QUALIFICATIONS:- Strong understanding of contract compliance principles, including interpreting and updating contract terms to meet cybersecurity requirements and regulatory obligations.
- General understanding of audit and compliance methodologies, and familiarity with industry-accepted standards and frameworks.
- Ability to monitor, interpret, and assess the impact of emerging regulations on organizational processes and contracts.
- Proficiency in conducting evidence collection and supporting compliance control assessments and audits.
- Strong documentation and communication skills for preparing audit materials, maintaining records, and reporting compliance status.
- Competence in tracking and recording risks, issues, decisions, dependencies, and action items for audit and compliance initiatives.
- Strong collaboration skills, with the ability to build relationships with Finance, Risk, Compliance, Legal, and other departments.
- Possess general knowledge of laws and regulations pertinent to information security and the organization.
- Demonstrate familiarity with information security best practices and recognized frameworks.
- Excellent verbal and written communication skills. Able to communicate persuasively and influence others.
- Ability to work independently and collaboratively in a fast-paced environment.
- Demonstrate professional skepticism to ensure evidence is sufficient when assessing the relevant information security controls.
- Candidates must possess either a bachelor's degree or have between two and four years of experience in Information Security/Cybersecurity, Information Technology, Computer Science, or Information Systems.
- Desired Certifications (Any or Multiple)
- CompTIA Security+.
- GIAC Security Essentials Certification (GSEC).
- Certified Information Systems Auditor (CISA).
- Similar Cybersecurity certifications.
Preferred Location: MOCertain states and localities require employers to post a reasonable estimate of salary range. A reasonable estimate of the current base pay range for this position is $77,200 to $96,500 annually. Actual salary will be based on a variety of factors, including shift, location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base pay.
The well-being of WWT employees is essential. So, when it comes to our benefits package, WWT has one of the best. We offer the following benefits to all full-time employees:
- Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness program
- Financial Benefits: Competitive pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement
- Paid Time Off: PTO and Sick Leave (starting at 20 days per year) & Holidays (10 per year), Parental Leave, Military Leave, Bereavement
- Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program
PLEASE NOTE: This position requires permanent U.S. work authorization. Candidates requiring current or future visa sponsorship, including those on OPT, CPT or H1/H4, are not eligible for this role. This role is not open for staffing partners or corp-to-corp candidates.What will you be doing?About This Position - Safeguarding Trust, One Contract at a Time: Be the Linchpin of Security and Compliance at WWTAs an Information Security (InfoSec) Governance, Risk, and Compliance (GRC) Analyst within Audit and Compliance, you will play a pivotal role in ensuring that WWT's information security practices not only align with internal policies but also fulfill the specific security and compliance requirements outlined in our client and partner contracts. This position involves interpreting contract provisions related to information security, collaborating with legal and operational teams to identify compliance obligations, and developing processes to monitor adherence. You will be responsible for supporting audits, managing documentation for contract-driven controls, and proactively addressing any gaps or exceptions. By championing contract compliance, you help build trust with clients and partners while safeguarding WWT's reputation and operational excellence.
RESPONSIBILITIES:Driving Operations within the InfoSec GRC Team
As an InfoSec GRC analyst, you are expected to:
- Leverage artificial intelligence (AI) powered tools to automate the identification of compliance gaps, enhance risk assessments, and streamline audit processes for improved efficiency and accuracy.
- Conduct routine cybersecurity audits to verify and ensure adherence to contractual obligations and security requirements.
- Evaluate and update cybersecurity provisions in contracts with clients and partners, ensuring they align with risk management strategies and comply with relevant regulations.
- Work closely with cross-functional teams to resolve audit findings, track corrective actions, and implement improvements as needed.
- Record and track risks, issues, decisions, dependencies, and action items associated with audit and compliance initiatives.
- Assist in developing, refining, and promoting cybersecurity policies, standard operating procedures, and employee training to strengthen overall contract compliance.
- Support internal and external audits by managing documentation for contract-driven controls and proactively addressing any gaps or exceptions.
- Monitor and report on security program metrics to provide insights into compliance status and areas for improvement.
- Coordinate on-site audit logistics, including room reservations, resource scheduling, and catering arrangements.
- Assist with the formulation and communication of audit plans, timelines, and progress updates to relevant stakeholders.
- Provide status and tracking updates on compliance efforts via status meetings, request logs, and other appropriate channels.
Foster and sustain collaborative relationships with departments, such as Finance, Risk, Compliance, and Legal.