Search jobs > Eagan, MN > Risk control analyst

Information Security Risk and Controls Analyst (Sr/Principal)

MISO
Eagan, MN, US
Full-time

Location : Carmel, IN or Eagan, MN

As MISO’s Information Security Risk and Controls Analyst (Senior / Principal) , you will be at the forefront of our cybersecurity efforts.

Your role will involve identifying risks, determining suitable controls and their owners, spotting gaps, modifying controls, and ensuring they are maintained effectively.

You will collaborate closely with IT, Operations, Compliance, and other teams to pinpoint information security risks and devise mitigation strategies.

Additionally, you will support the administration of MISO’s information security risk management frameworks, focusing on security and risk.

You will also maintain security controls and compliance, working alongside security operations and development teams to remediate and mitigate any findings.

The responsibilities as our Information Security Risk and Controls Analyst (Senior / Principal) include :

  • Build, modify, and maintain IT Security controls
  • Identify IT Security Risks
  • Identify potential risk mitigations
  • Update risk and control matrices - Provide IT Security best practice input to IT projects
  • Monitor IT Security controls
  • Provide best practice guidance to IT Security control owners to help them maintain their controls and prepare for audits

In one year, you’ll know you are successful if :

  • Your impact on revising / improving our Risk and Control Matrices is clear and visible.
  • You are able to take point on risk and controls projects with other teams with little or no guidance
  • You have built strong stakeholder relationships with our risk and control owners

What we are looking for :

  • A minimum four to six years of experience in information security risk and compliance with deep knowledge of risks and controls
  • Experience performing cyber security risk assessment, treatment planning and reporting
  • Possesses foundational understanding of Risk Management concepts and principles
  • Possesses foundational understanding of IT concepts and principles
  • Understanding of security management and / or information risk and compliance processes and industry frameworks (SOC2, ISO27001, NIST Cybersecurity Framework (CSF, NIST 800-53 COBIT).
  • CISSP, CISA, CISM, and / or CRISC Highly preferred. Other technical security certifications beneficial.

Appropriate level will be determined based upon experience and knowledge.

Transformative innovation is happening in the electric industry, from digitalizing homes and distributed resources to renewable energy and an ever-changing grid.

MISO manages the electricity superhighway in the Central U.S. and through use of groundbreaking research and advanced technology, our highly skilled employees ensure power flows reliably to 45 million Americans.

Operating the electricity grid, running a robust energy market, planning for a bright future it’s what our immensely hardworking and dedicated team does every day.

At MISO we offer a hybrid work environment and a comprehensive benefits package available on your first day of employment.

hiring #DiscoverMISO #MISOCareers #lifeatMISO #weareMISO

MISO, What We Do

LI-HYBRID

LI-JH1

20 days ago
Related jobs
Promoted
Iceberg Technology Group
Minneapolis, Minnesota
Remote

IAM Security Analyst - OIM to Okta - MPLS, MN - REMOTE. ...

Promoted
Ladders
Eden Prairie, Minnesota

Identify and manage the risk/return trade-offs in the subprime space, design and monitor champion/challenger performance, monitor custom scorecards, update segmentation, investigate additional benefits of alternative data sources/scorecards and perform ad-hoc analysis as needed. We are continually i...

The Cigna Group
Minneapolis, Minnesota

Collaborate with external business development contacts and other internal departments, such as all areas of EviCore and broader PBS including: Sales and Account Management, Legal, Product Accounting, Technology, Human Resources and Finance to facilitate cross-functional initiatives key to margin gr...

WELLS FARGO BANK
Minneapolis, Minnesota

They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, ti...

Iceberg Technology Group
Minneapolis, Minnesota
Remote

IAM Security Analyst - OIM to Okta - MPLS, MN - REMOTE. ...

WELLS FARGO BANK
Minneapolis, Minnesota

They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, ti...

Sentara
Minnesota

Lead team of cyber security and privacy governance professionals to set standards and processes to mitigate information and technology risks for Sentara Healthcare. Reporting directly to the Chief Information Security Officer, this leader will work proactively across a broad range of business lines,...

UnitedHealth Group
Eden Prairie, Minnesota
Remote

As a Principal Information Security Engineer your responsibilities involve monitoring, evaluating, and maintaining systems and procedures to safeguard internal information systems, networks, databases, and web-based security. You will conduct vulnerability assessments and monitor systems, network, d...

Stan Johnson Company
Minneapolis, Minnesota

The focus will be on demonstrating a high-level understanding of commercial insurance terminology and industry trends, consistent attention to detail and accuracy in all job responsibilities, recommending the next course of action with confidence, and working independently with minimal supervision. ...

WELLS FARGO BANK
Minneapolis, Minnesota

They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, ti...