Entry-level information security role supporting governance, risk, and compliance programs across Kaplan’s education technology operations.
Role Overview
The Information Security GRC Analyst I supports IT governance, risk management, and compliance functions across Kaplan’s organization, focusing on frameworks such as ISO 27001, NIST, and COBIT.
Key Responsibilities
- Support development and maintenance of IT governance frameworks (COBIT, ITIL).
- Manage IT policies, standards, and compliance monitoring.
- Conduct third-party vendor risk assessments, including AI and cloud providers.
- Perform internal audits and support external compliance audits.
- Support IT risk management, risk registers, and mitigation activities.
- Conduct phishing simulations and manage security awareness programs.
Requirements
- 1+ years of audit, compliance, or information security experience.
- Bachelor’s degree in information systems, cybersecurity, or related field (or equivalent experience).
- Strong understanding of ISO 27001, NIST, COBIT, PCI-DSS.
- Strong analytical, communication, and problem-solving skills.
Additional Information
Hybrid schedule with 3 days remote and 2 days in office. Comprehensive benefits and competitive compensation.