Security GRC Analyst

7 days ago


Imus, Philippines Turnitin, LLC Full time

Security GRC Analyst (Cloud/AWS) - Philippines Remote

  • Full-time

Turnitin is a global organization with teams in over 35 countries including the United States, Mexico, United Kingdom, Australia, Japan, India, and the Philippines. We embrace a remote-centric culture and prioritize well-being with a comprehensive package. Our diverse community is united by a shared desire to make a difference in education.

Turnitin is seeking an experienced Security GRC Analyst with Cloud/AWS skills to join our Security & Compliance team. The analyst will ensure that information and cloud systems comply with relevant regulatory frameworks, industry standards, and internal policies, collaborate with various departments, monitor compliance, conduct assessments, and support initiatives to identify and mitigate risks.

This role reports to the GRC Information Security Manager.

Responsibilities:

  • Maintain compliance tracking capabilities to help ensure adherence with Turnitin’s security program and industry standards such as NIST CSF, NIST 800-53, SOC 2, TX-RAMP and PCI DSS.
  • Conduct risk and compliance assessments, audits, and risk evaluations to identify potential risk and compliance gaps.
  • Lead preparation and audit activities required to maintain our SOC 2 Type 2.
  • Collaborate with internal teams and external auditors for audit and compliance reviews.
  • Collaborate with sales and customer support teams to respond to security questionnaires and security posture questions from customers.
  • Support TPRM Program and conduct third-party risk assessments.
  • Complete user access reviews.
  • Administration of GRC platform.
  • Participate in the development and documentation of security policy, standards and processes to align with company information security strategy.
  • Provide security awareness and phishing training for employees and promote a culture of security and compliance.
  • Coordinate phish testing.
  • Collaborate with DevOps, IT, Legal, Engineering, People Team, and other departments to ensure security control and policy requirements are integrated into systems and business processes.
  • Automate manual compliance tasks and improve team processes.
  • Leverage AWS and Wiz for continuous monitoring.
  • Measure effectiveness vs just implementation.

Work Hours:

Candidate must be willing to work according to U.S. Eastern Time (ET).

Qualifications:

  • Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience).
  • 3+ years of experience in a role related to Information Security.
  • 1+ years AWS Cloud Services and basic scripting.
  • Professional certification such as CCSK, AWS Cloud Practitioner, or other related industry certification.
  • Familiarity with cybersecurity frameworks and regulatory standards such as NIST, SOC 2, TX-RAMP, and PCI DSS.
  • Familiarity of risk management and security best practices.
  • Experience with assessing security controls, risk mitigation strategies, and audit procedures.
  • Understanding of concepts related to AWS Cloud Infrastructure and security.
  • Experience conducting security impact analysis for system changes.
  • Experience conducting periodic internal security reviews or risk assessments to ensure that compliance procedures and technical configurations are followed.
  • Experience conducting third-party risk assessments.
  • Contract review experience for security requirements.
  • Highly organized and proactive individual capable of managing multiple responsibilities and delivering results.

Preferred Skills:

  • Experience running SOC 2 audits or NIST based authorizations.
  • Experience using Jira and Confluence for project and task management.
  • Hands-on experience with Wiz, KnowBe4, and Hyperproof.
  • Experience conducting third-party risk assessments.
  • Demonstrated knowledge of security assessment of cloud technology and services (AWS).
  • Entry level cybersecurity certification such as Security+, GIAC GSEC, or ISC2 Certified in Cybersecurity.

Technical skills:

  • Cloud Infrastructure with general knowledge of AWS services such as CloudFormation, Serverless, AWS Config, CloudTrail, IAM, and JSON
  • Basic scripting

Total Rewards @ Turnitin
Turnitin maintains a Total Rewards package that is competitive within the local job market. Beyond the intrinsic rewards of unleashing your potential to positively impact global education, and thriving in a collaborative, inclusive environment, extrinsic rewards include generous time off and health and wellness programs that offer choice and flexibility. The organization supports a remote-centric culture with a comprehensive package prioritizing well-being.

Our Mission is to ensure the integrity of global education and meaningfully improve learning outcomes.

Our Values underpin everything we do.

