Senior Information Security Analyst

Socket.dev

Boston (MA)

Hybrid

USD 95,000 - 120,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Group health insurance
401(k) with employer contribution
Annual well-being stipend
Life & disability insurance

Job summary

Great Gray Group is seeking a Senior Information Security Analyst to join our Information Security Team in a hybrid setup serving IT governance, risk assessment, and security compliance. The role emphasizes ISMS policy support, documentation, and enforcement of SOC2, CIS18, and NIST CSF controls.

The ideal candidate has 5+ years in audit/compliance, strong IT security knowledge, and excellent communication skills to partner with leadership.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • 5+ years of audit, compliance, or technical experience.
  • Excellent knowledge of IT security control trends and auditing best practices.
  • Effective communication skills to articulate IT controls and compliance to leadership.
  • Relevant training or industry certifications in auditing, compliance, or IT security.

Responsibilities

  • Provide IT governance, risk assessment, and security awareness.
  • Coordinate internal auditing and evidence collection for PCI/SOX and SOC2 controls.
  • Assess vendor risk and onboarding processes.
  • Conduct BIA and SDR for sensitive data.
  • Review URM and PAM for critical applications.
  • Support design and implementation of technical control requirements.
  • Identify improvements to controls and processes for efficiency.
  • Collaborate with control owners and admins to ensure operability.
  • Review IT systems/tools for proper controls incorporation.
  • Report test findings and help remediate IT control gaps.
  • Update IT documentation to reflect current controls.

Skills

IT security
Audit & compliance
Communication
Quality mindset
multitasking

Education

Bachelor’s degree in CS/Cybersecurity/IT

Job description

Why Great Gray?

At Great Gray Group, we strive to set the bar for the retirement services industry. Our goal is to deliver advanced retirement solutions that combine our core fiduciary services with robust investment options, innovative technology, and dedicated client service. We focus on making choices clearer, transitions smoother, and the client experience more delightful. Complacency isn't in our vocabulary. Every day, we look for opportunities to better serve our clients, be an excellent business partner, and earn the trust of those who rely on us.

The Role

Great Gray is looking to add a Senior Information Security Analyst on our Information Security Team. The role will support IT governance, risk assessment, and security compliance functions and will be involved in monitoring and maintaining elements of overall IT governance, enterprise risk management and compliance with regulations and control frameworks such as SOC2, CIS18, and NIST CSF. The analyst will focus on facilitating the review, development, implementation, and documentation supporting the ISMS policies, processes, procedures, and practices.

Location

This position will work from our Boston, MA or Wilmington, DE offices. Great Gray currently supports a hybrid work model with 4 days onsite, and 1 day remote.

Visa sponsorship or transfer of an existing visa is not available for this position. Applicants must be authorized to work directly for any employer in the United States without visa sponsorship or transfer.

Responsibilities
  • IT governance & oversight, risk assessment, and security awareness.
  • Internal auditing & evidence collection for IT controls compliance (PCI, SOX) and cybersecurity ISMS frameworks (SOC2)
  • Vendor Risk Management assessment, onboarding, and reviews.
  • Business Impact Analysis (BIA), and Sensitive Data Reviews (SDR).
  • User Rights Management (URM) and Privileged Access Management (PAM) reviews for critical applications.
  • Provide support in the assessment, design, and implementation of technical control requirements.
  • Identify and recommend changes to improve efficiency and the effectiveness of key technical controls and processes.
  • Work with control owners and system administrators to ensure quality, consistency, and operability of new and existing controls.
  • Support the review of IT systems and tools to ensure the inclusion of appropriate controls and processes.
  • Review test findings, support the remediation of IT control gaps, and elevate potential issues to management, where necessary.
  • Validate and update IT documentation as needed to ensure processes, policies and controls are accurate.
  • Complete other related duties as assigned
Qualifications & Experience
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • 5+ years of audit, compliance, or technical experience.
  • Excellent knowledge of IT security control trends as well as auditing & compliance best practices.
  • Effective communication skills (written and verbal) to properly articulate complicated IT controls and compliance issues to leadership and partners.
  • Positive attitude and a strong commitment to delivering quality work.
  • Relevant training and/or industry certifications in auditing, compliance, or IT security.
  • Ability to thrive in a fast-paced, dynamic environment and manage multiple priorities effectively.
  • Comfortable navigating ambiguity.
  • Entrepreneurial mindset to bring best practice ideas to the team.
  • Your standards reflect our core values: Growth Mindset, Disciplined Curiosity, Grit, Results Ownership, Collaboration.
Base Pay Range*

$95,000-$120,000

*This base pay range is subject to change and may be modified in the future.

The pay range displayed above is the base pay compensation range that Great Gray expects to pay for this position at the time of this posting. Individual compensation within this range, or that may warrant a provision for pay beyond this range, depends on multiple factors, including, but not limited to, candidate’s prior education and relevant work experience and training as well as position location and local market demands. Our pay-for-performance culture also includes participation in an annual incentive bonus plan for this position which is not included in the ‘Base Pay Range’ noted above.

