ironquill.tech/board

$ cat jobs/staff-security-analyst-i-grc-blue-yonder-8081e9eeaf77.json

Staff Security Analyst I (GRC)

blue yonder·US·United States·senior
Apply on himalayas → Get AI match score →
Role: Staff Analyst I, GRC (Staff Security Analyst I, GRC) Location: US Remote Synonymous Business Title (s): Program Manager, Security Overview: Blue Yonder is a global leader in AI‑driven digital supply chain solutions, empowering businesses to optimize and transform their operations with innovative, intelligent technology. As we shape the future of global cybersecurity, our GRC team is seeking a talented Staff Security Analyst I, GRC. This role will work across teams to ensure Blue Yonder product and internal processes are operating and managed with appropriate IT and security controls that meet regulatory, industry, and internal standards. This role partners with cross-functional teams to ensure controls are implemented and operating effectively and manage audit engagements. What You’ll Be Doing: Control Management: Manage and support internal IT and security control assessments aligned with best practice standards and frameworks (ISO 27001/27701/22301, SOC1/2 Type II, etc.) Identify control deficiencies and drive remediation activities with stakeholders Support evidence collection and documentation of controls in support of internal and external audits Regularly communicate compliance posture to stakeholders and leadership Stay current with regulatory and security compliance standards and frameworks Audit Readiness and Management: Prepare control owners for audit participation and evidence collection Plan, coordinate and manage internal and external audit activities including audit schedules and scope Manage report reviews, respond to audit findings, and track remediation to closure What We’re Looking For: Required Qualifications 5 years of information security compliance or IT audit roles. Solid understanding of IT and security control frameworks (ISO 27001, SOC1, SOC2). Familiarity with cloud security practices and the shared responsibility model. Must have experience performing end to end IT and Security control testing and remediation tracking. Excellent co