Lincoln Electric · 1 day ago
Senior Governance Risk and Compliance Analyst
Maximize your interview chances
Electrical DistributionManufacturing
No H1BU.S. Citizen Only
Insider Connection @Lincoln Electric
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Work closely with enterprise technology, risk management, cybersecurity, and business teams to integrate compliance practices and align with industry standards.
Collaborate with stakeholders across the organization to ensure a clear understanding of compliance requirements and alignment with business goals.
Establish and maintain strong relationships with stakeholders across technology, compliance, cybersecurity, audit, HR and third-party vendors.
Work with internal/external auditors, regulators, business stakeholders and other functional areas such as Legal, Compliance and HR.
Provide guidance and support to other members of the IT team on compliance-related issues.
Maintain and enhance compliance assessment toolkits for testing and validation
Play a critical role in leading the development, implementation, and maintenance of comprehensive GRC strategies aligned with CMMC, SOX, ISO 27001, and TISAX standards.
Provide technical expertise in GRC practices, focusing on CMMC, SOX, ISO 27001, and TISAX frameworks.
Develop, document, and implement IT compliance processes, procedures, and standards.
Stay up-to-date with changes in regulations, standards, and emerging regulatory requirements and ensure compliance.
Provide technical leadership for compliance projects.
Manage and maintain compliance-related documentation and records.
Serve as a subject matter expert (SME) for GRC-related matters, guiding the team and organization in compliance best practices.
Drive continuous improvement initiatives to enhance the efficiency and effectiveness of compliance processes and controls.
Leverage automation and technology to streamline compliance activities and reporting.
Conduct regular audits and assessments to verify compliance with all applicable regulations and standards.
Regularly assess and update the organization's compliance programs, policies, and procedures to meet changing regulatory landscapes.
Conduct regular risk assessments to identify potential compliance vulnerabilities and gaps.
Develop and implement risk mitigation plans to address identified issues and minimize exposure to compliance risks.
Collaborate with internal audit teams to support compliance audits and assessments.
Oversee the response process for customer cybersecurity inquiries, vendor questionnaires and compliance questionnaires.
Develop and deliver relevant KPIs and metrics for management consumption.
Evaluate security controls and identify opportunities for improvement and communicate recommendations.
Identify and implement improvements to increase efficiency of the compliance program and processes.
Collaborate with the Lead, IT Policy and Security Awareness to develop and deliver training programs on IT compliance for employees across the organization.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Must be a US Citizen and currently working in the United States
Bachelor's degree in Computer Science, Information Security, or related field.
5+ years of experience in IT compliance, with experience in SOX, NIST, CMMC, GDPR, TISAX and/or ISO.
Strong understanding of IT and cybersecurity principles, risk management, and compliance best practices.
Proven track record of leading and managing GRC initiatives and teams.
Experience developing and implementing IT compliance programs, processes, procedures, and standards.
Wide-ranging knowledge in technical infrastructure and applications, from legacy through next generation.
Excellent project management, personal and organizational skills.
Excellent communication and interpersonal skills.
Preferred
Strong knowledge of NIST and ISO strongly preferred.
1 or more of the following certifications CGRC, CRISC, or CISSP are strongly desired or willing to obtain within 2 years.
Familiarity with relevant compliance management software and tools.
Company
Lincoln Electric
Lincoln Electric is a manufacturer of welding products, arc welding equipment, and welding consumables.
Funding
Current Stage
Public CompanyTotal Funding
$1.55B2024-06-24Post Ipo Debt· $1.55B
1995-06-23IPO
Leadership Team
Recent News
2024-10-31
Company data provided by crunchbase