Senior IT Risk and Compliance Analyst

4 Months ago • 4 Years + • Cyber Security

Job Summary

Job Description

Morningstar seeks a Senior IT Risk and Compliance Analyst to support compliance obligations (SOX, SOC2, PCI-DSS, SEC). You'll gather evidence for audits, monitor compliance, identify security findings, and liaise with third-party auditors. 4+ years' experience in risk & compliance or IT auditing with proven expertise in SOX, SOC2, PCI-DSS, GDPR, and IT audits is essential.
Must have:
  • Compliance Standards
  • IT Auditing
  • Risk & Compliance
  • Security Frameworks
Good to have:
  • Customer Facing
  • Business Analysis
  • Security Policies
  • Audit Tests
Perks:
  • Hybrid Work
  • Global Colleagues

Job Details

Role:

The Senior IT Risk and Compliance Analyst will assist in supporting Morningstar’s compliance related responsibilities. This individual will help current and future compliance obligations are met, assist in identifying and following up on information security findings, gather evidence required for internal and external audits, and provide level 2 support for analysts responding customer RFPs and due diligence questionnaires.

Location: Bucharest, Romania

Responsibilities:

  • Assist in supporting Morningstar’s current and future compliance related responsibilities (SOX, SOC2, PCI-DSS, SEC, etc.) 
  • Gather evidence required for internal and external audits 
  • Monitor and enforce compliance to information security and compliance policies and standards 
  • Assist with documenting and regularly reviewing security policies, processes and procedure 
  • Execute audit tests; identify issues and areas for improvement in security policy compliance 
  • Identify and follow up on information security findings to ensure they are properly remediated 
  • Liaise with third party audit personnel as required 

 

Requirements 

  • A bachelor’s degree and 4+ years’ experience in a risk and compliance or I.T. auditor role 
  • Familiarity with common compliance standards (SOX, SOC2, PCI-DSS, GDPR etc.) and experience working directly with internal or external auditors for at least one of the listed standards 
  • 1+ years experience in customer facing role directly responding to customer information security and compliance concerns 
  • Familiarity with IT audits and risk assessments 
  • Familiarity with security frameworks (ISO 27001, NIST, etc.) and general security concepts 
  • Strong organizational skills and the ability to multitask and switch priorities with short notice 
  • Strong business analysis, research and analytical skills 
  • Excellent communication skills 
  • Availability to work off business hours as required 

 

315_Sustainalytics SRL Legal Entity

Morningstar’s hybrid work environment gives you the opportunity to work remotely and collaborate in-person each week. We’ve found that we’re at our best when we’re purposely together on a regular basis, at least three days each week. A range of other benefits are also available to enhance flexibility as needs change. No matter where you are, you’ll have tools and resources to engage meaningfully with your global colleagues.

Similar Jobs

gnosis - Senior Smart Contract Engineer

gnosis

Germany (Remote)
4 Months ago
CD PROJEKT RED - Senior UI Designer

CD PROJEKT RED

Warsaw, Masovian Voivodeship, Poland (On-Site)
3 Months ago
CloudHire - Full Stack Developer - Angular & Node

CloudHire

India (Remote)
3 Months ago
Technicolor Group - FX-Mid Artist-Games

Technicolor Group

Bengaluru, Karnataka, India (On-Site)
4 Months ago
WebMD - Sr. Account Manager

WebMD

Newark, New Jersey, United States (On-Site)
3 Months ago
Mattel  Inc  - Security Coordinator (Operations - Data)

Mattel Inc

El Segundo, California, United States (On-Site)
3 Months ago
Trend Micro - (Sr.) Software Engineer

Trend Micro

Taipei City, Taiwan (On-Site)
4 Months ago
Palo Alto Networks - Domain Consultant - Cortex - France

Palo Alto Networks

Paris, Île-de-France, France (Remote)
3 Months ago
Forcepoint - Software Engineer II - C++ Developer

