← all jobs

Information Security GRC Analyst, Sr

Work from home Full-time role Hiring

About the position Responsible for driving the development, implementation, communication, and maintenance of loanDepot’s technology policies, standards, and procedures that are aligned to industry standards and regulatory requirements. Ensures that loanDepot technology processes adhere to regulatory requirements, manages risks effectively, and establishes strong governance practices. Develops and implements controls, monitors compliance, and supports risk management activities.

Responsibilities

  • Leads the development and implementation of comprehensive cybersecurity and IT policies, standards, and guidelines.
  • Continuously evaluates and updates cybersecurity and IT policies to ensure they remain current and effective.
  • Ensures policies comply with relevant laws, regulations, and industry standards (e.g., NIST, FFIEC, GLBA, NYDFS, SOX and PCI-DSS).
  • Collaborates with teams, working closely with IT, legal, compliance, and other departments, to gain a deep understanding of business needs to ensure cybersecurity policies align with business objectives.
  • Transforms complex information and documentation into simple concepts that are easy to understand by the end-users.
  • Offers specialized expertise and consultation to cross-functional teams to perform framework-oriented risk assessments, identify deficiencies, generate reports, and recommends prioritized, actionable solutions to mitigate risks and enhance loanDepot’s overall security posture.
  • Stays informed about the latest cybersecurity threats, trends, and best practices.
  • Ensures accurate and up-to-date records of policy reviews, risk assessments, training activities, and incident responses.
  • Benchmarks the organization's policies against industry standards and best practices.
  • Develops and implements governance frameworks for cybersecurity policy management.
  • Monitors key performance indicators, conducts gap analysis, risk assessments and implements frameworks, as needed.
  • Tests and monitors effectiveness of controls.
  • Establishes a feedback loop and analyzes metrics to continuously improve cybersecurity policies based on audit findings, incident reviews, and emerging threats.
  • Actively leads and supports on internal and external audits and assessments of cybersecurity policies and practices.
  • Accountable for ensuring identified audit and assessment findings and actions are tracked to closure.
  • Maintains comprehensive documentation of all cybersecurity policies, procedures, and related activities.
  • Communicates policy requirements and updates to all relevant stakeholders.
  • Identifies opportunities for innovation and improvement in cybersecurity policy and practice.
  • Proposes suitable mitigation strategies and verifies the effectiveness of remediation plans.

Requirements

  • Minimum of six (6) + years’ experience working in Cybersecurity GRC, policy development, risk management, or a similar field.
  • Experience with GRC tools (e.g., Archer, ServiceNow, OneTrust).
  • Proficiency in using data analysis and reporting tools (e.g., Excel, Power BI).
  • Bachelor’s Degree in Information Security, Computer Science, Information Technology, or a related field preferred.

Nice-to-haves

  • Relevant certifications such as CISM and/or CISA are highly desirable.

Benefits

  • Competitive compensation package based on experience, skillset and overall fit for #TeamloanDepot.
  • Inclusive, diverse, and collaborative culture where people from all backgrounds can thrive
  • Work with other passionate, purposeful, and customer-centric people
  • Extensive internal growth and professional development opportunities including tuition reimbursement
  • Comprehensive benefits package including Medical/Dental/Vision
  • Wellness program to support both mental and physical health
  • Generous paid time off for both exempt and non-exempt positions

More open positions

Senior Governance, Risk, Compliance; GRC Analyst

Work from home Full-time role

Contract Global Intelligence Analyst (Tues & Thurs - Sat, 2:00pm-12:00am CT)

Work from home Full-time role

Threat Intelligence Analyst, Scams Expert

Work from home Full-time role

Sr. Intelligence Analyst Remote, USA

Work from home Full-time role

Sr. Intelligence Analyst, Recon+ (Remote, GBR)

Work from home Full-time role

Experienced Data Entry Clerk – High Accuracy and Organizational Skills Required

Work from home Full-time role

Product Manager, Members

Work from home Full-time role

Fraud Investigator

Work from home Full-time role

Wedding Dress Specialist – Bridal Gown Alterations – Roseville, CA

Work from home Full-time role

Account Executive

Work from home Full-time role

Customer Service Representative – Part‑Time Remote – High‑Volume Contact Center at careerzynith

Work from home Full-time role

Vice President, Academic Programs

Work from home Full-time role

Experienced Part-Time Remote Data Entry Assistant / Entry Level (Part-Time) at careerzynith

Work from home Full-time role

Complaint & Appeals Analyst (Must reside in Arizona)

Work from home Full-time role

Project Coordinator - CEO Office (MLO)

Work from home Full-time role

Senior Amazon Consultant, Brand Growth Strategist

Work from home Full-time role

Prom & Formal Dress Seamstress – Alterations – Fox Chapel, PA

Work from home Full-time role

Sales Engineer, Mid-Market- Remote US PT / MT

Work from home Full-time role

Mortgage Processor - Remote

Work from home Full-time role

Experienced Real-World Evidence Data Scientist – Healthcare Analytics & Clinical Research Leadership at careerzynith

Work from home Full-time role

Personal Injury Attorney - Remote!

Work from home Full-time role