Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
RH
Robert Half
Lead Info Security Analyst
Career Insights for Security Supervisor
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Wisconsin data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Security Supervisor manages overall security operations within a business. Reviews and organizes staffing levels of Security Officers to maintain full coverage of posts. Trains new officers and works with officers to develop safety plans for buildings the monitor, including lock down plans. May monitor electronic surveillance equipment.
$55,350 / year median in Wisconsin
+3% projected growth
Job Description
Description We are seeking a seasoned Lead Information Security GRC Analyst to join an information security governance team within a highly regulated financial services environment. This role will lead governance, risk, compliance, and security control initiatives with a strong emphasis on PCI DSS v4.0, control effectiveness, audit and regulatory support, risk management, and executive-level reporting. The ideal candidate will bring deep experience in information security governance, PCI compliance, security controls, risk management, and audit practices, along with the ability to communicate effectively with both technical teams and senior leadership. Key Responsibilities PCI DSS & Security Compliance + Lead the design, implementation, and ongoing execution of an enterprise PCI DSS v4.0 program, including accurate Cardholder Data Environment (CDE) scoping and sustainable control implementation. + Serve as a subject matter expert for PCI environments and drive cross-functional accountability for PCI requirements. + Integrate PCI requirements into technology, security, and operational lifecycles. + Lead PCI assessment and governance activities, including QSA engagement, remediation strategies, risk acceptance, and executive reporting. + Develop and support security control effectiveness testing and provide recommendations for identified gaps and mitigation strategies. + Design and implement security controls aligned with industry frameworks, including
NIST CSF
2.0 and CIS Controls v8. + Maintain centralized control traceability to regulatory requirements, policies, standards, and authoritative sources. + Translate complex security, compliance, and risk information into clear communications for both technical and non-technical audiences. Policy & Standards Management + Ensure security policies and standards remain aligned with applicable financial services regulatory requirements and industry best practices. + Lead policy governance processes, including stakeholder reviews, updates, approvals, and ongoing maintenance. + Identify opportunities for proactive policy and standards improvements to support continuous compliance and program maturity. Requirements Required Qualifications Education + Bachelor's degree in Information Security, Computer Science, Risk Management, or a related field. + Master's degree or MBA with a focus on Information Assurance, Cybersecurity, or Financial Risk Management preferred. Experience + 5-8 years of experience in Information Security Governance, Risk, and Compliance (GRC). + Minimum 3 years of hands-on PCI DSS experience, preferably with PCI DSS v4.0. + Experience working within a regulated financial services or banking environment. + Strong understanding of banking regulatory requirements, information security controls, risk management, and industry frameworks. + Experience with GRC platforms such as ServiceNow GRC, LogicGate, or similar solutions. + Demonstrated experience supporting audits, regulatory examinations, control testing, remediation, and risk assessments. + Strong executive communication, presentation, documentation, and stakeholder management skills. Required Certification At least one of the following certifications is required: + CISSP- Certified Information Systems Security Professional + CISM
- Certified Information Security Manager + CRISC
- Certified in Risk and Information Systems Control + CISA
- Certified Information Systems Auditor Ideal Candidate The successful candidate is a strategic and hands-on GRC professional who can operate effectively across security, technology, risk, compliance, audit, and executive leadership teams.
- whenever you choose
- even on the go.