Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Information Security GRC Specialist

$25k

BHG Financial

Join BHG Financial

Are you ready to join a growing team that puts a premium on productivity and has an award-winning culture centered around transforming talented employees into effective business leaders? Then BHG Financial is the place for you.

In 2001, we started with an idea, an opportunity, and $25,000. Back then, our focus was strictly on serving those in the medical industry. With healthcare in our heritage, we soon expanded to serve high-earning professionals in many other industries, providing all with leading-edge financial solutions, including our extensive network of community banks.

Today, BHG Financial has firmly established its legacy as a leader in the financial services space. Founded on the philosophy of a better way to borrow, we are dedicated to helping accomplished professionals, small businesses, and institutions build upon their success through innovative financial solutions, a hassle-free process, and personalized concierge service.

Our relentless commitment to the success of our customers is part of what has made BHG Financial thrive. We take a 360-degree view of our customers to tailor the best solutions for their financial aspirations. Today's professionals have multiple sources of income, not just their paycheck. Therefore, it is essential to factor those in when making responsible lending decisions. Our continued focus on data, analytics, and proprietary modeling has enabled faster funding for our customers.

From business to personal loans to relationships with community banks, the country's top professionals and business owners rely on us for our exceptional financial solutions and concierge service to continue their success and legacy.

Who You Are

You are an experienced Information Security professional with deep expertise in Business Continuity and Disaster Recovery (BC/DR) and a strong foundation in Governance, Risk, and Compliance (GRC). You operate with a high degree of autonomy, bring a strategic mindset, and are comfortable leading complex initiatives that directly impact business operations and resilience.

You are a trusted advisor who can translate technical and operational risks into business decisions, influence stakeholders across the organization, and drive measurable improvements in BHG's resilience posture.

What You'll Do

BC/DR Program Leadership (Primary Focus)

  • Own and lead the enterprise Business Continuity and Disaster Recovery (BC/DR) program, including strategy, governance, and execution.
  • Define and maintain BC/DR frameworks, policies, and standards, including RTO/RPO expectations, system tiering, and recovery strategies.
  • Drive enterprise-wide Business Impact Analysis (BIA) processes to identify critical services, dependencies, and recovery priorities.
  • Establish and oversee BC/DR testing strategy, including scenario design, execution, and continuous improvement of recovery capabilities.
  • Evaluate organizational resilience and identify gaps, risks, and opportunities to improve recovery readiness.
  • Advise leadership on resilience risks, recovery tradeoffs, and business continuity investment priorities.
  • Report on BC/DR readiness and testing outcomes to senior leadership and support board-level reporting.

Risk & Compliance Integration (Secondary Support)

  • Lead or support risk assessments for critical systems, strategic initiatives, and operational processes.
  • Define and evaluate risk related to policy exceptions, resilience gaps, and third-party dependencies.
  • Partner with Enterprise Risk Management (ERM), Legal, and Technology teams to align BC/DR with broader risk management practices.
  • Evaluate third-party resilience capabilities and ensure alignment with BHG's recovery expectations.
  • Contribute to the development and evolution of IS policies, standards, and procedures, particularly where they intersect with resilience and operational risk.

Cross-Functional Leadership & Influence

  • Collaborate with business and technology leaders to embed resilience into operational processes and system design.
  • Influence stakeholders across the organization to meet BC/DR and risk management expectations.
  • Translate technical requirements into business impacts, enabling informed decision-making at all levels.
  • Drive a culture of resilience and security awareness through training, exercises, and communications.

Continuous Improvement & Program Maturity

  • Identify and implement process improvements, automation opportunities, and tooling enhancements for BC/DR and GRC workflows.
  • Monitor regulatory and industry developments (e.g., FFIEC, GLBA, ISO, NIST) and ensure the BC/DR program evolves accordingly.
  • Define and track program metrics and KPIs to measure resilience maturity and effectiveness.
  • Lead remediation efforts for identified gaps, ensuring accountability and timely completion.
What You'll Need
  • Experience in a BC/DR role, with a solid understanding of planning and testing.
  • Eight (8) years of experience in the IS GRC field or combination of experience and education in related disciplines.
  • Bachelor's Degree, ideally in Computer Engineering, Computer Science, Cybersecurity or Information Systems Management.
  • Possess current relevant certifications (e.g., CISA, CISM, CRISC, etc.) or be willing to obtain within 1 year of assignment.
  • Familiar with compliance requirements such as FFIEC, PCI, GLBA, CCPA, SOX, etc.
  • Familiar with IS frameworks such as SOC 2, NIST, ISO, FISMA, etc.
  • Familiar with IS risk frameworks such as OCTAVE, FAIR, ISACA Risk IT, ISO 27005, NIST CSF, etc.
  • The ability to manage multiple priorities and navigate complex issues.
  • Strong documentation skills.
  • Excellent interpersonal and communication skills, with the ability to adapt communication style for broader business.
  • Ability to analyze information.
  • Proficiency in tackling complex challenges.
  • Creative problem-solving abilities.
  • Ability to translate technical requirements to business objectives.
  • Travel requirement: All roles require travel during the first 6 months of employment to attend the BHG Oars in Experience. After the initial 6 months, ongoing travel is expected at approximately ~5% annually for periodic team on-sites, team meetings, and cross-functional collaboration.
  • Work Authorization: This role is not eligible for employer-provided immigration sponsorship. To be considered, applicants must already possess valid U.S. work authorization that will not require sponsorship now or in the future.
Life at BHG Financial

