Senior Security GRC Architect (Hybrid)

HistoSonics, Inc.

Minneapolis, Saint Paul (MN, MN)

Hybrid

USD 140,000 - 190,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Health, dental, vision insurance
401(k) plan
Paid time off and generous benefits

Job summary

HistoSonics, Inc. in Plymouth, MN, is seeking a Principal Security Analyst to lead governance, risk and compliance for the enterprise information security program.

You will own the policy portfolio, maintain the ISMS, map ISO 27001 to the NIST CSF, drive audits, manage third-party risk, and partner with Legal on privacy and data protection. This senior role requires 10+ years in information security, advanced knowledge of ISO 27001 and NIST CSF, and the ability to mentor staff and influence

Qualifications

  • Bachelor's degree in a relevant field.
  • 10+ years of progressive information security governance, risk, and compliance experience.
  • Expert-level working knowledge of ISO 27001 and the NIST Cybersecurity Framework.
  • Experience owning an information security policy portfolio or ISMS.
  • Experience designing and running a third-party risk management program end to end.
  • Experience owning a security training and awareness program.
  • Knowledge of privacy requirements (HIPAA, GDPR) and partnering with Legal on privacy matters.
  • Technical depth across cloud, IAM, endpoint, network, and application security.

Responsibilities

  • Own the organization's information security policy portfolio and ISMS documentation.
  • Transition ISMS ownership into the governance organization; manage policy exceptions and risk acceptance.

Skills

Information security governance
Risk management
ISO 27001
NIST CSF
Policy development
Third-party risk
Security training
Privacy & GDPR/HIPAA
Leadership

Education

Bachelor's degree in Information Technology, Information Security, Computer Science, or related field

Tools

ISO 27001
NIST CSF

Job description

HistoSonics, Inc. in Plymouth, MN, is seeking a Principal Security Analyst to lead governance, risk and compliance for the enterprise information security program.

You will own the policy portfolio, maintain the ISMS, map ISO 27001 to the NIST CSF, drive audits, manage third-party risk, and partner with Legal on privacy and data protection. This senior role requires 10+ years in information security, advanced knowledge of ISO 27001 and NIST CSF, and the ability to mentor staff and influence

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security GRC Leader — Policy, Risk & Compliance
Senior Security GRC Leader — Policy, Risk & Compliance

HISTOSONICS INC • Plymouth (MN)

Hybrid
USD 140,000 - 175,000
Health, dental, and vision insurance
Life insurance
Short-term and long-term disability
+2
InfoSec Manager - Lead Incident & GRC (Hybrid)
InfoSec Manager - Lead Incident & GRC (Hybrid)

Speechmatics • Cambridge (MA)

Hybrid
USD 140,000 - 190,000
Incredibly flexible working
Regular company lunches
Birthday celebrations
+6
Hybrid Information Security Manager: Lead Security & GRC
Hybrid Information Security Manager: Lead Security & GRC

Speechmatics • United States

Hybrid
USD 120,000 - 170,000
Private Medical and Dental for you and
Global working opportunities
Pension/401K matching
+1
Principal Security Analyst, Governance Risk, and Compliance
Principal Security Analyst, Governance Risk, and Compliance

HistoSonics, Inc. • Minneapolis (MN), Saint Paul (MN)

Hybrid
USD 140,000 - 190,000
Health, dental, vision insurance
401(k) plan
Paid time off and generous benefits
Senior Security Policy & GRC Analyst (Hybrid | Remote)
Senior Security Policy & GRC Analyst (Hybrid | Remote)

WPS—A health solutions company • Minnesota

Hybrid
USD 90,000 - 115,000
Hybrid work options
Performance bonus
401(k) with match
+5
Senior InfoSec Analyst | Governance & Compliance
Senior InfoSec Analyst | Governance & Compliance

Great Gray • Wilmington (DE)

Hybrid
USD 95,000 - 120,000
Medical insurance
Dental insurance
Vision insurance
+4
GRC & Security Risk Lead (Hybrid) — Build Mature Program
GRC & Security Risk Lead (Hybrid) — Build Mature Program

CHAOS Industries • Washington

On-site
USD 110,000 - 150,000
Health benefits
401k match
Free daily lunch
+3
Senior Security Policy & GRC Analyst (Hybrid/Remote)
Senior Security Policy & GRC Analyst (Hybrid/Remote)

WPS Health Solutions • Marion (IL)

Hybrid
USD 90,000 - 115,000
Remote/hybrid work options
Performance bonus
401(k) with match
+2
Remote GRC Leader: Governance, Risk & Compliance
Remote GRC Leader: Governance, Risk & Compliance

Sound Physicians • Northern (KY)

Hybrid
USD 130,000 - 160,000
Medical, dental & vision insurance
FSA (healthcare & dependent care)
401(k) with company match
+2
InfoSec GRC & Vendor Risk Analyst – Hybrid
InfoSec GRC & Vendor Risk Analyst – Hybrid

Rice Park Capital Managment LP • Minneapolis (MN)

Hybrid
USD 90,000 - 130,000
Medical, Dental, Vision Insurance
PTO & Paid Holidays
Company Paid Life Insurance
+2