Software - Governance Risk and Compliance ( Security Experts Only)

Job ID: 37365927

Budget: $50 – $250 USD

Note 1: The initial stage is project based: You will conduct an assessment of current software development operations. Team is remote working team, of just 5 persons, without company issued laptops. There are no company provided infrastructure/systems in place, except Github, AWS. Final Software Product is web/cloud based application.

Note 2: If satisfactory, post the project long term relationship can be established.

Description:
We are seeking an experienced Governance, Risk, and Compliance (GRC) Analyst to support our team. The ideal candidate will have a firm grasp of Software risk management, corporate governance, policy and regulatory compliance principles, and will be responsible for identifying, evaluating, and addressing risks associated with the company's operational processes including the adoption of cutting edge technologies.

You will engage team to ensure all requisite data and information is complete, accurate, and consistently delivered. You will use your experience and knowledge of security to deliver on Governance, Risk and Compliance goals related to developing the complete perspective for operational and management visibility of overall compliance to the Information Security program, policies, and practices.

Responsibilities & Requirements:

Risk Management
• Assist in the identification, assessment, and mitigation of risks
• Monitor and analyze risk exposures, recommending adjustments to the team's risk profile as necessary
• Implement the enterprise-wide strategy and key initiatives/projects focused on the reduction of technology risk
• Create plans to manage identified risks

Governance and Policy Management
• Support the development, implementation of policies and procedures to ensure alignment with regulatory and industry best practices
• Advise team on governance improvements needed to align with governance frameworks
• Define Information Security requirements and develop policies

Compliance Management
• Conduct compliance assessments against industry standards, regulatory requirements
• Work with team to perform security and compliance assessments on existing systems, processes, and technology
• Create disaster recovery and business continuity plans


Timeline (Intial Assessment & Report):
- The expected timeline for this project is 1-2 weeks.

If you are interested and have the necessary skills and experience, please submit your proposal and include your portfolio showcasing relevant experience. Thank you.