Columbia Sportswear Company

Principal InfoSec GRC Control Validation Analyst(Governance, Risk & Compliance)

Columbia Sportswear Company  •  Republic of India (Hybrid)  •  1 month ago
Apply
AI can make mistakes so check important info. Chat history is never stored.
53
AI Success™

Job Description

ABOUT THE POSITION

Althoughwe'rean apparel and footwear-focused company, technology is central to everything we do. Columbia Sportswear’s Digital Technology (CDT) organization enables IT infrastructure and applications across four global brands, a global supply chain, and 500+ geographically dispersed stores. These teams support in-store, mobile, and data platforms to enhance customer interface and service in an ever-evolving industry.

We areseekinga detail-oriented and technically proficient Principal GRC Analyst to join our Information Security team, with a focus onvalidatingand testing security controls across the enterprise. This role will serve as the most senior member of a small team focused onvalidatingthe effectiveness of information security controls. It is ideal for professionals with 8 or more years of experience in GRC, IT audit, or cybersecurity operations who have supervised IT control testing teams and are passionate about driving continuous improvement.

HOW YOU’LL MAKE A DIFFERENCE

  • Plan, lead, and execute control validation and testing activities across various domains (e.g., access management, vulnerability management, incident response, data protection).

  • Mentor junior analysts, providing guidance on control validation methodologies and best practices while fostering a culture of accountability

  • Provide subject matterexpertiseregardinginformation security control validation and compliance frameworks to the CDT organization and its business partners

  • Document control issues and collaborate with stakeholders to develop remediation recommendations

  • Develop and enhance control testing methodologies, procedures, and reporting mechanisms

  • Prepare risk reports and dashboards for management and governancecommittees.

  • Influence the evolution of the GRC program through maturing tools, automation, processes, and metrics, andprocesses.

YOU ARE

  • Experienced and Passionate:You are a seasoned security professional with a passion for governance, risk, and compliance

  • Methodical and Pragmatic:You approach control testing with precision and can identifypragmatic solutions to addressing risks

  • Self-Motivated and Curious Youare driven to understand the "why", you thoughtfully investigate complex issues and ask probing questions

  • Leadership-Oriented:Youdemonstrateinitiative and are experienced in mentoring and developing others

  • Relationship DrivenYou build rapport and support your team and colleagues across functions

  • Influential Communicator Whetherin writing or verbally, you can effectively explain technical concepts and risks to colleagues and management without excessivejargon.

YOU HAVE

  • Bachelor’s degree in a technical field such as cybersecurity or business information systems

  • Security certifications such as CISSP, CISA, CRISC, Sec+, or CCpreferred.

  • Minimum 8 years’ experience in GRC, IT audit, or information security within mid-size to large corporate environment

  • Provenexpertisein cybersecurity frameworks such as NIST CSF or ISO 27001

  • Hands-on experience in leading IT audits, risk assessments, or compliance programs

#LI-SA1

#Hybrid

This job description is not meant to be an all-inclusive list of duties and responsibilities, but constitutes a general definition of the position's scope and function in the company.

Columbia Sportswear Company

About Columbia Sportswear Company

Based in Portland, Oregon, Columbia Sportswear Company (NASDAQ: COLM) is a global outdoor brand that crafts active lifestyle gear fortified with industry-leading technologies and tested in our backyard. Our apparel, footwear, and accessories reflect our Pacific Northwest heritage and indomitable spirit.

Over the last 80 years, Columbia and our family of brands, Sorel, prAna, and Mountain Hardwear, have grown to over 10,000 employees and proudly sell products in over 100 countries.

At Columbia, we're as passionate about the outdoors as you are. And while our gear is available around the world, we're proud to be based in the Pacific Northwest where the lush forests, snow-covered mountains, rugged coastline, and wide-open spaces serve as our playground. This is where we hike, fish, hunt, camp, climb, shred, paddle, golf, run, and just enjoy the fresh air with friends.

We hope to see you out there.

Columbia Sportswear Company (the “Company”) is now using LinkedIn's AI Assistant technology as part of our recruiting process (see LinkedIn’s terms and conditions). This innovative tool helps enhance efficiency, improve candidate matching and streamline the recruitment process. However, to ensure fairness, a member of the Company’s recruiting team will be involved in every step of the recruiting process. By proceeding with my application, I acknowledge I have read and understand my personal information is processed in accordance with the Company's Applicant & Employee Privacy Notice.

LinkedIn Terms & Conditions:

https://www.linkedin.com/legal/jobs-terms-conditions

CSC Applicant & Employee Privacy Notice:

https://www.columbiasportswearcompany.com/privacy-policy

Industry
Fashion & Apparel
Company Size
5,001-10,000 employees
Headquarters
Portland, Oregon
Year Founded
Unknown
Social Media