Security Governance Analyst

Security and Risk Management San José, San José Canton


Splunk is the leader in big data and machine learning analytics, with a significant presence in the cybersecurity market. Join us as we pursue our disruptive vision to make machine data accessible, usable, and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. Learn more about Splunk careers and how you can become a part of our journey!

About the role:

Splunk Global Security (SGS) is growing our Security Trust Office and IT Governance program, and we are looking for a Security Governance Analyst. The Security Governance Analyst will be responsible for working with subject matter experts (SME) and management to write and manage information security policies, standards and supporting documentation. More than a technical writer, the Governance Analyst should be familiar with information security and risk management concepts and standards as well as a general understanding of information technology systems and terminology.

Responsibilities include:

  • Complete initial drafts of policies, standards and related documentation
  • Guide documentation through approval workflow and incorporate feedback from each stage of the review process
  • Help ensure documentation addresses all required regulations and contractual

Requirements:

  • Support end user questions related to policies and standards
  • Develop and maintain indices, glossaries and other supporting documentation
  • Publish and distribute final policies and other documentation
  • Maintain an inventory of documentation that supports information security compliance
  • Maintain a change log and change request log for relevant documentation

Qualifications:

  • Bachelor's degree or equivalent work experience required
  • Familiarity with governance and controls frameworks, such as COBIT, NIST, and ISO
  • 4-6+ years of professional experience with 2-4+ years of technical writing experience
  • Experience with ISO 27001 and governance of the Information Security Management System (ISMS)
  • Excellent written and verbal communication skills

We value diversity at our company. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or any other applicable legally protected characteristics in the location in which the candidate is applying.

This is a test line.