Demo

Information Security GRC Analyst

Sutton Bank
Columbus, OH Full Time
POSTED ON 3/2/2026 CLOSED ON 5/9/2026

What are the responsibilities and job description for the Information Security GRC Analyst position at Sutton Bank?

Summary:

Responsible for protecting the integrity, confidentiality, and availability of Sutton Bank's information assets. This position requires a proactive professional with experience in assessing, identifying, and mitigating security risks while ensuring compliance with relevant regulatory and organizational standards.

 

Qualifications:

Education: Bachelor's Degree in Information Technology, Computer Science, Cybersecurity, or related field.

Licenses/Certifications: Valid Driver's License. CISSP, CISA or CRISC or CEH preferred.

Experience: Three to five years of experience in information security, IT or risk management, preferably in a financial institution. Or equivalent combination of education and experience.

 

Essential Functions:

 

A: Job Specific:

  • Independently conducts in-depth assessments of information security risks by analyzing potential vulnerabilities within systems, applications, processes, and 3rd
  • Ensures compliance with relevant standards such as ISO 27001, FFIEC, or NIST CSF frameworks.
  • Prioritizes vulnerability remediation efforts based on risk severity.
  • Coordinates with IT teams to ensure timely patching or mitigation.
  • Works daily within TPRM platforms and improve functionality.
  • Develops and maintains security metrics and dashboards to monitor risk trends and control effectiveness.
  • Maintains and update risk registers, ensuring accurate tracking of risk and remediation plans.

Knowledge/Skills/Abilities:

  • Excellent verbal and written communications at both business and deep technical levels.
  • Excellent interpersonal skills.
  • The ability to manage multiple tasks.
  • Technical writing.
  • Ability to read and comprehend instructions, correspondence, technical manuals and memos.
  • Ability to respond to common inquiries or complaints from employees, vendors and management staff.
  • Ability to effectively present information to individuals one-on-one or a small group setting.
  • Ability to articulate technical concepts to end-users.
  • Deep knowledge of information security principles and standards.
  • Advanced knowledge of TPRM platforms and ability to optimize.
  • Proactive Mindset: Staying ahead of emerging threats and taking initiative in risk mitigation.
  • Strong analytical and problem-solving skills.
  • Attention to Detail: Ability to identify subtle security vulnerabilities and ensure accurate documentation.
  • Adaptability: Capacity to learn and adapt to rapidly evolving security threats and technologies.
  • Teamwork: Willingness to collaborate with other team members for effective risk mitigation.
  • Time Management: Skill in prioritizing tasks and managing workload in a fast-paced environment.
  • Advanced knowledge of information security principles, standards and frameworks such as NIST, ISO and CIS Controls.
  • Advanced knowledge of security tools such as firewalls, vulnerability scanning, antivirus software, and intrusion detection systems.

Sutton Bank is an Equal Employment Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, sexual orientation, gender identity, disability, pregnancy or protected veteran status.

Salary.com Estimation for Information Security GRC Analyst in Columbus, OH
$84,283 to $102,301
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets
This job has expired.
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Sutton Bank

  • Sutton Bank Attica, OH
  • Summary: Responsible for providing broad-based administrative, organizational, and project management support to the Legal function of the Bank. Serves as ... more
  • 2 Days Ago

  • Sutton Bank Columbus, OH
  • Summary: Responsible for the performance and oversight of accounting functions related to the Community Bank and Payments, with a focus on Payments activit... more
  • 6 Days Ago

  • Sutton Bank Columbus, OH
  • Summary: Responsible for the overall direction of the Payment Process Operations team. The PPO manager will be the subject matter expert for the data scope... more
  • 6 Days Ago

  • Sutton Bank Attica, OH
  • SCHEDULE: MONDAY THROUGH FRIDAY 9:30 A.M. TO 6:30 P.M. Summary: Responsible for creating, sending and receiving cash letters to and electronic image postin... more
  • 11 Days Ago


Not the job you're looking for? Here are some other Information Security GRC Analyst jobs in the Columbus, OH area that may be a better fit.

  • Telhio Credit Union Columbus, OH
  • Formed in 1934, Telhio began as a credit union for Columbus Telephone Company (now AT&T) employees. Telhio now serves over 70,000 member-owners throughout ... more
  • 12 Days Ago

  • Outcomes® Dublin, OH
  • Sr Engineer, Information Security & Risk Senior Security Architect At Outcomes®, we power connections across pharmacy, payers, and pharma through our patie... more
  • 22 Days Ago

AI Assistant is available now!

Feel free to start your new journey!