Jobs and Careers
BH
Sr. GRC Specialist, Information Security
BHG FinancialUKRemotefull_timeVerifiedPosted 30 Jan 2025
About the role
Are you ready to join a growing team that puts a premium on productivity and has an award-winning culture centered around transforming talented employees into effective business leaders? Then BHG Financial is the place for you.
In 2001, we started with an idea, an opportunity, and $25,000. Back then, our focus was strictly on serving those in the medical industry. With healthcare in our heritage, we soon expanded to serve high-earning professionals in many other industries, providing all with leading-edge financial solutions, including our extensive network of community banks.
Today, BHG Financial has firmly established its legacy as a leader in the financial services space. Founded on the philosophy of a better way to borrow, we are dedicated to helping accomplished professionals, small businesses, and institutions build upon their success through innovative financial solutions, a hassle-free process, and personalized concierge service.
Our relentless commitment to the success of our customers is part of what has made BHG Financial thrive. We take a 360-degree view of our customers to tailor the best solutions for their financial aspirations. Today's professionals have multiple sources of income, not just their paycheck. Therefore, it is essential to factor those in when making responsible lending decisions. Our continued focus on data, analytics, and proprietary modeling has enabled faster funding for our customers.
From business to personal loans to relationships with community banks, the country’s top professionals and business owners rely on us for our exceptional financial solutions and concierge service to continue their success and legacy.
Who You AreYou are a motivated and passionate Information Security Professional specializing in governance, risk, and compliance (GRC). You are great at producing results and are an energetic, highly motivated individual who thrives in a fast-paced environment where you can help BHG ensure its governance, risk, and compliance needs are met.
In 2001, we started with an idea, an opportunity, and $25,000. Back then, our focus was strictly on serving those in the medical industry. With healthcare in our heritage, we soon expanded to serve high-earning professionals in many other industries, providing all with leading-edge financial solutions, including our extensive network of community banks.
Today, BHG Financial has firmly established its legacy as a leader in the financial services space. Founded on the philosophy of a better way to borrow, we are dedicated to helping accomplished professionals, small businesses, and institutions build upon their success through innovative financial solutions, a hassle-free process, and personalized concierge service.
Our relentless commitment to the success of our customers is part of what has made BHG Financial thrive. We take a 360-degree view of our customers to tailor the best solutions for their financial aspirations. Today's professionals have multiple sources of income, not just their paycheck. Therefore, it is essential to factor those in when making responsible lending decisions. Our continued focus on data, analytics, and proprietary modeling has enabled faster funding for our customers.
From business to personal loans to relationships with community banks, the country’s top professionals and business owners rely on us for our exceptional financial solutions and concierge service to continue their success and legacy.
Who You AreYou are a motivated and passionate Information Security Professional specializing in governance, risk, and compliance (GRC). You are great at producing results and are an energetic, highly motivated individual who thrives in a fast-paced environment where you can help BHG ensure its governance, risk, and compliance needs are met.
What You'll Do
- Coordinate and manage BHG’s SOC 2 Type 2 audit engagement.
- Support the implementation of GRC strategies.
- You will be responsible for assisting with multiple GRC activities, including, but not limited to: Information Security Metrics; Security awareness training; Policies, standards, and procedures; Exceptions to policies and standards; Audit and compliance frameworks (GLBA, FFIEC, PCI, NIST, etc.), such as: User access reviews for applications, databases, and operating systems, as well as control assessments
- Handle risk assessments of systems and third parties, including developing treatment plans
- Ensure the business has business continuity and disaster recovery
- Ability to apply data privacy principles within the framework of GRC
- Develop enterprise and functional team-specific presentations to promote a security mindset.
- Support executive committees by developing agendas, documenting meeting minutes, and maintaining relevant documentation.
- Identify opportunities for automation and process efficiencies and assist with the implementation of GRC toolsets.
- Collaborate with other BHG teams such as Architecture, Infrastructure, Enterprise Risk Management (ERM), Product, Legal, People Development (PD), etc. to ensure BHG is complying with policies, standards, and regulatory requirements.
- Stay abreast of new regulatory, legal, compliance, and security requirements.
- Collaborate with team members within and outside of GRC.
- Perform other duties as required.
What You'll Need
- Prior experience managing complex audit engagements, such as SOC 2.
- 5+ years of experience in the IS GRC field or a combination of experience and education in related disciplines.
- Bachelor’s Degree, ideally in Computer Engineering, Computer Science, Cybersecurity, or Information Systems Management.
- Possess current relevant certifications (e.g., CISA, CISM, CRISC, etc.) or be willing to obtain within 1 year of assignment.
- Familiar with compliance requirements such as FFIEC, PCI, GLBA, CCPA, SOX, etc.
- Familiar with IS frameworks such as SOC 2, NIST, ISO, FISMA, etc.
- Familiar with IS risk frameworks such as OCTAVE, FAIR, ISACA Risk IT, ISO 27005, NIST 800-30, etc.
- The ability to manage multiple priorities and navigate complex issues.
- Strong documentation skills.
- Excellent interpersonal and communication skills.
- Ability to analyze information.
- Proficiency in tackling mid-sized problems.
- Creative problem-solving abilities.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s
Similar roles
Sr. Program Manager, Next Gen Transformation - Remote
CSAA Insurance Group
Arizona - Home Teleworkers, United StatesRemote
$202,550/yr
Sr. Business Analyst, Capital One Shopping (Remote-Eligible)
Capital One
McLeanRemote
$124,400/yr
Sr. Associate, Process Manager - Treasury Management (Business Banking)
Capital One
McLean
$98,400/yr