Sr. Security Governance, Risk & Compliance Analyst - Paze
Early WarningAbout the role
At Early Warning, we’ve powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.
Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.
Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.
The Sr. Security Governance, Risk & Compliance Analyst - Paze position will support the Audit Readiness program within SecGRC with review and responding to Paze Customer, Merchant, and Integrator inquiries on questionnaires and contract negotiations. This will requires a comprehensive knowledge of Early Warnings Policies, Standards, and Processes, along with a substantial understanding of Information Security and Risk frameworks and best practices.Overall Purpose
The Sr. Security Governance, Risk & Compliance Analyst provides comprehensive activities supporting information security governance, risk, and compliance, including but not limited to: developing, assessing and recommending security policies, standards, and procedure updates in accordance with legal, regulatory, and contractual requirements; conducting and leading risk management activities; driving security risk assessment and remediation activities; analyzing and improving the internal controls testing program; facilitating audits and assessments; information security issues oversight; developing and improving security training and awareness activities.
Essential Functions
- Plan and support the Security Governance, Risk and Compliance programs and department initiatives.
- Oversee the security policy program, which includes policy drafting, managing approvals in the Governance, Risk, and Compliance tool, facilitating cross-functional input, and ensuring compliance with policies.
- Design and improve internal control testing program and practices; advise management on control design and implementation.
- Provide consultation to management on regulatory, legal, and contractual requirements.
- Act as Point of Contact and Project Manager for Information Technology and Security focused external and internal audits and assessments (SOC-2, GLBA, FISMA, PCI DSS, FFIEC, & others).
- Assess information security risk and recommend mitigation activities in alignment with Enterprise and Operational Risk Management requirements.
- Document work performed for all audits and assessments and provide support for required responses.
- Track and report on compliance metrics for assigned areas.
- Present to executive staff, business line leaders, and external customers on various security topics (risks, issues, policies, governance trends, compliance gaps, etc.).
- Participate and lead security awareness programs efforts (security awareness training, Company communications, events, etc.)
- Serve as a mentor for Security Governance, Risk and Compliance staff.
- Effectively communicate Security-related risks, control gaps/failures, and vulnerabilities to business owners.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s