Crocs, Inc. · 10 hours ago
IT Security Analyst
Crocs, Inc. is a company that values individuality and creativity in the workplace. They are seeking an IT Security Analyst to support GRC strategies and processes, collaborating with various stakeholders to manage IT and Enterprise risk while enhancing the company's overall GRC posture.
ConsumerManufacturingShoes
Responsibilities
Maintain the chosen GRC platform to programmatically capture Cyber/IT risks, timely analysis to enable risk control and reporting
Track platform automation of Third-Party Risk Management (TPRM) processes including self-service questionnaires, evidence uploads, results evaluation, workflow facilitation, and other internal requirements through collaboration with key department stakeholders
Implement processes to automate and continuously monitor information security controls, exceptions, risks, and testing. Develop metrics, dashboards, and evidence of artifacts
Maintain, and oversee implementation and adherence to Cybersecurity and GRC Policies and Processes to ensure compliance with applicable laws, regulations, and chosen industry standard frameworks; communications and training included
Track enterprise-wide policies with stakeholders from Legal, Audit, etc. to ensure Cybersecurity and GRC components are accounted for in enterprise-wide policies and processes
Document security processes, responsibilities and ownership of the controls in GRC tool. Schedule regular assessments and testing of effectiveness and efficiency of controls and create reports
Coordinate with auditors to facilitate audits, assuring IT and Enterprise compliance and address potential issues proactively
Work with stakeholders on deficiency remediation of audit or internal control findings
Assist IT and other Enterprise organizations to successfully achieve required compliance
Serves as a point of contact for IT SOX Audit, interfacing with external auditors and Internal Audit
Perform access reviews, certifications, and audits to ensure compliance with regulatory requirements and industry best practices
Maintain the chosen GRC platform for managing, tracking, and reporting on Audit and Compliance findings
Maintain the Cybersecurity Risk Register and collaborate with stakeholders for inclusion in overall risk reporting and continuous monitoring
Work with business owners on known risks for remediation or compensating controls for policy adherence
Facilitate documentation and approval process for Risk Acceptance
Qualification
Required
Bachelor's degree or equivalent experience in Information Technology or related field
2+ years' experience in cybersecurity as a practitioner, with 1+ years in GRC role
Experience working with other compliance driven teams such as Legal, Audit, etc
Demonstrated situational awareness of relevant laws and regulations and frameworks
Familiar with risk management methods and frameworks
Strong risk management skills, including the ability to identify, analyze, and effectively mitigate or manage enterprise risks
Excellent written and verbal communication skills, with the ability to clearly communicate complex GRC issues and strategies to various stakeholders
Solid ability to analyze complex data, interpret compliance requirements, and develop effective solutions
Proven negotiation and influencing abilities to secure buy-in from internal and external partners to achieve GRC objectives
Proficiency with GRC technology solutions, as well as a broad understanding of information security principles and best practices
Dedication to continuous learning, staying up to date with the latest developments in the GRC field, including evolving laws and regulations, emerging risks, and best practices in GRC management
Benefits
Medical, dental, and vision coverage
Life and AD&D
Short and long-term disability coverage
Paid time off
Employee assistance
Participation in a 401k program that includes company match
Many other additional voluntary benefits
Company
Crocs, Inc.
At Crocs, Inc., we believe life’s too short for uncomfortable shoes.
H1B Sponsorship
Crocs, Inc. has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (12)
2024 (12)
2023 (18)
2022 (7)
2021 (6)
2020 (5)
Funding
Current Stage
Public CompanyTotal Funding
$200M2013-12-31Post Ipo Equity· $200M
2006-02-08IPO
Recent News
2026-01-22
2026-01-16
Company data provided by crunchbase