Bachelor's degree or equivalent

Tools

NetDocuments
ndMax AI chatbot

Job description

Dorsey & Whitney LLP is seeking a Senior GRC Information Security Systems Analyst to lead client and pre-contract security assessments and ISMS audits. You will maintain policies aligned to ISO 27001 and other frameworks, oversee NetDocuments access reviews, and partner with stakeholders to deliver cybersecurity consulting projects.

The role involves validating RBAC, entitlement processes, and DLP controls to meet client, ISO, and regulatory requirements, driving risk assessments and audit

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior GRC & InfoSec Systems Lead
Senior GRC & InfoSec Systems Lead

Dorsey & Whitney LLP • Salt Lake City (UT)

On-site
USD 120,000 - 170,000
Senior GRC & InfoSec Lead: Audits & Compliance
Senior GRC & InfoSec Lead: Audits & Compliance

Dorsey & Whitney LLP • Denver (CO)

On-site
USD 110,000 - 170,000
Senior GRC & Information Security Lead
Senior GRC & Information Security Lead

Dorsey & Whitney LLP • Phoenix (AZ)

On-site
USD 140,000 - 180,000
Health benefits
Paid time off
Parental leave
Senior GRC & InfoSec Systems Analyst
Senior GRC & InfoSec Systems Analyst

Dorsey & Whitney LLP • Denver (CO)

On-site
USD 120,000 - 180,000
Senior GRC & InfoSec Systems Specialist
Senior GRC & InfoSec Systems Specialist

Dorsey & Whitney LLP • Washington

On-site
USD 130,000 - 195,000
Medical insurance
401(k) plan
Parental leave
Senior GRC & InfoSec Systems Analyst – Audit & Compliance
Senior GRC & InfoSec Systems Analyst – Audit & Compliance

Dorsey & Whitney LLP • New York (NY)

On-site
USD 120,000 - 180,000
Medical Insurance
Paid time off
Parental Leave
Senior GRC & InfoSec Systems Analyst
Senior GRC & InfoSec Systems Analyst

Dorsey & Whitney LLP • Wilmington (DE)

On-site
USD 114,000 - 150,000
Senior GRC & Information Security Systems Analyst
Senior GRC & Information Security Systems Analyst

Dorsey & Whitney LLP • Costa Mesa (CA)

On-site
USD 120,000 - 180,000
Senior GRC & ISMS Security Analyst
Senior GRC & ISMS Security Analyst

Dorsey & Whitney LLP • Minneapolis (MN)

On-site
USD 120,000 - 180,000
Senior GRC & ISMS Security Analyst
Senior GRC & ISMS Security Analyst

Dorsey & Whitney LLP • Salt Lake City (UT)

On-site
USD 120,000 - 180,000