What are the responsibilities and job description for the GRC Policy Analyst position at Zodiac Solutions?
Title : GRC Policy Analyst
Location : Hybrid Remote / Boston, MA
Duration : 12 Months
Mainly remote but may require 1-2 days / week hybrid, particularly during beginning of engagement. Also requires an Onsite interview.
Responsibilities :
Oversee and manage NIST policy approvals and implementation at the MBTA
Manage NIST policies within the ERM platform
Coordinate with key stakeholders for non-NIST policies
Research and evaluate policies to ensure they are up-to-date with current NIST guidance
Stay aware of policy trends and new laws / guidelines from the Federal to state and local level
Identify and implement GRC security controls based on the NIST framework.
Manage and implement the cybersecurity awareness program including annual training, AUP acknowledgement tracking, and phishing training
Collaborate with the GRC IT Risk Analyst on various projects for the GRC Department.