Position Summary:Under the direction of the IT Compliance and Risk Manager, this position serves as a Security Awareness and Compliance Analyst within the client, supporting the client's Governance, Risk, and Compliance (GRC) Department. The GRC function provides governance, risk evaluation, and compliance oversight to support informed decision-making and the responsible adoption of technology across the client.The Security Awareness and Compliance Analyst administers the organization's Security Awareness and Phishing Program and supports governance, risk, and compliance initiatives. The employee develops and coordinates security awareness activities, manages phishing simulation campaigns, analyzes program effectiveness, and supports regulatory reporting while contributing to the overall maturity of the GRC program.Description of Major Duties:Administers and maintains the enterprise Security Awareness Program.Plans, coordinates, and executes phishing simulation campaigns.Tracks, analyzes, and reports security awareness and phishing metrics using established reporting tools.Develops and distributes security awareness communications and educational materials.Coordinates required cybersecurity awareness training activities across the organization.Maintains awareness program documentation and records to support compliance and audit requirements.Assists with preparation of reports supporting regulatory requirements, audits, and management reviews.Recommends improvements to awareness activities based on metrics, emerging threats, and industry best practices.Assists with governance, risk, and compliance initiatives as assigned.Participates in continuous improvement activities supporting the organization's cybersecurity program.Performs related work as assigned.Knowledge and AbilitiesKnowledge of:Information security awareness principlesCybersecurity fundamentalsSecurity awareness and phishing simulation platformsReporting and data analysis techniquesCompliance and audit support activitiesAbility to:Coordinate multiple projects and training activitiesAnalyze program metrics and identify trendsCommunicate effectively with diverse audiencesDevelop user-friendly educational materialsEstablish productive working relationships with client staffSkill - Required / DesiredPlans, coordinates, and executes phishing simulation campaigns. - RequiredAdministers and maintains the enterprise Security Awareness Program. - RequiredDevelops and distributes security awareness communications and educational materials. - RequiredMaintains awareness program documentation and records to support compliance and audit requirements. - RequiredAssists with preparation of reports supporting regulatory requirements, audits, and management reviews. - RequiredRecommends improvements to awareness activities based on metrics, emerging threats, and industry best practices. - RequiredNotes:Hybrid - 3 days in the office/2 days remote
At VIVA, employee well-being is paramount. Our comprehensive benefits package ensures your health, financial security, and quality of life are always prioritized.
VIVA provides employees access to a comprehensive group health insurance plan (Medical, Dental, Vision, Basic Life, Term Life, and Accidental Death) through our flexible PPO plan-allowing you the freedom to choose healthcare providers.
Plan securely for your future with automatic payroll deductions into a tax-advantaged 401(k) retirement plan, including employer-matching contributions for eligible employees.
Earn performance-based bonuses and generous referral incentives of up to $500 when recommending talented candidates who become part of the VIVA family.
Enjoy timely and convenient payroll with biweekly direct deposit to your chosen financial institution. Biweekly Direct Deposit
Access exclusive employee discounts and savings on electronics, travel, groceries, apparel, and more through our dedicated VIVA Perks Program.