Cyber GRC Analyst

2 hours, 58 minutes ago
Full-time
Mid Level
Cybersecurity
Warner Music Group

Warner Music Group

Warner Music Group (WMG) is a global music entertainment company that encompasses recorded music, music publishing, and artist services. With a rich history spanning over 200 years, WMG is home to iconic record labels and a leading music publisher, rep...

Media
5K-10K
Founded 1929

Description

  • Maintain the Cyber Security Risk Register and ensure risks are documented with defined resolutions.
  • Execute third-party cyber risk processes and security assessments for existing and prospective vendors.
  • Run security awareness programs and phishing processes.
  • Review security technologies, tools, and services and recommend improvements to the infrastructure team.
  • Participate in and lead information security incident response activities.
  • Document, create, and maintain security policies.
  • Help develop and maintain a security architecture process aligned to business, technology, and threat drivers.
  • Monitor vulnerability remediation timelines and report on SLA adherence.
  • Coordinate projects and resources for new business offerings and technologies.
  • Serve as an engineering liaison to outside engineering entities and partner with business leaders on design and delivery.

Requirements

  • Experience creating and executing a third-party risk program.
  • Direct experience managing and working with Security Operations Centers (SOCs).
  • Experience defining and tracking KPIs for vulnerability management and patch compliance.
  • Hands-on experience or strong working knowledge of GRC and security awareness tools.
  • Documented experience with threat modeling for new applications and services.
  • Working knowledge of regulations, standards, and frameworks such as PCI-DSS, Sarbanes-Oxley, GDPR, and NIST CSF.
  • Excellent communication and technical skills.
  • Ability to work with business units, vendor management, and internal/external stakeholders.
  • Strong familiarity with information security trends, events, and evolving legislative/regulatory changes.

Benefits

  • Base salary of CAD $100,000 - $115,000 per year.
  • Eligibility for a performance-based annual bonus.
  • Remote full-time work arrangement.
  • Opportunity to work for a global music and entertainment company.
  • Active, existing vacancy with a high-impact role in a large enterprise.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Cyber Threat Intelligence Lead (R-00128)

True Zero Technologies 11-50 Internet Software & Services

True Zero Technologies is hiring a remote Senior Cyber Threat Intelligence Lead to gather, analyze, and communicate actionable intelligence that strengthens cyber threat detection and response for its clients.

AWS Azure Elasticsearch GCP SIEM Splunk
13 minutes ago

L3 SOC Analyst

Saviynt 251-1K Internet Software & Services

Saviynt is hiring a remote UK L3 SOC Analyst to support its modern security operations centre, where the role focuses on advanced incident investigation, automation, threat hunting, and cloud security for government-facing environments.

AWS Bash CrowdStrike Go Kubernetes PowerShell Python SIEM Splunk
28 minutes ago

Information Security Analyst

Jenzabar 251-1K Internet Software & Services

Jenzabar is seeking an Information Security Analyst to support continuous security monitoring, incident response, and security tool maintenance across on-premises and cloud environments.

PowerShell Python SIEM
1 hour, 13 minutes ago

GRC Manager

Gearset 51-250 Internet Software & Services

Gearset is hiring a remote GRC Manager in the UK to lead security, compliance, and data protection work supporting its Salesforce DevOps platform and growing customer base in regulated sectors.

AWS Cybersecurity DevSecOps HIPAA
1 hour, 13 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers