Hiring.Camp

Digital Risk & Controls Specialist

Greater Kansas City Community Foundation

·

Today

Location
Kansas City, MO
Workplace
Hybrid
Department
IT
Experience
2+ years
Education
Bachelor
Source
Paylocity

Description

Description

The Digital Risk & Controls Specialist coordinates day-to-day activities that support the Community Foundation's governance and risk management program. This role focuses on digital controls, third-party risk management, and the systems and processes used to help identify, track, and manage risk.

This role helps ensure the organization meets its cybersecurity, data protection, and compliance obligations by coordinating the collection, organization, reporting, and retention of required documentation and evidence. The position is a key partner to the cybersecurity team and supports the Community Foundation's broader digital risk management and information security programs.

This salaried, exempt position reports to the Director, Information Security. This role is based in our downtown Kansas City, MO office, with the opportunity for a hybrid schedule following a successful training period.

Requirements

  • GRC Platform Administration: Serves as the primary administrator and user for the GRC management platform and maintains all related GRC monitoring tools and workflows.
  • Digital Controls Management: Maintains centralized security, privacy, and AI risk management controls database to continue the digital governance controls framework the Community Foundation has adopted. Tracks remediation of control gaps as identified in risk assessments and resolution of findings from external audits.
  • Digital Risk Assessments & Reporting: Performs regular risk assessments across IT and data-handling processes, including vendors and other third parties. Maintains the Community Foundation’s digital governance risk register. Documents risk profiles for vendors, systems, and processes; oversees data related to risk management decisions and mitigations; delivers periodic risk reports and metrics to leadership, translating technical security risks into realistic business impact potential indicators.
  • Vendor Reviews: Coordinates reviews of vendors, applications, data-sharing arrangements, and AI tools to assess security, privacy, and technology risks. Analyze vendor documentation, identify control gaps and potential risks, and document findings and recommendations within the Community Foundation's risk management platform.

Experience

  • Education & Experience: Bachelor's degree in information security, information technology, business administration, accounting or related discipline, or equivalent practical experience. 2 years of experience in GRC, IT risk, security controls, audit readiness, control testing, compliance, security assurance, or related field. Preference towards beginning progress toward a professional designation such as CISA, CISM, CRISC, CIPP, AIGP, or equivalent.
  • Artificial Intelligence Literacy: Experience with and knowledge of the principles and concepts around artificial intelligence and the use of general-purpose and specialized large language models as applied to overall business operations, including a basic understanding of AI and LLM risks. Hands-on experience with a variety of general-purpose AI tools.
  • Communication: Possess written and verbal communication skills to facilitate being able to read, analyze, and interpret a variety of instructions and procedures, interpret and operate within current technical development and security best practices. 
  • Technical Aptitude: Strong foundational knowledge of current cybersecurity and data protection best practices, with a basic understanding of contemporary governance standards, frameworks, and information technology risk management approaches. High general technical aptitude and ability to learn new software quickly and thoroughly.
  • Collaborative Environment: Ability to operate in a highly collaborative environment, while able to work independently and be self-motivated.
  • Responsiveness: Respond effectively to the most sensitive inquiries or complaints; work well under pressure, including identifying and quickly resolving problems.

Physical Requirements

  • Office & Computer Work: Ability to work regularly at a computer workstation in a fast-paced environment with frequent interruptions.
  • Noise & Communication: Able to work in an office with moderate noise levels. Ability to communicate and interpret detailed information effectively.

This job description is a summary of the employment-at-will relationship and not a contract. Not every responsibility is outlined; changes should be anticipated, and other duties will be assigned as necessary.


Please submit a cover letter with your resume.

Skills

CybersecurityRisk ManagementCompliance

Similar Jobs

30

Digital Risk Solutions Manager

Pwc·Toronto - 18 York Street, Canada

6d ago

Associate, Digital Risk Management

Saks·SG_9001_India

1w ago

Sr. Manager, Insider Risk & Digital Forensics

Huntington·Park Central Office, US +3·Onsite

1w ago

Sales & Engagement Executive (Digital Risk Consulting)

Mmc·Norwich - Willow, UK +2·Hybrid

1w ago

Sales & Engagement Executive (Digital Risk Consulting)

Mmc·Norwich - Willow, UK +2·Hybrid

1w ago

Manager, HR Digital Risk Management

Rbc·20 KING ST W:TORONTO, Canada

1w ago

AVP, Data Engineer (Information Security & Digital Risk Management)

Ocbc·SGP-Head Office, Singapore·Hybrid

1w ago

Consultant(e) Senior / Manager Cyber & Digital Risk (H/F)

Mmc·Paris - Pyramides, France·Onsite

2w ago

AVP, Information Security & Digital Risk Management Specialist

Ocbc·SGP-Head Office, Singapore·Hybrid

2w ago

Manager, Digital Risk & Cyber

Baringa·London, UK

3w ago

Senior Product Manager, Digital Risk Protection Takedowns

Recordedfuture·Remote - US +1·Remote

3w ago

Digital Risk & Local IT Support Analyst

Carrier·Rua Santos Dias No. 1121, Senhora da Hora·Hybrid

4w ago

Specialist Analyst Cyber and Digital Risk

Urbanutilities·31 Duncan St, Australia

4w ago

IT Audit Associate - Digital Risk Services

Elliottdavis·US SC Greenville, US +4

4w ago

MGR, Data Loss Monitoring (AI, Automation & Digital Risk Analytics)

Ocbc·SGP-Head Office, Singapore·Hybrid

1mo ago

Spclst, Cybersecurity & Digital Risk Management

Carrier·Building No 12D, Floor 5·Onsite

1mo ago

Digital Risk and Control Specialist

Saxobank·Headquarters, Denmark

1mo ago

Associate Director - Credit Risk - Digital Infrastructure

Rbc·BROOKFIELD PLACE FKA 3 WORLD FINANCIAL CENTER, 200 VESEY STREET:NEW YORK

1mo ago

Digital Risk Services Practice Leader

Elliottdavis·US SC Greenville, US +5

1mo ago

Management Consultant (Cybersecurity and Digital Risk)

Wavestone·Hong Kong

1mo ago

Digital Risk and Control Manager - Vice President

JPMorgan Chase·Plano, TX

1mo ago

Digital Risk and Control Manager - Vice President

JP Morgan Chase·Plano, TX

1mo ago

Senior Consultant – Business Resilience & Digital Risk - Rome

Mmc·Rome - Villa Grazio, Italy·Hybrid

2mo ago

Risk Digital Assets Associate Director

Depository Trust Company·Jersey City, NJ

2mo ago

Vice President, Information Security and Digital Risk Management

Ocbc·Hong Kong·Onsite

2mo ago

VP, Cyber Technology, Information Security Risk - Digital Assets

Morgan Stanley·Dallas, TX

2mo ago

VP, Cyber Technology, Information Security Risk - Digital Assets

Ms·Spring Valley Rd, US

2mo ago

Senior Product Manager, Digital Risk (Tel Aviv, Israel)

eSentire·Tel Aviv-Yafo, Israel

3mo ago

Senior - Digital Risk Regulatory Compliance

KPMG India·Mumbai, Maharashtra

5mo ago

Senior/Lead Product Manager, Digital Risk Protection

Marqvision·Seoul, Korea +1

9mo ago