Aristocrat · 1 day ago
GRC Analyst
Aristocrat is a world leader in gaming content and technology, and a top-tier publisher of free-to-play mobile games. The GRC Analyst will support the Global Information Security organization by coordinating a cybersecurity Policy Program and leading an information security education and training initiative.
Gambling & Casinos
Responsibilities
Maintain and continuously improve the cybersecurity Policies Program including the management of the lifecycle of a policy from creation to publication and developer go-to-market communication materials
Process and assess risk exceptions to Aristocrat Security Policies, Standards, and Technical Security Requirements and manage security risks identified and documented in the cybersecurity risk register and proactively identify cybersecurity deficiencies or opportunities for improvement to policies
Manage and advance a Security Awareness and Training Program that focuses on fostering a cyber aware culture. Includes developing a calendar of campaigns encompassing corporate-wide and specific roles-based training and awareness and phishing
Continuously deliver maturity enhancements to the Security Awareness program using AI tools and strong communication skills to make training effective and engaging. Collaborate with threat intelligence resources to ensure strong linkage to new and relevant threats
Create role-based training curriculum across the organization focusing on the protection of resources and data, collaborating with internal teams such as People and Culture (HR) and Privacy
Qualification
Required
Master's degree and 2 years of experience in cybersecurity field; experience in Learning and Development or Communications is a plus
Or University / bachelor's degree and 4 years' experience in cybersecurity field; experience in Learning and Development or Communications is a plus
Or an Associate's degree and 8 years' experience in cybersecurity field, experience in Learning and Development or Communications is a plus
Preferred
Experience in policy management lifecycle management from creation to communication to delivery
Working knowledge of cybersecurity awareness training terminology such as phishing, smishing, ransomware, etc. with an ability to translate this information into accessible training for organization
Experience designing and deploying corporate-level awareness programs including regular awareness training, secure development training, and regular phishing campaigns
Ability to create and deliver on strategic needs for awareness and training program along with program management skills to prioritize, plan, and deliver in a global environment
Experience in using Artificial Intelligence (AI) tools to create, refine, personalize, and deliver training content at corporate level and for role-based training
Comprehensive and effective communication skills, including the ability to gather relevant data and information, connect through listening, dialogue freely, and verbalize ideas effectively
Certified Information Systems Security Professional (CISSP)
Certified Cloud Security Professional (CCSP)
Certified Information Security Manager (CISM)
CompTIA Security+
SANS Global Information Assurance Certifications (GIAC)
Benefits
Health, dental, and vision insurance
Paid time off
401(k) plan with employer matching
Company
Aristocrat
Aristocrat Leisure Limited (Aristocrat) is a global entertainment and content creation company powered by technology to deliver world-leading casino and mobile games.