Information Security Compliance Analyst

| Hybrid
Sorry, this job was removed at 6:47 a.m. (CST) on Thursday, September 16, 2021
Find out who's hiring remotely in Chicago.
See all Remote Cybersecurity + IT jobs in Chicago
Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

The Role 

We're looking for an experienced security compliance analyst to join our growing Information Security team.  This role will be reporting to the Manager of Information Security. Our security team works on build on automated tools and creates innovative processes to help make security and compliance at GTI easy, instant, and omnipresent.

Responsibilities 

  • Lead ongoing internal and external SOX and HIPAA audits and other security audits that are relevant to GTI’s business; lead security and compliance audits with GTI customers, and complete customer security questionnaires.
  • Serve as an internal point-person for GTI employees by translating security policy and compliance frameworks into actionable requirements and guidance to inform their work.
  • Perform ongoing internal operations and tasks, including ITGC security reviews, and maintain documentation associated with GTI’s compliance requirements
  • Participate in risk management, incident response, business continuity tests, and other compliance activities and exercises.
  • Gather and maintain metrics associated with the Information Security program, working with others on the team.
  • Work with product engineers and product managers, when appropriate, to ensure mitigation of discovered risks and threats, and evangelize best practices and security compliance.
  • Lead vendor and 3rd-party security assessments, ensuring that all GTI vendors and purchased software comply with our security program.
  • Help create and maintain information security documentation, including security-related policies and procedures, ensuring that the GTI compliance documentation is always up to date and appropriately disseminated throughout the organization.
  • Research and stay abreast of the compliance landscape evaluating new security frameworks and compliance programs that may be applicable to GTI’s business.
  • Maintain a running log of information security issues and work across the organization to ensure that they are addressed in a timely manner.

Qualifications  

Our employees come in all shapes and sizes, but to be successful in this role with us, you'll at least need:

  • We expect that this role will require at least 3 to 5 years of experience working in a highly regulated space, with responsibilities relating to security and compliance.
  • You shouldn’t be a newcomer to key security concepts, such as relating to IAM, vendor management, and risk management. Additionally, navigating compliance with the alphabets, including SOX, SOC, CCPA, and HIPAA should be a part of your repertoire. You don’t need to have experience with all of them, but you should have had enough exposure to be able to quickly pick up others.
  • Generally, a bachelor's degree in a relevant field is really helpful in working with our team on this kind of work. But feel free to convince us if you're the exception.
  • We're doing some big things, and we'll find some roadblocks along the way, big and small. A big part of this role is keeping an even keel and finding the route through or around the obstacles.
  • This role requires lots of communication with customers and everyone at GTI. Your colleagues will rely on your ability to translate security requirements into digestible bits of information for them. Customers will expect you to quickly articulate components of the GTI security program to help them assess risk, including as part of the business development process.
  • Audit management. The ability to lead audits, especially with external stakeholders and certification authorities is a key component of this job, because you would be expected to lead at least two audits each year.
  • An insatiable intellectual curiosity and the ability to learn quickly in a complex space.

Additional Requirements 

  • Must pass any and all required background checks  
  • Must be and remain compliant with all legal or company regulations for working in the industry  
Read Full Job Description
Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • Sales & Marketing
    • JavaLanguages
    • JavascriptLanguages
    • PHPLanguages
    • PythonLanguages
    • SqlLanguages
    • jQueryLibraries
    • ReactLibraries
    • Node.jsFrameworks
    • Ruby on RailsFrameworks
    • AccessDatabases
    • MySQLDatabases
    • PostgreSQLDatabases
    • SnowflakeDatabases
    • Google AnalyticsAnalytics
    • TableauAnalytics
    • CanvaDesign
    • FigmaDesign
    • IllustratorDesign
    • PhotoshopDesign
    • Google DocsManagement
    • JIRAManagement
    • Microsoft ProjectManagement
    • Monday.comManagement
    • WordpressCMS
    • HubSpotCRM
    • Microsoft DynamicsCRM
    • SalesforceCRM
    • MailChimpEmail
    • SendGridEmail

Location

Green Thumb is located in River North, a short walk from the Chicago Brown Line, near the Ohio expressway entrance, and close to many major bus routes. Or Green Thumb may be a living room or home office! HQ remains open, giving our teammates options to choose what suits each individual & team best.

An Insider's view of Green Thumb

What projects are you most excited about?

I enjoy supporting initiatives that help people impacted by the War on Drugs, like our Good Green movement. I'm excited about what we’re doing to support expungement, cancer, employment, & education organizations nationwide. Giving back is core to Green Thumb’s DNA, and it’s truly a company value that runs through all of us.

Jai

Director, Social Impact

How has your career grown since starting at the company?

Since my first day at Green Thumb, the leadership team quickly empowered me to help drive the business. My scope has rapidly increased, & I now manage a large team that significantly influences the company’s strategy & operations. I’ve been able to sharpen my leadership skills while learning about the cannabis category, learning lessons every day!

Rich

Head of Merchandising

What is your vision for the company?

We believe in the positivity of cannabis and the viability of this industry in the U.S. Our mission is to promote well-being through the power of cannabis while giving back to the communities we serve. Americans are choosing cannabis and it’s an exciting dynamic to be part of a leading company in a brand-new industry, forging new ground.

Ben

Founder and CEO

What kinds of technical challenges do you and your team face?

We operate across multiple states nationwide, so the biggest technical challenge can be the lack of clarity on what can and cannot be done. Each state requires different technological, both hardware and software, needs. This requires complete flexibility and communication between all parties involved.

Jalen

IT Analyst

What are Green Thumb Perks + Benefits

Culture
Volunteer in local community
Partners with nonprofits
Open door policy
OKR operational model
Team based strategic planning
Open office floor plan
Diversity
Dedicated diversity and inclusion staff
Highly diverse management team
Mandated unconscious bias training
Hiring practices that promote diversity
Health Insurance & Wellness Benefits
Disability insurance
Dental insurance
Vision insurance
Health insurance
Life insurance
Wellness programs
Mental health benefits
Financial & Retirement
401(K)
Company equity
Performance bonus
Child Care & Parental Leave Benefits
Generous parental leave
Vacation & Time Off Benefits
Unlimited vacation policy
Generous PTO
Paid holidays
Paid sick days
Office Perks
Commuter benefits
GTI offers pre-tax commuter benefits for all employees to be used on transit and ride sharing apps!
Company-sponsored outings
Free snacks and drinks
Some meals provided
Company-sponsored happy hours
GTI has a 420 Happy Hour which occurs on a monthly basis hosted by rotating team members who create a theme-based event.
Professional Development Benefits
Lunch and learns
Promote from within

More Jobs at Green Thumb

Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about Green ThumbFind similar jobs like this