Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
ZB
Zions Bancorporation
Cybersecurity Analyst - Governance Risk Compliance (GRC)
Career Insights for Compliance Officer / Analyst
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Utah data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Compliance Officer or Analyst monitors internal compliance with company policies and also company compliance with local, state and federal laws. Reviews company documents, including contracts and marketing materials; communicates with employees and develops training and internal policy materials.
$76,762 / year median in Utah
+2% projected growth
Job Description
Cybersecurity Analyst - Governance Risk Compliance (GRC) 🔍 Midvale, Utah, United States New 📁 Information Security 💼 Enterprise Services 📅 071459 Requisition # Apply for Job Share this Job Sign Up for Job Alerts Zions Bancorporation is transforming what it means to work for a financial institution. With a commitment to technology and innovation, we have been providing our community, clients, and colleagues with the best experience possible for over 150 years. Help us transform our workforce of the future, today. We are currently looking for a Cybersecurity Analyst - Governance Risk Compliance (GRC) to join Zions Bancorporation's Enterprise Information Security team to drive our enterprise-wide Cybersecurity Awareness culture. You will reduce human risk by designing engaging security education, managing threat simulations, and championing proactive security behaviors across the organization. Responsibilities Training & Education Design, coordinate, and execute security awareness training that is both precise and entertaining while effectively reducing behavior risk. Curate and tailor security training for specific audiences, such as our Information Security teams, developers, system administrators, people leaders, and executive leadership. Understand adult learning theory with ability to simplify complex subjects into easy-to-understand material with a focus on visual aids. Maintain relevant cybersecurity knowledge and collaborate with cyber threat intel and incident response partners for understanding and inclusion of real and emerging threats as part of delivering relevant simulation exercises. Analyze simulation results to identify high-risk user groups and individuals. Recommend and develop "just-in-time" learning content Culture & Communication Campaigns Maintain existing Cybersecurity Awareness intranet site and use it to distribute cybersecurity communications, articles, and curated content explaining security best practices in simple, non-technical language. Act as a security advocate, fostering a supportive, "no-blame" reporting culture where employees feel comfortable reporting security concerns. Act as a voice for the Cybersecurity team, reviewing and editing departmental and company communications. Facilitate and participate in Cybersecurity Ambassadors with representatives across the organization, creating a bridge between business units and cybersecurity. Metrics, Analytics, and Reporting Recommend and understand Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) to measure the effectiveness of the training and awareness program beyond training completion metrics. Use behavioral data to continuously refine and adapt the training strategy. Other duties as assigned.