Benefits

We have a comprehensive and competitive benefits package at Great Gray. Some of the highlights are:

  • Be an integral part of a high-growth organization!
  • Competitive compensation package
  • Group medical, dental and vision insurance
  • Employer-paid life and disability insurance
  • Annual well-being stipend
  • Eligible employees may also contribute to a 401(k) plan with an advantageous employer contribution model, upholding our mission to support our employees in retirement
Company Background

Great Gray is the leading independent provider of trustee and administrative services to Collective Investment Trusts (“CITs”), with over $370 billion in CIT assets under management, across more than 1,020 funds. We proudly work with more than 80 subadvisors, including leading firms such as AllianceBernstein, American Funds, BlackRock, Franklin Templeton, MetLife, Neuberger Berman, PGIM, PIMCO and Raymond James.

CITs are more than just an investment vehicle.They represent a forward-thinking approach to retirement planning. These tax-exempt, pooled investment vehicles are offered to employer-sponsored retirement plans, like 401(k)s. CITs are comparable to mutual funds, but, because they are tailored for the institutional retirement market, they can offer distinct advantages, including efficient administration and cost-effectiveness. CITs have a history dating back over 90 years; but they have gained favor over the past decade, driven by innovations, and Great Gray has been at the forefront.

Great Gray has consistently delivered year-over-year growth at an above market rate and is investing in the continued development of its core CIT business as well as complementary administrative services and technology solutions for the retirement market.

Madison Dearborn Partners (“MDP”) purchased Great Gray from Wilmington Trust in April 2023.As a result, Great Gray is an independent company owned by funds affiliated with MDP.

Investor Background

MDP is a leading private equity investment firm based in Chicago. Since MDP's formation in 1992, the firm has raised aggregate capital of over $37 billion and has completed over 160 platform investments across nine flagship funds. MDP invests across five dedicated industry verticals, including financial services, healthcare, technology and government services.

Equal Employment Opportunity Policy

Great Gray Group, LLC is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, disability status or other non-merit factor.

Accommodation Statement

Great Gray is committed to ensuring individuals with disabilities and/or those whohave special needs participate in the workforce and are afforded equal opportunity to apply and compete for jobs. If you would like to contact us regarding the accessibility of our website, need assistance completing the application process, or need to request an accommodation for any part of our application or interview process, please contact us at: TalentAcquisition@GreatGray.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Analyst
Senior Information Security Analyst

Great Gray • Boston (MA)

Hybrid
USD 95,000 - 120,000
Medical, dental and vision insurance
Employer-paid life and disability ins.
Annual well-being stipend
+1
Service Desk Technician
Service Desk Technician

Great Gray • Boston (MA)

Hybrid
USD 65,000 - 90,000
Group medical, dental and vision
Employer-paid life and disability
Annual well-being stipend
+1
Senior Investment Analyst (CFA Required)
Senior Investment Analyst (CFA Required)

Great Gray Trust Company • Boston (MA)

Hybrid
USD 100,000 - 130,000
Be part of high-growth firm
Competitive benefits
401(k) plan with employer contribution
Director, Strategic Implementations
Director, Strategic Implementations

Great Gray • Boston (MA)

Hybrid
USD 170,000 - 200,000
High-growth company
Competitive pay
Medical, dental, vision insurance
+3
Senior Product Manager
Senior Product Manager

Great Gray Group. • Boston (MA), Northern (KY)

Hybrid
USD 150,000 - 180,000
Be an integral part of a high-growth;
Competitive compensation package
Group medical, dental and vision
+3
Director, Strategic Implementations
Director, Strategic Implementations

Great Gray Group. • Boston (MA), Northern (KY)

Hybrid
USD 170,000 - 200,000
Medical, dental & vision insurance
Life and disability insurance
Annual well-being stipend
+1
Institutional Relationship Manager
Institutional Relationship Manager

Great Gray Group • Boston (MA)

Hybrid
USD 150,000 - 200,000
Medical Insurance
Dental Insurance
Vision Insurance
+3
Director, Strategic Implementations
Director, Strategic Implementations

Great Gray Trust Company • Boston (MA)

Hybrid
USD 170,000 - 200,000
High-growth company
Competitive compensation
Medical, dental, vision insurance
+2
Director of Product
Director of Product

Great Gray Group. • Boston (MA), Northern (KY)

Hybrid
USD 180,000 - 225,000
Group medical, dental & vision
Employer-paid life & disability
Annual well-being stipend
+1
Senior Product Manager
Senior Product Manager

Great Gray • Boston (MA)

Hybrid
USD 150,000 - 180,000
Group medical, dental and vision
Employer-paid life and disability
Annual well-being stipend
+2