Governance, Risk, & Compliance (GRC) Security Risk Senior Analyst @ TikTok | Jobright.ai
JOBSarrow
RecommendedLiked
0
Applied
0
Governance, Risk, & Compliance (GRC) Security Risk Senior Analyst jobs in San Jose, CAH1B Visa Sponsored Governance, Risk, & Compliance (GRC) Security Risk Senior Analyst jobs in San Jose, CA
200+ applicants
company-logo

TikTok ยท 3 days ago

Governance, Risk, & Compliance (GRC) Security Risk Senior Analyst

Wonder how qualified you are to the job?

ftfMaximize your interview chances
Content CreatorsContent Discovery
check
H1B Sponsorship

Insider Connection @TikTok

Discover valuable connections within the company who might provide insights and potential referrals, giving your job application an inside edge.

Responsibilities

Planning, developing, implementing, maintaining, and managing Cybersecurity Risk Management framework based on industry best practices (including ISO 31000, ISO 27005, and NIST 800-39)
Implementing and supporting scalable processes and procedures for the security risk lifecycle management including risk assessments, treatment, and monitoring
Collaborating with risk owners to ensure risk mitigation plans are developed and completed, tracking and reporting on the progress of the remediation plans on a regular basis
Continuously monitoring the Risk Register by assessing and re-assessing likelihood, impact, and the risk rating of all items in the Risk Register on a regular basis to maintain up-to-date status
Maintaining exception and acceptance processes to calculate residual business risk after weighing application security gaps, compensating controls, and inherent risk scores against established security risk appetite and tolerance criteria per business line
Mentor, coach, and train security staff and security risk analysts

Qualification

Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.

Cybersecurity ControlsRisk Management ProcessesIncident ResponseRed TeamsArchitectsEngineersTranslate Technical ConceptsLead ProjectsExecute InitiativesSan Jose OfficeBusiness SupportTeam PlayerMotivated Self-StarterResourcefulCollaborativeVerbal CommunicationProject ManagementCybersecurityRisk ManagementISO NIST 800-AuditComplianceInformation SecurityGovernanceGRC TechnologiesRSA ArcherServiceNowCISM

Required

Experience collaborating closely with security partners, including incident response, red teams, architects, and engineers to seamlessly incorporate cybersecurity controls and risk management processes into their day-to-day operations
Team player and motivated self-starter who is resourceful and has the ability to work collaboratively with multiple stakeholders across different products, business lines, and regions
Excellent verbal communication skills with the ability to translate complex technical concepts into business language
Strong project management skills with the ability to lead and execute security risk and control projects and initiatives on time with multiple stakeholders
Ability to work at the San Jose office for 3 days per week and be willing to travel to other offices, including international locations, as required to support business needs

Preferred

Minimum of 5 years of experience in planning, designing, implementing and managing cyber security risk management frameworks such as ISO 31000, ISO 27005, and NIST 800-39
Minimum of 5 years of cybersecurity experience related to working on projects and teams related to security risk management, audit, compliance, information security, or other related fields
Familiarity with Governance, Risk, and Compliance (GRC) technologies such as RSA Archer or ServiceNow
CISM, CISA, CISSP, CCSP, CASP, Security+, CRISC, CGEIT, GSEC, or other relevant certifications

Benefits

100% premium coverage for employee medical insurance
Approximately 75% premium coverage for dependents
Health Savings Account (HSA) with company match
Dental, Vision, Short/Long term Disability, Basic Life, Voluntary Life, and AD&D insurance plans
Flexible Spending Account (FSA) Options
10 paid holidays per year
17 days of Paid Personal Time Off (PPTO)
10 paid sick days per year
12 weeks of paid Parental leave
8 weeks of paid Supplemental Disability
Mental and emotional health benefits through EAP and Lyra
401K company match
Gym and cellphone service reimbursements

Company

TikTok is a short-video sharing app and social network platform that develops a lip-syncing video application to create videos. It is a sub-organization of ByteDance.

H1B Sponsorship

TikTok has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Trends of Total Sponsorships
2023 (254)
2022 (325)
2021 (211)
2020 (90)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Shou Zi Chew
CEO
linkedin
leader-logo
Blake Chandlee
VP Global Business Solutions
linkedin
Company data provided by crunchbase
logo

Orion

Your AI Copilot