Description
Fanatics is hiring an Information Security GRC Analyst III, Controls Assurance to test the operating effectiveness of security controls across PCI DSS, SOX ITGC, SOC reporting, and internal NIST-aligned baselines. The role partners with control owners, business units, IT teams, Security Operations, and InfoSec GRC counterparts to execute control testing, evaluate evidence, support access reviews and auditor engagements, manage control exceptions, track remediation, and contribute to control reporting. It requires at least four years of relevant experience, a bachelor's degree or equivalent practical experience, strong communication and judgment, and familiarity with core security control domains; CISA certification and exposure to multiple frameworks are preferred. The New York City base salary range is $120,000 to $160,000 USD.
