Infosec Grc Audit And Risk Analyst Iii - Kiewit Technology Group
Omaha, Nebraska, United States
Proven track record in obtaining and maintaining NIST, ISO 27001 certifications. Responsible for running KTG Risk Management Programs. Other current duties include: Vendor Management, BIA analysis, Phishing simulation, overseeing external audits (KPMG, A-lign, ect), and Risk Management.This position works closely with the operational, technical, and corporate function personnel to foster a technology risk management culture, challenge assumptions and to assist in communicating a holistic risk profile of technology risk to Executive management and various stakeholders. This position is part of the team responsible for establishing and maintaining an enterprise Information Security Governance, Risk and Compliance vision, strategy and program for the Kiewit Technology Group (KTG).The GRC Audit and Risk Analyst provides technical knowledge over the Kiewit Information Technology Governance, Risk and Compliance program. I assist in the identification of, and respond to, organizational information security risks and/or concerns, and develop, implement, and documents improvement to correct deficiencies and mitigate risk. I assist in identifying, prioritizing, monitoring and reporting technology risks and controls including performing risk and controls assessments for the Kiewit Technology Group (KTG).