Aderant

Governance, Risk and Compliance Analyst

Aderant$70K — $95K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 2 to 5 years of experience in Information Security or GRC roles
  • Ability to identify risk reduction opportunities and ensure audit readiness
  • Familiarity with regulatory frameworks like ISO 27001 and PCI DSS
  • Basic technical knowledge of cloud platforms such as AWS and Azure
  • Proficient in Microsoft Excel, PowerPoint, and Teams
  • Understanding of AI tools like ChatGPT and MS Copilot
  • Experience with GRC automation platforms
  • Strong analytical and organizational skills
  • Excellent communication skills, able to convey security concepts to diverse audiences

Responsibilities

  • Document compliance assurance program control requirements and validate their effectiveness
  • Collaborate with teams to gather compliance artifacts for internal and external needs
  • Conduct annual and ad-hoc risk assessments with stakeholders
  • Assist in achieving compliance certifications like ISO-27001 and SOC 2
  • Identify control deficiencies and track remediation efforts
  • Ensure third-party vendor compliance through documentation review
  • Support governance activities including business continuity and disaster recovery
  • Coordinate and execute security awareness training programs
  • Review and update security policies to align with best practices
  • Formulate security metrics and dashboards to monitor KPIs
  • Respond to customer security and compliance inquiries

Benefits

  • Opportunity to enhance security controls and mitigate organizational risks
  • Work with cross-functional teams across various departments
  • Partake in industry-leading compliance projects and initiatives
  • Be part of a highly respected team within the organization
  • Develop skills with cutting-edge compliance tools and methodologies
Full Job Description
Role Description:

Under the guidance and oversight of the Manager, Governance Risk & Compliance the Governance, Risk and Compliance Analyst will work with cross functional teams such as IT, Cloud Operations, Business Operations, Product Management, Sales, and Software Development to enhance security controls and mitigate risks. You will be responsible for supporting and executing governance, risk, and compliance activities along with participating in projects designed to reduce overall risk to the organization. The ideal candidate is passionate about governance and compliance as it relates to information security technology and the opportunity to play a foundational role in a highly respected team, is self-motivated, and has excellent project management and communication skills.

Responsibilities:
  • Ensure compliance assurance program control requirements are documented, and processes exist to validate the effectiveness of such controls.
  • Collaborate with cross-functional teams to gather and validate compliance artifacts to fulfill internal and external requirements and obligations.
  • Participate in annual and ad-hoc risk assessments with internal stakeholders.
  • Participate in efforts to achieve compliance attestations/certifications such as ISO-27001, SOC 2 and PCI-DSS.
  • Assist in identifying control deficiencies and track remediation efforts.
  • Ensure that third party vendors meet Aderant security and compliance requirements through the collection and review of a combination of assessment questionnaires, artifacts and attestation documents.
  • Support other governance activities such as: business continuity testing, data mapping and disaster recovery exercises.
  • Participate in the coordination and execution of the security awareness training program, including (but not limited to) the creation of security advisories, and the facilitation of training activities and simulated phishing campaigns.
  • Assist in reviewing and updating security and compliance policies and procedures, to ensure they accurately reflect business requirements and align to industry leading security practices.
  • Assists with the formulation of information security metrics and dashboards that demonstrate adherence to defined KPIs.
  • Respond to customer questionnaires pertaining to Aderant security, compliance and related posture; collaborate with other teams as-needed.


Qualifications:
  • 2 to 5 years of relevant experience in an Information Security or GRC role.
  • The ability to identify opportunities to reduce risk, detect and remediate vulnerabilities, and ensure compliance and audit readiness.
  • Experience/understanding with regulatory frameworks and standards, including but not limited to: ISO 27001, ISO 27701, ISO 42001, AIUC, PCI DSS, NIST CSF, CIS Top 20, GDPR and/or CCPA.
  • Basic technical understanding of cloud service platforms (AWS, Azure, etc.).
  • Proficient in Microsoft Suite skills specifically Excel, Power Point, and Teams.
  • Basic understanding and experience using AI tools such as ChatGPT, Claude, MS Copilot, etc.
  • Experience leveraging GRC automation platforms.
  • Strong analytical skills and the ability to understand and document complex business process data flows.
  • Professionalism, attention to detail, strong organizational skills, team-focus, dedication, resourcefulness, and an eagerness to learn.
  • Ability to manage multiple tasks and priorities while demonstrating time management skills and communication skills.
  • Strong communication skills, with the ability to translate basic security concepts for both technical and non-technical stakeholders.


Preferred Qualifications:
  • Supporting certifications (e.g., CC, CGRC, CISA, CCOA, CGEIT, Associate CISSP, etc.)
  • Experience performing DPIAs, Data Mapping, DSRRs and related privacy-focused activities.
  • Supporting an ISO 27701 compliant environment.
  • Experience with curating content and leveraging security awareness training platforms.
  • Experience with managing work through ticketing systems and queues.
  • Experience working with legal industry, SaaS, or enterprise clients on security compliance.

About Aderant

Aderant is a global provider of comprehensive business management software for law firms and professional services organizations. The company offers a suite of solutions that includes time and billing, financial management, practice management, business intelligence, and CRM. Aderant serves more than 3,200 clients in over 30 countries.
Learn more about Aderant
Size
1,100 employees
Industry
Net Income
$10 million
Founded
1978
5 Year Trend
+5%
Revenue
$100 million
NASDAQ

Similar Jobs

More Jobs at Aderant

More Information Technology Jobs

Find similar Governance, Risk and Compliance Analyst jobs: