Kaplan
InformationSecurityGRCAnalyst
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Information Security GRC Analyst at Kaplan. Skills: Information Security, GRC, Risk assessment, Compliance. Support IT governance frameworks development. Oversee IT policies and standards lifecycle”
Industry & Context.
Problem-solving; Analytical
What They're Looking For.
Must Have
Bachelor's degree in IS or Cybersecurity, 2+ years audit, technical compliance, or information security experience, Understanding of IT governance, risk management, and compliance frameworks, Proven experience in risk assessments, audits, and compliance initiatives, Demonstrated ability to lead security projects
Nice to Have
Relevant certifications (CISA, CISM, CRISC, CISSP), Understanding of networking protocols, Understanding of encryption algorithms, Understanding of Cloud security concepts, Familiarity with security technologies, Foundational understanding of Gen AI concepts, Understanding of AI-specific risks, Experience automating security tasks
What You'll Do.
Support IT governance frameworks development
Oversee IT policies and standards lifecycle
Manage third party vendor risk
Conduct vendor due diligence
Conduct security and compliance assessments
Review vendor contracts and controls
Monitor vendor performance and risk
Support IT risk management
Identify and assess technology risks
Track technology risks
Maintain risk registers
Coordinate mitigation activities
Perform internal audits
Assist in evidence collection for audits
Conduct phishing simulation campaigns
Analyze phishing simulation results
Manage security awareness program
Provide expert support for technical controls
Design technical controls
Implement technical controls
Enhance technical controls
Review IT systems for controls
Collaborate with control owners
Collaborate with system administrators
Remediate IT control gaps
Drive control improvements
Lead completion of client security questionnaires
Lead completion of RFPs
How You'll Work.
Team & Collaboration
Control owners; System administrators
Process & Methodology
Security projects
Full Job Description
**Job Title ** Information Security GRC Analyst I (Hybrid) **Job Description** For more than 80 years, Kaplan has been a trailblazer in education and professional advancement. We are a global company at the intersection of education and technology, focused on collaboration, innovation, and creativity to deliver a best in class educational experience and make Kaplan a great place to work. Our offices in India opened in Bengaluru in 2018. Since then, our team has fueled growth and innovation across the organization, impacting students worldwide. We are eager to grow and expand with skilled professionals like you who use their talent to build solutions, enable effective learning, and improve students’ lives. The future of education is here and we are eager to work alongside those who want to make a positive impact and inspire change in the world around them. The Information Security GRC Analyst I role will support and enhance IT governance, risk assessment, and compliance functions for the KNA organization. This position will be heavily involved in monitoring, maintaining, and improving elements of overall IT governance, enterprise risk management, and compliance with regulations and control frameworks such as ISO 27001, NIST, and COBIT. The Information Security GRC analyst I will focus on facilitating the review, development, implementation, and documentation supporting the ISMS policies, processes, procedures, and practices, while also identifying areas for improvement and efficiency. **_Primary/Key Responsibilities_** * Support the development, implementation, and maintenance of IT governance frameworks (e.g., COBIT, ITIL), ensuring alignment with organizational and regulatory requirements. * Oversee the lifecycle of IT policies and standards, including creation, review, approval, communication, and monitoring for compliance. * Manage third party vendor risk, including AI and cloud service providers, by conducting due diligence, security and compliance assessments,
Applying for this Information Security GRC Analyst role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Kaplan?
Real rants from real employees. Read before you apply.