  • Customer Centric - We put educators and learners at the center of everything we do to ensure integrity and improve learning outcomes.
  • Passion for Learning - We seek teammates who are constantly learning and growing and build a workplace that enables them to do so.
  • Integrity - The heartbeat of Turnitin; it shapes our products, how we treat each other, and how we work with customers and vendors.
  • Action & Ownership - A bias toward action and empowerment to make decisions.
  • One Team - We break down silos, collaborate, and celebrate successes.
  • Global Mindset - We respect local cultures and embrace diversity; we think globally and act locally to maximize impact.
  • Remote First Culture
  • Health Care Coverage*
  • Education Reimbursement*
  • Competitive Paid Time Off
  • 4 Self-Care Days per year
  • National Holidays*
  • Charitable contribution match*
  • Monthly Wellness or Home Office Reimbursement/*
  • Access to Modern Health (mental health platform)
  • Retirement Plan with match/contribution*

* varies by country

Seeing Beyond the Job Ad
We recognize it’s unrealistic for candidates to fulfill 100% of the criteria in a job ad. If you’re willing to learn and evolve alongside us, join our team

Turnitin, LLC is committed to equal access to its programs, facilities, and employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

#J-18808-Ljbffr

  • Imus, Calabarzon, Philippines beBeeCybersecurity Full time ₱4,000,000 - ₱8,000,000

    About Kobalt.io: We solve cybersecurity for SMBs at scaleThis role is an integral part of our security delivery team. As a Compliance Analyst, you'll tailor cybersecurity protocols to support client security journeys and assist vCISOs with security assessments and technical implementation projects.Responsibilities:Assist vCISOs in executing risk assessments...


  • Imus, Calabarzon, Philippines beBeeAnalyst Full time $90,000 - $120,000

    Security Incident AnalystTaskUs is looking for a highly skilled Security Incident Analyst to join our team. In this role, you will be responsible for detecting and investigating security events across our global network, endpoints, and cloud environments.As a Security Incident Analyst, you will work closely with the security incident team to identify and...


  • Imus, Calabarzon, Philippines beBeeCompliance Full time ₱900,000 - ₱1,200,000

    Security Compliance RoleWe are seeking a skilled Security Compliance Analyst to join our security delivery team.Key Responsibilities:Collaborate with senior security professionals to tailor cybersecurity protocols for clients.Conduct security assessments and implement technical projects to support client security journeys.Provide compliance audit readiness...


  • Imus, Calabarzon, Philippines beBeeSecurity Full time ₱900,000 - ₱1,200,000

    Job OpportunityWe are seeking a highly skilled and experienced Senior Security Analyst to join our Cloud Services team. Our approach is designed for emerging pharma and biotech organizations, providing managed solutions with strategic consulting and global leadership management.Key Responsibilities:Monitor and manage client security systems, including...


  • Imus, Calabarzon, Philippines beBeeCybersecurity Full time $120,000 - $140,000

    About the RoleThis position is ideal for an experienced Cyber Security Analyst with advanced knowledge of SQL.Key Responsibilities:Conducting advanced investigations of potential automated and human threats, analyzing complex patterns and behaviors.Analyzing web traffic to develop actionable insights enhancing our security posture.Collaborating with globally...


  • Imus, Calabarzon, Philippines beBeeAuditor Full time $60,000 - $75,000

    Job Title\Auditor seeking a challenging role to evaluate technology controls and communicate findings.\About the Role\\Evaluate design and effectiveness of technology controls.\Identify and communicate IT audit findings to management.\Help identify performance improvement opportunities for assigned clients.\Communicate effectively with clients and team...


  • Imus, Philippines Connext Full time

    Join or sign in to find your next job Join to apply for the Sales Compensation Analyst role at Connext 5 days ago Be among the first 25 applicants Join to apply for the Sales Compensation Analyst role at Connext Get AI-powered advice on this job and more exclusive features. Direct message the job poster from Connext Connext is a dedicated team of...


  • Imus, Calabarzon, Philippines GridUnity Full time $40,000 - $80,000 per year

    WHO WE AREGridUnity is the industry leader in interconnection life cycle management, delivering cutting-edge software solutions that eliminate bottlenecks in the interconnection process and accelerate the transition to a more affordable, sustainable, and resilient energy future.Our MissionWe unite all grid interconnection stakeholders on a single platform...


  • Imus, Calabarzon, Philippines beBeeCybersecurity Full time ₱800,000 - ₱1,500,000

    Protect Your Future as a Cyber Security ExpertThis is a vital role that plays a key part in safeguarding an organization's digital assets and information against cyber threats and attacks. The Cyber Security Analyst must assess security risks, develop effective security measures, and maintain vigilance against potential breaches to ensure the...


  • Imus, Calabarzon, Philippines beBeeSoftware Full time ₱1,500,000 - ₱2,500,000

    Python Software EngineerWe are seeking an experienced Python Software Engineer to drive innovation in cybersecurity, software development, and big data technology as part of our IT team.About the Role:The successful candidate will develop integrations, playbooks, and automations to enhance security operations.This includes designing and implementing...