Job Description
Rockstar Games is seeking a Security Risk & Compliance Lead to help assess and manage information security risks and support risk treatment efforts. This role is based in Rockstar’s NYC headquarters in Downtown Manhattan.Rockstar's Security team advances information security across the company by prioritizing and executing security initiatives that drive down risk. They define information security policies, standards, and procedures to safeguard the business and protect players. They build enterprise security controls ranging from endpoint protection technologies to security incident and event monitoring solutions.
What this role involves: - Performing risk and compliance assessments.
- Maintaining information security risk registers and control matrices.
- Triaging and assessing information security risks.
- Collaborating with risk and remediation owners.
- Developing and presenting data-driven reports.
- Enhancing the use of GRC tooling.
- Reviewing and evaluating third-party vendors.
- Supporting the development of security standards.
Requirements: - Bachelor's degree in Computer Science, Cybersecurity, or related field.
- 6+ years of experience in GRC or related cybersecurity role.
- 3+ years of experience in information security risk management.
- Industry-recognized certifications (CISSP, CISA, CRISC, ISO27001 Lead Implementer / Audit).
- Strong written and verbal communication skills.
- Strong knowledge and experience across information security domains.
- Deep familiarity with security risk management methodologies.
- Strong understanding of security management frameworks (ISO 27001, SOC 2, and NIST).
- Experience implementing and improving GRC tooling.
- Experience conducting security audits and risk assessments.
- Hands-on experience performing third-party vendor risk management.
What this role offers: - Opportunity to work on world-class entertainment experiences.
- Be part of an inclusive, highly-motivated environment.
- Collaborate with talented people in the industry.