Staff Security Analyst I (GRC)

Blue Yonder$114K — $136K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5 years of experience in information security compliance or IT audit roles.
  • Strong understanding of IT and security control frameworks like ISO 27001 and SOC1/SOC2.
  • Familiarity with cloud security practices, particularly the shared responsibility model.
  • Experience in end-to-end IT and security control testing and remediation tracking.
  • Excellent communication and stakeholder management skills.
  • Proficient analytical and problem-solving abilities.

Responsibilities

  • Manage internal IT and security control assessments adhering to best practice standards.
  • Identify control deficiencies and lead remediation efforts with relevant stakeholders.
  • Support the documentation and evidence collection for audits.
  • Regularly update stakeholders on compliance status and posture.
  • Prepare control owners for audit processes including evidence collection.
  • Coordinate and oversee both internal and external audit activities.
  • Manage audit reports, respond to findings, and track remediation efforts.

Benefits

  • Comprehensive Medical, Dental, and Vision coverage.
  • 401K with matching contributions.
  • Flexible Time Off policy.
  • Access to a Corporate Fitness Program.
  • Variety of voluntary benefits including Legal Plans and Pet Insurance.
Full Job Description

Role: Staff Analyst I, GRC (Staff Security Analyst I, GRC)

Location: US Remote

Synonymous Business Title (s): Program Manager, Security   

Overview:

This role will work across teams to ensure Blue Yonder product and internal processes are operating and managed with appropriate IT and security controls that meet regulatory, industry, and internal standards. This role partners with cross-functional teams to ensure controls are implemented and operating effectively and manage audit engagements.

What You’ll Be Doing:

Control Management:

  • Manage and support internal IT and security control assessments aligned with best practice standards and frameworks (ISO 27001/27701/22301, SOC1/2 Type II, etc.)
  • Identify control deficiencies and drive remediation activities with stakeholders
  • Support evidence collection and documentation of controls in support of internal and external audits
  • Regularly communicate compliance posture to stakeholders and leadership
  • Stay current with regulatory and security compliance standards and frameworks

Audit Readiness and Management:

  • Prepare control owners for audit participation and evidence collection
  • Plan, coordinate and manage internal and external audit activities including audit schedules and scope
  • Manage report reviews, respond to audit findings, and track remediation to closure

What We’re Looking For:

Required Qualifications

  • 5 years of information security compliance or IT audit roles.   
  • Solid understanding of IT and security control frameworks (ISO 27001, SOC1, SOC2).
  • Familiarity with cloud security practices and the shared responsibility model.
  • Must have experience performing end to end IT and Security control testing and remediation tracking. 
  • Excellent communication and stakeholder management skills.
  • Strong analytical and problem-solving skills.

Preferred Qualifications

  • Certifications such as CISA, CISM, or CISSP (preferred but not required)
  • Experience working with AI Compliance frameworks such as ISO 42001.
  • Bachelor’s degree or equivalent in Information Systems, Accounting, Business or related field

-------------------------------------------

The annual base salary range for this position is $114,104.00 - $136,000.00

The salary range information provided, reflects the anticipated base salary range for this position based on current national data.  Minimums and maximums may vary based on location.  Individual salary will be commensurate with skills, experience, certifications or licenses and other relevant factors.  In addition, this role will be eligible to participate in either the annual performance bonus or commission program, determined by the nature of the position.

At Blue Yonder, we care about the wellbeing of our employees and those most important to them. This is reflected in our robust benefits package and options that includes: 

  • Comprehensive Medical, Dental and Vision 

  • 401K with Matching 

  • Flexible Time Off 

  • Corporate Fitness Program 

  • A variety of voluntary benefits such as; Legal Plans, Accident and Hospital Indemnity, Pet Insurance and much more

About Blue Yonder

Blue Yonder is a software company that provides artificial intelligence and machine learning solutions for supply chain management. The company was founded in 1985 and is headquartered in Scottsdale, Arizona. Blue Yonder's solutions are used by more than 3,000 customers worldwide, including many of the world's largest retailers, manufacturers, and logistics companies.
Learn more about Blue Yonder
Size
5,000 employees
Industry

Similar Jobs

More Jobs at Blue Yonder

More Information Technology Jobs

Find similar Staff Security Analyst I (GRC) jobs: