Senior GRC Analyst

RobloxSan Mateo, CA
11d

About The Position

As a member of the Roblox Security Governance, Risk, and Compliance (GRC) team, you will support the implementation of our security governance program. You will be a key part of a growing team, contributing to our industry leading qualitative/quantitative risk management program, our controls. This position is part of the Information Security team. This role will report to the GRC Manager. You will: Be a key contributor to the Governance, Risk, and Compliance team within the larger Information Security Organization. Partner with your GRC, InfoSec and Engineering colleagues and support the design and implementation of a "risk first" governance function that is "right-sized" for Roblox. Find opportunities to improve efficiency and effectiveness, designing tools and automations along the way to drive security and compliance by design. Write, revise, and manage our information security policies, standards, and procedures. Identify and assess information security risks. You will work with Information Security and Engineering colleagues to implement appropriate controls to mitigate identified risks. You will validate control design and efficiency. You will support ongoing risk monitoring and reporting. Be a subject matter expert in the GRC space, providing education and mentorship to others across the Roblox organization. Be a part of the Roblox community, living our values and securing the metaverse.

Requirements

  • 4+ years of relevant professional experience in Security Governance, Risk and Compliance.
  • Experience collaborating with software engineers to identify risks, map commitments to controls and develop relevant policies.
  • Experience assessing alignment to policies and developing mitigation and remediation plans when gaps exist.
  • Deep understanding of risk assessment, compliance frameworks, creation of policy, and how to educate organizations on these concepts.
  • Understanding of security concepts and a broad range of security risks and controls.
  • Experience in tech; however the need to actively code is not required for the role, just the ability to collaborate with Engineers and quickly establish credibility.

Responsibilities

  • Be a key contributor to the Governance, Risk, and Compliance team within the larger Information Security Organization.
  • Partner with your GRC, InfoSec and Engineering colleagues and support the design and implementation of a "risk first" governance function that is "right-sized" for Roblox.
  • Find opportunities to improve efficiency and effectiveness, designing tools and automations along the way to drive security and compliance by design.
  • Write, revise, and manage our information security policies, standards, and procedures.
  • Identify and assess information security risks.
  • You will work with Information Security and Engineering colleagues to implement appropriate controls to mitigate identified risks.
  • You will validate control design and efficiency.
  • You will support ongoing risk monitoring and reporting.
  • Be a subject matter expert in the GRC space, providing education and mentorship to others across the Roblox organization.
  • Be a part of the Roblox community, living our values and securing the metaverse.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

1,001-5,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service