Enable job alerts via email!

Senior Security Analyst - GRC TPRM

SPS Commerce

Minneapolis (MN)

On-site

USD 100,000 - 135,000

Full time

7 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Senior Security Analyst to enhance its security governance and compliance efforts. This role involves managing third-party risks, ensuring adherence to corporate standards, and collaborating with various teams to improve security processes. The ideal candidate will have a strong background in cybersecurity, risk management, and experience with GRC tools. Join a dynamic team that values innovation and continuous improvement while contributing to the security of a global retail supply chain. This is an exciting opportunity to make a significant impact in a collaborative environment.

Benefits

Health Insurance
Dental Insurance
Vision Insurance
Life Insurance
401(k) Plan
Paid Time Off
Stock Purchase Plan

Qualifications

  • 5+ years of relevant experience in cybersecurity and risk management.
  • Experience with GRC tools and vendor management.

Responsibilities

  • Manage third-party risk assessments and reporting.
  • Collaborate with business partners on security compliance.

Skills

Cybersecurity Risk Management
GRC Tools
Vendor Management
Audit Participation

Education

Bachelor's Degree
Master's Degree

Tools

GRC Tools

Job description

Description

SPS Commerce is a leading provider of cloud-based supply chain management solutions, serving a global network of retail trading partners. We foster a collaborative and inclusive work environment where innovation and continuous improvement are highly valued. Join SPS Commerce and be part of a dynamic team that’s transforming the global retail supply chain!

Position Summary:

The Sr. Security Analyst serves as a member of the Security Governance, Risk, and Compliance team to maintain the confidentiality, integrity and availability of sensitive company information. Responsibilities include a diverse set of IT security subject areas such as: HIPAA and Sarbanes-Oxley (SOX) compliance, SOC 1& 2, ISO 27001k, risk management, incident response, business resiliency preparedness, PII data protection, and identity and access management. This role is expected to design and develop programs to improve security standards, processes, procedures and solutions and to transfer knowledge to other Security Team Member roles.

Key Responsibilities:

  • Perform the end to end cyber third-party risk management process including risk profiling, risk assessment, and risk monitoring/reporting
  • Work with business line owners to inventory third parties and manage associated risks
  • Drive process improvement within the third party / customer inquiry program
  • Manage the organization’s Trust Center platform
  • Manage responses to customer inquiries about SPS security practices and the completion of customer questionnaires
  • Work with business partners in legal, accounts payable, and procurement
  • Collaborate with others to understand processes, procedures, applications, and technologies
  • Drive application and technology compliance with corporate and regulatory policies/standards, and industry best practices
  • Design and develop programs to improve security standards, processes, procedures and solutions; transfer knowledge to other security team members
  • Participate in project work; perform security specific project tasks; lead large work streams
  • Position Reports to the Sr. Manager of Security; has no Direct Reports

Location:

Minneapolis, MN

Required Qualifications:

  • Bachelor’s Degree plus at least 5 years of relevant experience; Master’s degree plus at least 2 years of relevant experience; or equivalent combination of education and experience
  • Experience with planning, cybersecurity third part risk managment
  • Experience working with GRC Tools
  • Experience working with vendors, auditors, assessors, customer relations.
  • Prior participation or responsibility for audits and assessments

Preferred Qualifications:

  • One or more industry certification - CISSP, CISM, CISA, CTPRP
  • Privacy operations experience
  • Retail experience; working with technology and software
  • Strong business acumen - network, system or application design, implementation or support
  • System administration with experience across multiple platforms and applications

What We Offer:

At SPS Commerce, we are committed to ensuring that each employee's compensation reflects their unique experiences, performance, and skills in their role. The salary range for this role considers several factors, including education, relevant skills, work history, certifications, location, and more.

The annual salary range for this role is: $100,200- $135,000. The actual salary offered will be determined based on the factors listed above and may fall anywhere within the range.

SPS Commerce offers a comprehensive package of benefits including health, dental, vision, disability and life insurance, paid time-off, 401(k), health and flexible spending accounts, stock purchase plan and more.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Security Analyst - GRC TPRM

SPS Commerce

Minneapolis

On-site

USD 100 000 - 135 000

6 days ago
Be an early applicant

Senior Security Analyst - GRC TPRM

SPS COMMERCE, INC.

Minneapolis

On-site

USD 100 000 - 135 000

7 days ago
Be an early applicant