CrawlJobs Logo

Security Control Analyst - Risk & Controls Specialist

Australia, North Sydney · Job Posted May 30, 2026
Apply Position
Job Link Share

Job Description

FinXL by Randstad Digital focuses on developing client's Networking, Digital and AI projects by providing specialised skills, managed programs, and strategic consulting across various industries. We solve complex technological and business challenges with highly talented people. We are seeking a Security Control Analyst - Risk and Controls Specialist with experience owning, documenting, maintaining and attesting security controls within a governance framework.

Requirements

  • Experience translating NIST 800-53 controls into business-friendly language and practical control requirements
  • Experience defining control requirements, control parameters and implementation guidance
  • Policy, standards, and control documentation writing experience
  • Experience running stakeholder workshops, gathering requirements and working directly with control owners
  • Control assurance, controls testing, evidence collection, and attestation experience
  • Experience in Group Risk, Operational Risk, Technology Risk, Controls Assurance or Compliance
  • Experience & understanding of how security controls operate in practice
  • ServiceNow experience, particularly CAM

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Security Control Analyst - Risk & Controls Specialist

8 matching positions

System Security Specialist

Assurit is currently seeking an experienced System Security Specialist to suppor...
Location
Location
United States , Maryland
Salary
Salary:
Not provided
assurit.com Logo
Assurit
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Security, Computer Science, Engineering, or related field
  • or equivalent professional experience
  • Proven ability to interpret complex requirements and review technical documentation for accuracy and relevance
  • Exceptional oral and written communication skills
  • Strong analytical and problem-solving skills with the ability to provide expert guidance in high-impact environments
  • Experience supporting large-scale, secure, and regulated IT environments
  • 7+ years of highly specialized experience in one or more security disciplines, including: Penetration testing
  • Intrusion detection or audit analysis
  • Public Key Infrastructure (PKI)
  • Cryptography
Job Responsibility
Job Responsibility
  • Provide expert-level advisory support and analysis across information, computer, and network security disciplines
  • Review requirements, technical documentation, and task materials for accuracy, applicability, and alignment with security best practices
  • Conduct detailed assessments of security risks, architectures, and operational processes
  • Evaluate and advise on security controls, system configurations, and emerging threats
  • Support specialized security activities such as penetration testing, intrusion detection analysis, risk assessments, or PKI reviews based on expertise
  • Communicate complex technical concepts clearly to both technical and non-technical stakeholders
  • Develop clear documentation, findings, and recommendations that support program decisions and security improvements
  • Collaborate with engineers, analysts, and leadership to validate requirements and ensure accurate technical implementation
  • Assist in developing or refining security standards, procedures, and guidance
What we offer
What we offer
  • medical and dental coverage
  • paid time off
Read More
Arrow Right

Sap Security And Controls Specialist

We are seeking an SAP Security & Controls Consultant to support SAP risk transfo...
Location
Location
United States , Minneapolis
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2+ years of SAP experience in a business analyst, IT audit, or implementation role
  • Exposure to SAP automated controls and SAP security role architecture
  • Experience participating in IT audits or being audited (ITGCs, security, controls)
  • Experience supporting at least one SAP implementation
  • Strong written and verbal communication skills
  • Highly organized with the ability to manage multiple priorities
  • Experience auditing or testing SAP automated business controls
  • Exposure to SAP security, GRC, or access governance concepts
  • Experience with data analytics tools such as ACL or Microsoft Access
  • Background in public accounting or SOX / compliance environments
Job Responsibility
Job Responsibility
  • Support SAP security role design and segregation of duties assessments
  • Assist with the design and evaluation of SAP automated business controls
  • Participate in SAP security and controls assessments tied to implementations and operations
  • Support IT audits and remediation efforts related to SAP security, ITGCs, and controls
  • Contribute to SAP GRC and risk management initiatives
  • Prepare client deliverables and provide clear status updates
  • Collaborate with senior team members to meet project timelines and quality standards
What we offer
What we offer
  • Medical, vision, dental, and life and disability insurance
  • 401(k) plan
  • Fulltime
Read More
Arrow Right