At BHG Financial, we work hard and aren't afraid to take risks. Since the beginning, our core values of PMA (positive mental attitude), team player, and loyalty have been the driving force behind every interaction we have between each other and our customers. We have a healthy respect for the daily grind, yet we value work/life balance. We believe that all employees should have the opportunity to lead and that good ideas can come from anyone. From the top down, our leaders are actively involved not only in strategic oversight and running the business, but also in the well-being and growth of all employees. We consider people our #1 asset, and help employees realize their full potential, set and exceed their goals, and explore new opportunities for personal and professional development.

Why You Should Join BHG Financial

We strive to offer amenities, opportunities, events, and programming that support the interests of our teams, while furthering the culture that makes us Great Place to Work® certified. Some of the benefits you can expect when you join BHG Financial include:

  • Medical/Rx/Dental/Vision coverage for employees and their eligible family members
  • Competitive PTO and vacation policies
  • 1 Friday off each month for Wellness Weekends
  • Company 401(k) plan with employer contributions after one year
  • Company-sponsored training and certification opportunities
  • Quarterly award ceremonies where top achievers are celebrated and receive additional bonuses
  • Ongoing volunteer opportunities to give back to the community through our BHG Cares program

If you're ready for a career where you can exercise your passions, be surrounded by co-workers who are relentlessly committed to service, and have a team-player mindset, apply today!

BHG Financial is committed to equal treatment and opportunity in all aspects of recruitment, selection, and employment without regard to gender, race, religion, national origin, ethnicity, disability, gender identity/expression, sexual orientation, veteran or military status, or any other category

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Senior Information Security GRC Specialist in United States vacancy
  • $102.5k - $187.9k

     ...and Governance, Risk, and Compliance (GRC), EY is seeking SAP Security and GRC professionals who understand...  ...Security and GRC solutions. As a Senior Consultant in Risk Technology, you will...  ...’s degree in computer science, information systems, information security, or a... 
    Senior
    Summer holiday
    Flexible hours
    Shift work

    EY

    New York, NY
    1 day ago
  •  ...Senior Information Security & GRC Analyst - 2 Positions (Hybrid) The State Corporation Commission's (SCC) Health Benefit Exchange (HBE) division seeks two analysts interested in rewarding public service careers to join its Information Security team. One position is... 
    Senior
    Work at office
    Remote work

    Virginia Department of Human Resource Management

    Richmond, VA
    2 days ago
  •  ...Senior Information Security Specialist Rush Street Interactive (NYSE: RSI) is a market leader in online casino and sports betting, currently operating...  ...incidents, breaches, and investigations Partner with GRC and Legal teams as a technical expert to ensure compliance... 
    Senior
    Remote work

    Rush Street Gaming

    United States
    5 days ago
  • $90k - $135k

     .... Our team members are empowered to take ownership, make informed decisions, and make a meaningful impact as the bank continues...  ...at your best. Together we win! THE OPPORTUNITY The Senior GRC Information Security Analyst role will be part of the Information Security... 
    Senior
    Local area
    Immediate start
    Flexible hours

    Banc of California

    Santa Ana, CA
    5 days ago
  •  ...Sr. Information Security GRC Analyst Tire Rack is seeking a Senior Information Security GRC Analyst to support and advance our Information Security Governance, Risk, and Compliance (GRC) program. In this role, you will assess and strengthen IT and security controls... 
    Senior
    Weekend work

