Demo

Information Security Analyst

Performance Food Group
Denver, CO Full Time
POSTED ON 2/1/2025
AVAILABLE BEFORE 4/1/2025

Job Description:

We Deliver the Goods:
  • Competitive pay and benefits, including Day 1 Health & Wellness Benefits, Employee Stock Purchase Plan, 401K Employer Matching, Education Assistance, Paid Time Off, and much more
  • Growth opportunities performing essential work to support America’s food distribution system
  • Safe and inclusive working environment, including culture of rewards, recognition, and respect
Position Summary:

Performance Food Group is looking for a talented Information Security Analyst to play a key role in supporting Information and Privacy Risk Management aspects of the company as a member of the Information Security Department. PFG is in the midst of establishing a Risk Management function that focuses on identifying, quantifying, communicating, and tracking risks associated with information assets. Reporting to the Manager of Information Security Risk Management and working with IT and line of business stakeholders, the analyst will have a heavy focus on compliance with internal/external policies/statutes, IT Risk Management, and Third Party Risk.

Position Responsibilities:
  • Conduct risk assessments and maintain risk register.
  • Perform assessments of IT controls processes, and systems, identifying gaps and opportunities to enhance design\\operational effectiveness while reducing the cost of compliance.
  • Conduct periodic readouts and risk reviews with IT teams and segment/line of business stakeholders to convey risk and influence decision making.
  • Assist in maintaining security exception lifecycle, including qualifying associated risk, determining compensating controls, communicating with IT and LOB stakeholders.
  • Maintain Business Impact Analysis. Work with IT and LOB teams to maintain Business Impact Analysis, establishing risk categorizations for applications and infrastructure based on mission criticality and sensitivity of hosted data.
  • Assist in development and implementation of Enterprise Crown Jewels program. Work with IT, LOB teams, and security control owners to define and govern control parameters for critical applications and technologies.
  • KPI/KRI Development and Reporting. Assist in development of control-based Key Risk Indicators and Key Performance Indicators across business segments. Assist in developing associated governance model and metric tiers for consumption by various levels of stakeholders, up to and including the Board of Directors.
  • Support IT Risk and exception management governance forums across business segments with varying operational models and business context.
  • Support PFG’s Third Party Risk Management Program, assessing third parties for inherent and residual risk based on the nature of their services and their ability to appropriately secure PFG data and provide dependent services.
  • Negotiate the inclusion of security requirements into third party contract agreements.
  • Develop and Maintain IT Audit and Control documentation.
  • Support necessary governance forums (committees, working groups) to ensure sound decision-making and stakeholder communications.
  • Identify and report on non-compliance with regulatory mandates (i.e. Sarbanes Oxley section 404 PCI DSS, HIPAA, GDPR, CCPA).
  • Support operational audits as necessary.
  • Performs other related duties as assigned.

Qualification:

Required Education: Bachelors

Required Experience: 6months - 1 year

  • Experience in developing, communicating, and presenting security or risk concepts to varying audiences

  • Knowledge of regulatory requirements and frameworks

  • Strong teamwork and interpersonal skills

  • Experience in assisting with process improvement initiatives

  • Hold relevant security certifications or willingness to pursue additional certifications

  • Continuous learning mindset

  • Experience performing IT and security risk assessments, using both qualitative and quantitative methods to identify, quantify, and communicate risk

  • Working knowledge of privacy statutes including the European Union General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA)

  • Experience with Data Classification, Data Security, and Data Loss Prevention methods and tools, especially Microsoft Azure Information Protection

  • Strong MS Office skills (specifically PowerPoint, Word, Excel, Project, Visio)

  • Strong process analysis and engineering skills

  • Experience conducting and documenting business impact analysis, designing and implementing Business Continuity/Disaster Recovery plans

  • Experience with IT assurance mandates/frameworks such as Sarbanes-Oxley, CobIT

  • Demonstrated leadership skills

  • Demonstrated high level of analytical and problem-solving skills

  • Excellent written and verbal communication skills

  • Ability to influence cross functional and highly matrixes business and IT stakeholders

Company description


Performance Food Group is a customer-centric foodservice distribution leader headquartered in Richmond, Va. Grounded by roots that date back to a grocery peddler in 1885, PFG has a nationwide network of approximately 150 distribution centers, 35,000-plus talented associates, and thousands of valued suppliers across the country. With the goal of helping customers thrive, PFG markets and delivers quality food and related products to independent and chain restaurants, schools, business and industry locations, convenience operations, healthcare facilities, vending distributors, office coffee service distributors, big box retailers, and theaters across the U.S.

Awards and Accolades

Performance Food Group and/or its subsidiaries (individually or collectively, the "Company") provides equal employment opportunity (EEO) to all applicants and employees, regardless of race, color, national origin, sex, marital status, pregnancy, sexual orientation, gender identity, religion, age, disability, genetic information, veteran status, and any other characteristic protected by applicable local, state and federal laws and regulations. Please click on the following links to review: (1) our EEO Policy; (2) the "EEO is the Law" poster and supplement; and (3) the Pay Transparency Policy Statement.

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Information Security Analyst?

Sign up to receive alerts about other jobs on the Information Security Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Performance Food Group

Performance Food Group
Hired Organization Address Augusta, ME Full Time
114733BR Job Title : HR Generalist Location : Performance NorthCenter (0710) Job Description : We Deliver the Goods : Co...
Performance Food Group
Hired Organization Address Motley, MN Full Time
Job Title: Route Driver Helper at Performance Food Group About the Role We are seeking a skilled and reliable Route Driv...
Performance Food Group
Hired Organization Address Motley, MN Full Time
Job Title: Route Driver Helper at Performance Food Group About the Opportunity We are seeking a skilled and reliable log...
Performance Food Group
Hired Organization Address Motley, MN Full Time
Job Summary: Logistics Support Role Key Responsibilities This position involves assisting our experienced drivers in del...

Not the job you're looking for? Here are some other Information Security Analyst jobs in the Denver, CO area that may be a better fit.

Information Security Analyst II

Premier Members Credit Union, Broomfield, CO

Information Security Analyst

Jeffco Public Schools, Jefferson, CO

AI Assistant is available now!

Feel free to start your new journey!