Director of Physical Security & Compliance

Crusoe is expanding our hyper-scale AI and high-performance computing (HPC) data...
Location
Location
United States , San Francisco
Salary
Salary:
225000.00 - 280000.00 USD / Year
crusoe.ai Logo
Crusoe
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years in physical security or mission-critical infrastructure
  • Deep knowledge of operating physical security technologies and system design
  • Experience with in a high-availability environment
  • Experience implementing controls for SOC 2, ISO, NIST, and similar frameworks
  • Proven ability to manage multi-site security operations and compliance programs
  • Strong incident management and risk assessment background
  • Experience designing or scaling enterprise security systems across multi-site environments
  • Strong understanding of SOC 2, ISO 27001, NIST, and related frameworks
  • Background managing guard operations, access control, and incident response
  • Ability to lead programs from zero-to-one and influence senior stakeholders
Job Responsibility
Job Responsibility
  • Operationalize the global physical security strategy, and ensure data center alignment with enterprise security standards, and policies
  • Implement the security risk framework within Data Center Facility Operations
  • Translate enterprise security requirements into site-specific designs for new campuses
  • Conduct site-level security risk and threat assessments
  • Establish a scalable security operations model for 50–400 MW hyper-scale facilities
  • Own the operational lifecycle of dedicated physical security systems (ACS, VSS, IDS)
  • Execute site-level operational controls to ensure adherence to compliance programs for SOC 2, ISO 27001/27002, NIST 800-53, and other regulations
  • Maintain operational documentation, logs, and evidence of adherence to established internal controls
  • Maintain year-round audit readiness for physical access to cages, racks, and on-site office rooms
  • Ensure operational availability, resiliency, and scalability of security infrastructure
What we offer
What we offer
  • Restricted Stock Units in a fast growing, well-funded technology company
  • Health insurance package options that include HDHP and PPO, vision, and dental for you and your dependents
  • Employer contributions to HSA accounts
  • Paid Parental Leave
  • Paid life insurance, short-term and long-term disability
  • Teladoc
  • 401(k) with a 100% match up to 4% of salary
  • Generous paid time off and holiday schedule
  • Cell phone reimbursement
  • Tuition reimbursement
  • Fulltime
Read More
Arrow Right

Security Specialist Advisor

The Security Specialist Advisor role at NTT DATA involves advanced expertise in ...
Location
Location
Mexico , Mexico
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree or equivalent in Information Technology, Computer Science or related preferred
  • SANS GIAC Security Essentials (GSEC) or equivalent preferred
  • SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred
  • SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred
  • Advanced experience in a Technology Information Security Industry
  • Advanced experience or knowledge of SIEM and IPS technologies
  • Advanced experience with Wireshark or tcpdump to identify normal and abnormal/malicious traffic patterns and behaviors
  • Advanced understanding of End Point Protection Software
  • Advanced understanding of Enterprise Detection and Response software
  • Advanced knowledge of technological advances within the information security arena
Job Responsibility
Job Responsibility
  • Manages the prevention and resolution of security breaches and ensure incident and problem management processes are initiated
  • Performs access management activities according to the policy
  • Implements and discusses security service audit schedules, review access authorization and perform the required access controls and testing to identify security weaknesses
  • Interacts with a global team of Cyber Security Analysts and specialists
  • Manages 2nd level triaging of security alerts, events, and notifications
  • Manages notifications of internal and/or external teams according to agreed alert priority levels, and escalation trees
  • Communicates status of response, resolution and final root cause analysis to the appropriate stakeholders
  • Follows and updates established and/or ad-hoc processes and work instructions and create procedures where deficiencies are identified
  • Logs, manages and coordinates service requests through to resolution including the identification, isolation, resolution and escalation of IT infrastructure faults
  • Maintains an understanding of current and emerging threats, vulnerabilities, and trends
Read More
Arrow Right