    Discount Tire

    South Bend, IN
    5 days ago
  • $111.75k - $167.5k

     ...the limits off living. Join us as an Information Security Compliance Analyst and play a key role...  ..., with support and guidance from senior experts while owning essential programme...  ...scope and collaborating with third party specialists to ensure it is delivered effectively.... 
    Senior
    Remote work
    Flexible hours

    Smith & Nephew

    Andover, MA
    4 days ago
  •  ...Senior Information System Security Specialist TriTech Enterprise Systems (TriTech) is seeking a Senior Information System Security Specialist to support a Maryland State contract with the Maryland Health Benefit Exchange (MHBE). The candidate will perform internal and... 
    Senior
    Contract work
    Flexible hours

    TriTech Enterprise

    Baltimore, MD
    6 days ago
  •  ...Senior Information Systems Security Specialist - Position Description Join a team that's shaping the future of Navy support. ICI Services -a 100% employee-owned company proudly celebrating 26 years of excellence -is seeking a Senior Information Systems Security... 
    Senior
    Temporary work
    For contractors
    Immediate start
    Flexible hours

    ICI Services

    Washington DC
    4 days ago
  • $150.45k - $233.45k

    Senior Information Security Compliance Specialist Company: The Boeing Company The Boeing Company is looking for a Senior Information Security Compliance Specialist...  ...10+ years of experience with SAP Security and/or SAP GRC 5+ years of experience in government security programs... 
    Senior
    Permanent employment
    Full time
    For subcontractor
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    Shift work

    Boeing

    Oklahoma City, OK
    10 hours ago
  •  ...Job Description Job Description Senior Information Security Specialist Near Casa Grande, Arizona APN Staffing is now hiring for our client - Information Security Specialist this is a Senor Level position and is a DIRECT HIRE . Hybrid work schedule after... 
    Senior
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Local area
    Immediate start

    APN Staffing & Employment Solutions

    Casa Grande, AZ
    8 days ago
  •  ...Trust Assurance Services team drives BSC technology and information security adherence to regulatory standards, as well as policies, standards...  ...for BSC. The Information Security Risk & Governance Specialist, Senior will report to the Senior Manager, Technology External... 
    Senior
    Work at office
    2 days per week

    Blue Shield of CA

    Rancho Cordova, CA
    1 day ago
  • $102.74k - $154.22k

     ...Information Security Risk & Governance Specialist, Senior The Technology and Data Trust Assurance Services team drives BSC technology and information security adherence to regulatory standards, as well as policies, standards, and controls development, with the goal... 
    Senior
    Full time
    Part time
    Work at office
    Local area
    Work from home
    Home office
    2 days per week

    Blue Shield Of California

    Woodland Hills, CA
    2 days ago
  •  ...Senior Information Security Analyst Our client, a leading organization in the financial services industry, is seeking a dedicated and skilled...  ...Information Security Analysis, Governance, Risk, and Controls (GRC), or related fields ~ Practical experience with... 
    Senior

    Experis

    Chandler, AZ
    3 days ago
  •  ...Summary of Purpose: The Senior IT Security Analyst serves as INPO's primary cybersecurity risk...  ...risks into executive-level insights that inform prioritization, investment and strategic...  ...) and Governance, Risk and Compliance (GRC) platforms (e.g. ServiceNow GRC, X-Analytics... 
    Senior
    Work experience placement

    Institute of Nuclear Power Operations

    Atlanta, GA
    2 days ago
  • $59.53 - $67.53 per hour

     ...Senior Information Security Analyst Genesis10 is currently seeking a Senior Information Security Analyst for a contract position with a Global...  ...experience, education ~ Governance, Risk, and Controls (GRC), cybersecurity, information security, or IT risk management... 
    Senior
    Hourly pay
    Contract work

    Genesis10

    Charlotte, NC
    2 days ago
  • $90k - $115k

     ...Department of Defense restrictions. Our Senior Security Policy Analyst is responsible for...  ...experience in governance, risk, and compliance (GRC) operations, and excels at clear...  ...support AI governance awareness programs to inform employees about responsible AI use,... 
    Senior
    Contract work
    For contractors
    Work at office
    Local area
    Immediate start
    Remote work
    3 days per week

    WPS Health Solutions

    Madison, WI
    5 days ago
  •  ...SAP GRC/Security Senior Consultant Turnkey Consulting is a leading advisory and implementation organization with deep expertise in risk...  ...redesign and remediation projects Provide a broader range of information risk management solutions to clients as required Build... 
    Senior
    Local area
    Remote work

    Turnkey Consulting

    United States
    5 days ago
  •  ...Cybersecurity Senior GRC Analyst Location: Denver, PA, US, 17517 Workplace Environment: Hybrid Company: UGI Utilities...  ...senior leadership. Qualifications: ~ Bachelor’s degree in Information Security, Risk Management, Computer Science, or related field,... 
    Senior
    For contractors

    UGI

    Denver, PA
    4 days ago
  •  ...Senior It Security Risk Analyst Amerisure creates exceptional value for its partners, policyholders...  ...risk into business impact and enabling informed decision-making. Knowledge, Skills...  .... Experience in Logicgate or another GRC tool. Experience using AI driven tools... 
    Senior
    Work at office
    Local area
    Flexible hours

    Amerisure

    Farmington Hills, MI
    4 days ago
  •  ...Job Description Senior Information Security Analyst Wilmington, DE Monday - Friday 8:00 am - 5:00 pm Remote The Information Technology...  ...properly recorded, tracked and remediated in CSC global GRC tool. Participate and drive the development of risk... 
    Senior
    Local area
    Remote work
    Worldwide
    Monday to Friday

    Corporation Service Company

    Wilmington, DE
    3 days ago
  • $80k - $130k

     ...Overview VTG is seeking a Sr. Information System Security Specialist to support the Navy located at the Washington Navy Yard . Position is 10...  ...security posture for an information system or program. More senior specialists may assist or develop system security policy... 
    Senior
    Contract work
    Work experience placement

    VTG

    Washington DC
    1 day ago
  •  ...Senior Archer GRC Solution Engineer At Fidelity, you will have the opportunity to share your technical knowledge to help strengthen...  ...) and advanced workflows. ~9 years of experience in Information Security, Information Technology, security controls, and GRC industry... 
    Senior

    Fidelity Investments

    Roanoke, TX
    2 days ago
  •  ...We are seeking a highly skilled Senior Cloud Security Specialist to support a critical data access management initiative within the Security Engineering...  ..., and the implementation and operation of appropriate information security plans, procedures, and controls techniques... 
    Senior

    ClearFocus Technologies

    Washington DC
    4 days ago
  •  ...Information Systems Security Expert (ISSE) (Mid to Senior Level) Location: Suitland, Maryland Clearance: TS/SCI Salary: Highly Competitive Job Description: The Information Systems Security Engineer (ISSE) shall perform, or review, technical security assessments... 
    Senior

    Fullscope

    Suitland, MD
    5 days ago
  •  ...Data Security Engineer (DRM Specialist) - Senior, Zero Trust Program (USSOCOM) MacDill Air Force Base, FL ( -ASM Description Athenix Special...  ...SIPR and Top-Secret networks) and Microsoft Purview Information Protection (on NIPR). You will move the Command beyond... 
    Senior

    Athenix Solutions Group, LLC

    Tampa, FL
    6 days ago
  •  ...Senior Data Security Engineer (DRM Specialist) Tampa, FL Barbaricum is a rapidly growing government contractor providing leading-edge support to...  ...Kiteworks Private Content Network and Microsoft Purview Information Protection. Design and implement Attribute-Based... 
    Senior
    For contractors

    Barbaricum

    Tampa, FL
    4 days ago
  • $88.95k - $150.43k

     ...Senior Security GRC Analyst and Internal Security Assessor (ISA) At Commerce, our mission is to empower businesses to innovate, grow,...  ...solutions. Who You Are: Experience: 6+ years in an Information Security or IT Audit role, with at least 3 years of deep... 
    Senior
    Work at office
    Local area
    3 days per week

    BigCommerce

    Austin, TX
    7 days ago
  •  ...Senior Technology GRC Analyst The Senior Technology GRC Analyst helps the organization understand and manage technology and information security risks before they become larger issues. This role provides independent oversight of technology and cybersecurity risks, evaluates... 
    Senior
    Work at office
    Local area
    Remote work
    Flexible hours

    Together Credit Union

    Saint Louis, MO
    3 days ago
  •  ...Job: SAP GRC Security Consultant Location: Atlanta GA Duration: 12 months Rate: $80 on C2C Only USC...  ...systems/devices used to safeguard the organization's information assets. Also responsible for analyzing the information security... 
    Contract work

    Concord IT Systems

    Atlanta, GA
    3 days ago
  •  ...Summary: This is a full-time position for a Senior Information Security Analyst ("Security Analyst") within the Information Security team that...  ...framework and NYDFS-Part 500 regulations  Working with GRC applications and toolsets, such as RSA Archer ... 
    Senior
    Full time
    Work experience placement
    Work at office

    ADEX

    New York, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Information Security GRC Specialist. Be the first to apply!