Jobs and Careers
SO

Staff CyberSecurity Analyst

Southern Glazer's Wine & Spirits
United Statesfull_timeVerifiedPosted 2 Jul 2025

About the role

What You Need To Know

 

Open the door to a groundbreaking tech career with an industry leader. Southern Glazer’s Wine & Spirits is North America’s preeminent wine and spirits distributor, as well as a family-owned, privately held company with a 50+ year legacy of success. To create a new era in alcohol beverage sales and service, we’re heavily invested in the most transformative new technologies – and the most brilliant tech professionals. Southern Glazer’s was named by Newsweek as a Most Loved Workplace and is included on the Forbes lists for Largest Private Companies and Best Employers for Diversity.

 

As a full-time employee, you can choose from a full menu of our Top Shelf Benefits, including comprehensive medical and prescription drug coverage, dental and vision plans, tax-saving Flexible Spending Accounts, disability coverage, life insurance plans, and a 401(k) plan. We also offer tuition reimbursement, a wellness program, parental leave, vacation accrual, paid sick leave, and more.

 

We offer continuous learning and career growth in a fast-paced environment where you are respected, your voice is heard, and technology is part of our strategy for success. If you’re looking to fill your glass with opportunity, come join our FAMILY.

Overview

 

The Staff Cybersecurity GRC Analyst plays a critical role in enhancing the organization's governance, risk management, and compliance frameworks. By expertly managing and monitoring controls, the Staff GRC Analyst facilitates informed decision-making and ensures adherence to compliance standards. The Staff GRC Analyst oversees software, product, and client operations, including continuity and change management, to ensure seamless functionality. This role requires advanced application of concepts and practices to complete assignments of high complexity, often involving novel and untested solutions. The Staff GRC Analyst coordinates work on multiple or cross-functional initiatives, provides direct and indirect leadership, and functions with a high degree of autonomy.

Primary Responsibilities

 

  • Keeps abreast and leads others on industry trends. 
  • Monitors trends and reports on process metrics.
  • Investigates control gaps and works to implement corrective actions.
  • Researches, analyzes, guides and reviews the effectiveness and efficiency of InfoSec procedures.
  • Follows established processes, standards, and policies.
  • Leads the development and review of documentation, as well as status reports, to ensure it is fully executable and available.
  • Acts as policy guardian for the management of processes, including responsibility for standards issuance and revision of procedures or forms, as appropriate.
  • Provides training on processes and security management. 
  • Designs, executes, and supervises assurance and audit procedures and standards to assess control effectiveness and monitor the risk posture
  • Supports and guides operational reporting, communications and governance of SGWS IT processes.
  • Leads risk identification and assessment, response and mitigation, and monitor and report on risks.
  • Assist with periodic reporting and presentation on status for a variety of GRC-related stakeholder requirements.

Preferred Qualifications

 

  • Master’s degree in information security, IT, or a related field.
  • Professional certifications such as CISA, CISM, CRISC, or CISSP.
  • Experience leading cross-functional teams is a plus.
  • Strong analytical and problem-solving skills.
  • Proven ability to manage multiple projects and priorities.
  • Advanced knowledge of policy development and dissemination best practices.
  • Deep knowledge of information security best practices and standards (e.g., ISO/IEC 27001, ITIL, COBIT, NIST CSF and 800 series).
  • Experience with GRC tools and technologies.
  • Proficiency in risk management software.
  • Strong technical background in IT and information security.
  • Experience in the food, beverage, CPG, or distribution industries a plus.

Minimum Qualifications

 

  • Bachelor’s degree in information security, IT, or a related field, or equivalent work experience.
  • 8+ years of experience in a GRC (governance, risk, compliance), Information Security, IT, or Audit capacity.
  • Proven experience in developing and implementing GRC frameworks and processes.
  • Advanced knowledge of IT and security governance principles.
  • Experience with risk assessment and mitigation strategies.
  • Cloud Governance & Assurance over Cloud Technologies
  • Strong understanding of regulatory requirements and compliance standards.
  • Experience with information security practices in OT/IOT/ICS

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Southern Glazer's Wine & Spirits

View company profile →