Security Specialist Advisor

The Security Specialist Advisor role is crucial for detecting and monitoring thr...
Location
Location
Mexico , Mexico
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Advanced understanding of End Point Protection Software
  • Advanced understanding of Enterprise Detection and Response software
  • Advanced knowledge of technological advances within the information security arena
  • Advanced understanding of inter-relationships in an overall system or process
  • Advanced knowledge of information security management and policies
  • Advanced understanding risk management principles and frameworks
  • Advanced understanding of the organization's business operations, goals, and objectives
  • Ability to effectively communicate technical information to both technical and non-technical stakeholders
  • Ability to think critically, analyze information, and solve medium to complex problems
  • Bachelor’s degree or equivalent in Information Technology, Computer Science or related preferred
Job Responsibility
Job Responsibility
  • Manages the prevention and resolution of security breaches and ensure incident and problem management processes are initiated
  • Performs access management activities according to the policy
  • Implements and discusses security service audit schedules, review access authorization and perform the required access controls and testing to identify security weaknesses
  • Interacts with a global team of Cyber Security Analysts and specialists
  • Manages 2nd level triaging of security alerts, events, and notifications
  • Manages notifications of internal and/or external teams according to agreed alert priority levels, and escalation trees
  • Communicates status of response, resolution and final root cause analysis to the appropriate stakeholders
  • Follows and updates established and/or ad-hoc processes and work instructions and create procedures where deficiencies are identified
  • Logs, manages and coordinates service requests through to resolution including the identification, isolation, resolution and escalation of IT infrastructure faults
  • Maintains an understanding of current and emerging threats, vulnerabilities, and trends
Read More
Arrow Right

Manager, Physical Security Solutions

The Manager of Physical Security Solutions is responsible for safeguarding asset...
Location
Location
United States , Oak Brook; Houston; West Palm Beach; Atlanta; Baltimore; Minneapolis-St. Paul-Bloomington; Plymouth; Denver; Schaumburg; Everett; Livermore; Berlin; Trevose; Pittsburgh
Salary
Salary:
83055.24 - 174478.57 USD / Year
comcastadvertising.com Logo
Comcast Advertising
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience in physical security management, including infrastructure and technology systems
  • Strong knowledge and proficiency in building as-builts, infrastructure, and equipment related to communication and infrastructure systems
  • Supervisory or managerial experience in a security or related field
  • Familiarity with security technologies, access control systems, surveillance systems, and intrusion systems
  • Strong communication and interpersonal skills, with the ability to collaborate effectively with diverse stakeholders
  • Ability to handle multiple tasks and prioritize effectively in a fast-paced environment
  • Proficiency in security management software, Microsoft Office Suite, Genetec suite of products, and other relevant tools
  • Bachelor's Degree preferred in an area of study relevant to this position (i.e., Security Management, Homeland Security, Engineering, Information Technology, etc.)
  • Generally, requires four plus years of related experience
Job Responsibility
Job Responsibility
  • Supervises and provides guidance to physical security personnel, including security specialists, technicians, and analysts
  • Manages and deep understanding of how physical security devices and systems, including but not limited to Video Management Systems (VMS), Physical Access Control Systems (PACS) analytics, Intrusion Detection Systems (IDS), intercom systems mitigate risk and enable business operations
  • Implement security policies, procedures, and programs to ensure the effective management, deployment and maintenance of physical security hardware and infrastructure
  • Oversees contracts with integrators for security technology systems, ensuring timely and efficient support
  • Coordinates and manages security technology installations for facilities, collaborating with cross-functional teams, as necessary
  • Participate in expense management efforts, including contract assessment, service evaluation, and budget forecasting
  • Collaborates with stakeholders to review documentation and plans for installations, ensuring compliance with security standards
  • Ensures physical security hardware and infrastructure is designed to support emergency response and critical incident management
  • Maintains knowledge of emerging technologies and industry trends in physical security
  • Assists in the development and implementation of security strategies, policies, and programs
What we offer
What we offer
  • Medical, prescription, vision, and dental insurance for eligible employees
  • 401(k) savings plan with dollar-for-dollar matching up to the first 6% of your pay
  • Paid time off including eight observed company holidays and flex time
  • Exclusive perks + discounts, including tuition assistance, commuter benefits and more
  • Fulltime
Read More
Arrow Right