Forcepoint

Mumbai, Maharashtra, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

PwC - AES SAP Senior Associate  – Operate

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Trek - Service Manager

Trek

East Northport, New York, United States (On-Site)
5 Months ago
Fugo Games - Product Specialist (Mobile Games)

Fugo Games

İstanbul, Türkiye (On-Site)
3 Months ago
PTW - Localisation QA Tester (For Pooling)

PTW

Makati, Metro Manila, Philippines (On-Site)
8 Months ago
White Hat Gaming  - QA Engineer (iGaming)

White Hat Gaming

(Hybrid)
3 Months ago
Morning Star - Senior Employee Technology Support Analyst, Credit Operations

Morning Star

Mumbai, Maharashtra, India (Hybrid)
4 Months ago
Hitachi - CRM Technical Consultant - NA Team

Hitachi

Chennai, Tamil Nadu, India (On-Site)
3 Months ago
PwC - Cyber Security SOC - Senior Manager

PwC

Bangkok, Bangkok, Thailand (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Bucharest, Bucharest, Romania

In The Pocket - QUALITY ENGINEER

In The Pocket

Bucharest, Bucharest, Romania (On-Site)
2 Months ago
Every matrix - Sales Manager with Turkish

Every matrix

Bucharest, Bucharest, Romania (Hybrid)
4 Months ago
Visa - Consulting & Analytics Graduate

Visa

Bucharest, Bucharest, Romania (On-Site)
3 Months ago
PwC - Financial Advisor - Deals/Transaction Services

PwC

Bucharest, Bucharest, Romania (On-Site)
4 Months ago
Fortis Games - Senior Product Manager

Fortis Games

Romania (On-Site)
3 Months ago
PwC - Manager Audit - Financial Services

PwC

Bucharest, Bucharest, Romania (On-Site)
4 Months ago
Every matrix - Corporate Travel Coordinator

Every matrix

Bucharest, Bucharest, Romania (Hybrid)
3 Months ago
CloudLinux - Lead SDET/QA Automation Engineer at CloudLinux (worldwide remote, work anywhere)

CloudLinux

Bucharest, Bucharest, Romania (Remote)
3 Months ago
PwC - Managed Services Manager (Accounting)

PwC

Bucharest, Bucharest, Romania (On-Site)
4 Months ago
Ubisoft - Online Programmer

Ubisoft

Craiova, Dolj County, Romania (Hybrid)
8 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Manager expérimenté / Directeur CTI  | CDI | H/F

PwC

Neuilly-sur-Seine, Île-de-France, France (On-Site)
4 Months ago
Google - Pursuit Lead II, Google Cloud Consulting

Google

New York, New York, United States (On-Site)
3 Months ago
Palo Alto Networks - Domain Consultant - Security Operations Transformation

Palo Alto Networks

Los Angeles, California, United States (Remote)
3 Months ago
Fluence - Product Security Architect - Digital & Enterprise Applications

Fluence

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Palo Alto Networks - Domain Consultant

Palo Alto Networks

Charlotte, North Carolina, United States (Remote)
3 Months ago
BigID - Sr. Cloud Security Engineer

BigID

Chennai, Tamil Nadu, India (Remote)
3 Months ago
Varonis  - Strategic Evangelist

Varonis

United States (On-Site)
3 Months ago
Axinous - Principal Zero-Day Vulnerability Researcher

Axinous

San Jose, California, United States (Remote)
2 Months ago
Anavation - Cloud Security Architect

Anavation

Fort Belvoir, Virginia, United States (On-Site)
3 Months ago
PwC - Workday - Senior Consultant-  Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Chicago, Illinois, United States (Hybrid)

Mumbai, Maharashtra, India (Hybrid)

Chicago, Illinois, United States (Hybrid)

Bucharest, Bucharest, Romania (Hybrid)

Mumbai, Maharashtra, India (Hybrid)

Mumbai, Maharashtra, India (Hybrid)

Mumbai, Maharashtra, India (Hybrid)

Bucharest, Bucharest, Romania (Hybrid)

Mumbai, Maharashtra, India (Hybrid)

View All Jobs

Get notified when new jobs are added by Morning Star

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug