Governance, Risk and Compliance Analyst

Nebraska; US-Remote

Hudl

More than 200K teams across 40 sports use Hudl to capture, analyze and learn from video and data.

View company page

Building a team starts with valuing the team. We hire the best of the best to ensure you’re working with people you can constantly learn from. You’re trusted to get your work done your way while testing the limits of what’s possible and what’s next. And you’ll be part of a culture where everyone feels supported. 

We also value sports. Not just because of the big wins and highlight-worthy plays, but because of the lasting impact sports can have: the lifelong lessons in teamwork and dedication; the influence of inspiring mentors; the priceless opportunities to play at the next level. Sports can change lives—that’s what we value.

Our team helps the world see sports differently through products that make it easier to capture video, analyze data, share highlights and do a lot more.  

Ready to join us?

Before we get to the details, here are a couple preferences we have for this opportunity:

  • You’ll be based in either Lincoln or Omaha, Nebraska (preferred) or remote U.S.
  • Applicants must be authorized for full-time employment in the U.S.

We’re looking for a GRC Analyst (Governance, Risk and Compliance) to join our Security & Compliance team. If you’re looking for the unique opportunity to stretch your leadership capabilities, embrace modern governance, risk, compliance & privacy practices through zero-trust strategies, use your builder mentality & lead with the heart of a teacher, you’re in luck. You’ll help shape the future of security and privacy at Hudl.

The GRC Analyst is responsible for the management & implementation of GRC & Privacy solutions, driving improvements, maintaining standards & policies, maintenance of re-usable & scalable solutions, and functioning as a subject matter expert on services provided to the organization.  The GRC Analyst builds and maintains strong relationships with multiple business, technical teams, and customers to support the overall security strategy compliance charter and enterprise risk management center of excellence. 

You’ll maintain knowledge in GRC practices and methodologies, risk management, security/compliance/privacy obligations, and regulatory requirements. You’ll also mature and maintain the common control framework and regulatory compliance programs that support an “implement once, use many” philosophy. As the business evolves, you’ll ensure the GRC function is well positioned to satisfy customer expectations & industry obligations, as well as enable security and privacy by design.

Our flexible work policy means you can decide where you want to work: our Lincoln HQ, our Omaha office or remotely within the majority of U.S. states (exceptions: Alaska, California, Colorado, Connecticut, Delaware, D.C., Hawaii, Maine, Maryland, Montana, New Jersey, New Mexico, New York, North Dakota, Oregon, Rhode Island, Vermont and Washington). #LI-Remote

You are

  • A leader. You’re self-directed. You have the ability to develop & communicate a vision others will be compelled to follow. You’ll serve as an information security subject matter expert that supports the development, implementation & maintenance of information security for the enterprise. The best part – you’ll actively train, coach, and develop team members.
  • Risk & business adept. You’ll create and maintain information security policies, standards and controls for the organization based on zero-trust principles and aligned to the ISO standard. You’ll also oversee the information risk management process, including risk analysis and mitigation activities, and enhancing the Enterprise Risk Management (ERM) program.
  • A strong communicator. You advise divisional leaders on risk issues related to control design, effectiveness, regulatory changes & risk appetite, and recommend actions in support of the changing global regulatory environment.
  • Organized. Documentation and knowledge-sharing comes naturally to you. You value year-over-year improvements and monitor, measure & refine the execution of security plans against strategic & metrics: KRIs & KPIs
  • A constant learner. You strive not just to learn, but to apply what you’ve learned in your personal and professional life. You understand current & emerging GRC & privacy changes, as well as staying abreast on new standards, and frameworks & integrate them into Hudl’s existing enterprise architecture & design where applicable.
  • Curious. You question the who, what, when, why, where & how with a desire for improvement. You’re not satisfied with good enough – you aim to achieve best-in-class capabilities while maintaining efficiency & simplicity.

You will

  • Assist in executing strategies that improve the efficacy, efficiency & reliability of governance, risk and compliance enterprise wide. Support leadership and other key stakeholders to mature the program & integrate into the overall security program.
  • Assist in the creation and maintenance of information security policies, standards, and controls for the organization.
  • Assist with managing the information risk management process, including risk analysis and treatment activities.  
  • Assist with all facets of Information Security Compliance, procedures, and controls to ensure compliance with applicable regulatory and legal requirements, including but not limited to the General Data Protection Regulation (GDPR), Family Educational Rights & Privacy Act (FERPA), ISO 27001/2/27701, SOC2, etc.
  • Support the compliance program with ISO 27001, ISO 27002, & ISO 27701 process prioritization, creation & maturation, as well as future external audit processes.
  • Support, improve & guide the privacy program, as well as maintain deep partnerships with the Privacy group.
  • Assist and support the development, implementation, and management of the vendor risk management program through RFP, vendor/customer due diligence process & overhaul customer-facing security program documentation to greatly improve customer experience & improve the sales cycle.
  • Support teams with security and privacy controls and requirements.
  • Apply your understanding of design and oversight of FERPA, SOC 2 Type 2, ISO 27001, 27002, 27701, 27017 & 27018 and willingness to support a common control framework. Refine controls under the guidance of zero trust principles.
  • Assist in the development of reporting and metrics to senior leadership (KRI’s & KPI’s).
  • Bring 2-5 years of relevant experience.

We will 

  • Champion work-life harmony. We’ll give you the flexibility you need in your work life (e.g., flexible vacation time, company-wide holidays and timeout (meeting-free) days, remote work options and more) so you can enjoy your personal life too.
  • Guarantee autonomy. We have an open, honest culture and we trust our people from day one. Your team will support you, but you’ll own your work and have the agency to try new ideas. 
  • Encourage career growth. We’re lifelong learners who encourage professional development. We’ll give you tons of resources and opportunities to keep growing.
  • Provide an environment to help you succeed. We've invested in our offices, designing incredible spaces with our employees in mind. But whether you’re at the office or working remotely, we’ll provide you the tech stack and hardware to do your best work.
  • Support your mental and physical health. We care about our employees’ wellbeing. Our Employee Assistance Program, employee resource groups and fitness partner Peerfit have you covered.
  • Cover your medical insurance. We have multiple plans to pick from to ensure you’ll have the coverage you (and your dependents) want, including vision, dental, fertility healthcare and family forming benefits.
  • Contribute to your 401(K). Yep, that’s free money. We’ll match up to 4% of your own contribution.

Diversity at Hudl

Hudl is an equal opportunity employer. We understand the power of a diverse team, celebrate differences and promote inclusive and accessible environments. 

To promote Hudlies being their authentic selves and give everyone opportunities for allyship, we offer employee resource groups. These employee-led groups are drawn together by common affinities, passions and life experiences: 

  • Her Hudl
  • Hudl Black
  • Pride@Hudl
  • Mental Health Champions
  • Community Champions

We recognize there’s ongoing work to be done and track our efforts and commitments in annual diversity reports

We also know imposter syndrome is real and the confidence gap can get in the way of meeting spectacular candidates. Please don’t hesitate to apply—we’d love to hear from you.

Privacy Policy

Hudl Applicant and Candidate Privacy Policy

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: C Compliance GDPR Governance ISO 27001 ISO 27002 KPIs Privacy RFPs Risk analysis Risk management Security strategy SOC SOC 2 Strategy Zero Trust

Perks/benefits: 401(k) matching Career development Equity Fertility benefits Flex hours Flex vacation Health care Team events

Regions: Remote/Anywhere North America
Country: United States
Job stats:  40  13  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.