Information Systems Security Officer

The ISSO will develop, implement, and integrate cybersecurity into information s...
Location
Location
United States , Colorado Springs
Salary
Salary:
130000.00 - 170000.00 USD / Year
astrion.us Logo
Astrion
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years technical experience in cybersecurity or information technology with focus on cybersecurity implementations
  • Must meet position and certification requirements for the following DoW Cyberspace Workforce Role Code(s) and Proficiency Level(s): 722 - Information Systems Security Manager (Proficiency Level: Advanced)
  • 462 - (Control Systems Security Specialist) (Proficiency Level: Advanced)
  • 541 - Vulnerability Assessment Analyst (Proficiency level: Advanced)
  • Firm understanding of the DoD 8500.1-M, DoDM 5205.07, Volume 1, Joint SAP Implementation Guide (JSIG), National Institute of Standards and Technology (NIST) Special Publication 800-53, Intelligence Community Directive (ICD) Number 503
  • Experience with eMASS, XACTA, or equivalent RMF tools
  • Experience with both Vulnerability and Compliance scanning tools (ACAS, Nessus Professional, SCC, Evaluate-STIG)
  • Experience with system security logs and associated Security Information and Event Management (SIEM) tools (Splunk, ELK stack)
  • Ability to work well independently as well as follow detailed instructions for completing tasks
  • Demonstrated ability to complete tasks, drive projects to closure, assimilate and correlate project information in a fast-paced environment with minimum guidance
Job Responsibility
Job Responsibility
  • Participate in the development or modification of organizational cybersecurity program plans, policies, processes, procedures, and requirements
  • Support cybersecurity planning, assessment, risk analysis, and risk management for systems across multiple security domains
  • Recommend organizational and system level solutions to resolve cybersecurity requirements while maintaining system availability
  • Write authorization and accreditation (A&A) documentation and supporting artifacts
  • Interact with technical team members from multiple disciplines including performing vulnerability and compliance scanning, remediations, and system audits
  • Perform technical hardware & software reviews and advise leadership of changes affecting organization’s cybersecurity posture
  • Perform technical security assessments of complex systems
  • Establish and maintain cybersecurity control baseline(s) for all unit systems
  • Generate RMF control narratives
What we offer
What we offer
  • Competitive salaries
  • Continuing education assistance
  • Professional development
  • Multiple healthcare benefits package options
  • 401K with employer matching
  • Competitive time off policy along with a federally recognized holiday schedule
  • Fulltime
Read More
Arrow Right

Security Senior Manager

The Security Senior Manager role at NTT DATA involves overseeing the detection a...
Location
Location
Mexico , Mexico
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Advanced experience in a Technology Information Security Industry
  • Advanced experience or knowledge of SIEM and IPS technologies
  • Advanced experience with Wireshark or tcpdump to identify normal and abnormal/malicious traffic patterns and behaviors
  • Bachelor’s degree or equivalent in Information Technology, Computer Science or related preferred
  • SANS GIAC Security Essentials (GSEC) or equivalent preferred
  • SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred
  • SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred
Job Responsibility
Job Responsibility
  • Manages the prevention and resolution of security breaches and ensure incident and problem management processes are initiated
  • Performs access management activities according to the policy
  • Implements and discusses security service audit schedules, review access authorization and perform the required access controls and testing to identify security weaknesses
  • Interacts with a global team of Cyber Security Analysts and specialists
  • Manages 2nd level triaging of security alerts, events, and notifications
  • Manages notifications of internal and/or external teams according to agreed alert priority levels, and escalation trees
  • Communicates status of response, resolution and final root cause analysis to the appropriate stakeholders
  • Follows and updates established and/or ad-hoc processes and work instructions and create procedures where deficiencies are identified
  • Logs, manages and coordinates service requests through to resolution including the identification, isolation, resolution and escalation of IT infrastructure faults
  • Maintains an understanding of current and emerging threats, vulnerabilities, and trends
Read More
Arrow Right