RGA
Senior Security & Risk Management Specialist
Remote, Missouri, United States of America · Senior
Sponsorship not specified$89k-$135kDetected 7 days ago
CybersecurityComplianceProject ManagementExcelProcess ImprovementCustomer SupportCommunicationProblem SolvingMicrosoft OfficeSharePointSarbanes-Oxley
About the role
- You're RGA ready RGA is a purpose-driven organization working to solve today's challenges through innovation and collaboration.
- A Fortune 200 Company and listed among its World's Most Admired Companies, we're the only global reinsurance company to focus primarily on life- and health-related solutions.
- Join our multinational team of intelligent, motivated, and collaborative people, and help us make financial protection accessible to all.
Responsibilities
- Support and maintain ongoing processes, for Enterprise IRM Application with scope, product, and operational changes/maintenance.
- Collaborate with compliance, security and risk professionals on projects related to compliance with regards to Security Frameworks (NIST CSF/SOX/DORA) and other regulations.
- The scope of routine activities and tasks in this role will be in support of one or more functional areas, the department or division.
- Ability to structure, scope, and compile data to support reporting.
- Performs other duties as assigned.
- Work with functional and technical requirements to design and implement within ServiceNow Enterprise IRM Application and automate where possible.
- Develop and administer just in time training and awareness campaigns for various IRM/GRC groups within the company.
Requirements
- Gain valuable knowledge from and experience with diverse, caring colleagues around the world.
- Bachelor's degree or equivalent experience.
- 4+ years' relevant experience in IT security, privacy, audit, controls and regulatory compliance, or related experience..
- Deep understanding of ServiceNow platform and its capabilities, dependencies with proficiency in ServiceNow administration and development and architectural requirements with experience in Version(s) after Yokohama.
- General knowledge of business and technology operations
- Intermediate knowledge of global standards and regulations regarding security, privacy, and fraud..
- Demonstrated ability to learn and stay current on data privacy, data security, and fraud threats and vulnerabilities..
- ability to adjust to changing priorities and work under tight timelines.
- ability to set goals, communicate expected outcomes and liase with individuals across a variety of functions and levels.
- ability to balance multiple priorities, deadlines and deliverables while maintaining a positive attitude.
Nice to have
- Strong understanding of GRC Lifecycles management (Policy, Controls, Audit, Risk, Regulatory Change Management, Advance Risk and Advance Audit)
- Strong understanding of Reporting, Dashboards, and workspace within ServiceNow
- Strong understanding of Entities/CMDB within ServiceNow
- Microsoft Office application experience (Excel, Word, Visio, Teams, SharePoint)
- Familiarity with IT and security systems
- IT Control Frameworks including NIST CSF/P, NIST AI, COBIT, ITIL, ISO 27001/27002, CIS, etc.
- Knowledge of risk assessment methods
- Information security, privacy, compliance, risk or audit professional certifications, such as: SSCP and Security+
Skills
- ServiceNow Expertise as
- Strong understanding of Reporting, Dashboards, and workspace within ServiceNow - Required
- Understanding of Regulatory tool integrations with ServiceNow
- Strong understanding of Entities/CMDB within ServiceNow - Required
- Microsoft Office application experience (Excel, Word, Visio, Teams, SharePoint) - Required
- Familiarity with IT and security systems - Required
- Knowledge of applicable regulations such as Sarbanes-Oxley, DORA, NY DFS, GLBA, GDPR etc.- Required
- IT Control Frameworks including NIST CSF/P, NIST AI, COBIT, ITIL, ISO 27001/27002, CIS, etc. - Preferred
- Knowledge of risk assessment methods - Preferred
- Information security, privacy, compliance, risk or audit professional certifications, such as: SSCP and Security+ - Preferred
- Experience reviewing SOC1 and SOC2 attestations - Preferred
- Project management skills/experience - Preferred
Compensation
- $89,310.00 - $134,870.00 Annual
- Base pay varies depending on job-related knowledge, skills, experience and market location.
- In addition, RGA provides an annual bonus plan that includes all roles and some positions are eligible for participation in our long-term equity incentive plan.
Equal opportunity
- RGA is an equal opportunity employer.
This listing is sourced directly from RGA's careers page and normalized into a canonical job model.