companyMajor League Baseball logo

Seasonal Governance, Risk & Compliance Analyst

Major League BaseballNew York, New York
On-site Temporary $23/hr - $30/hr

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Entry Level

Qualifications

Qualifications & SkillsBachelor’s or Master’s degree in Information Technology, Information Security, Cybersecurity, Computer Science, or a related field (e.g., Information Security, Risk Management, Compliance). In-depth understanding of PCI v4.0.1 standards, global data privacy laws and regulations (e.g., GDPR, CCPA), IT control frameworks (e.g., NIST CSF, ISO 27001), and risk assessment methodologies. Proficient in gathering and analyzing extensive data from multiple sources, effectively summarizing information into concise, objective reports and dashboards. Strong knowledge of risk management processes, including methods for assessing and mitigating risk.

About the job

The MLB Information Security team is seeking a dedicated Governance, Risk & Compliance (GRC) Analyst for a seasonal position. This role is essential in supporting our governance, risk management, and compliance initiatives. The selected Analyst will engage in various GRC activities, including assisting with audit preparations, conducting risk assessments, monitoring risk registers, and updating internal policies and procedures.

Key Responsibilities

  • Assist in the implementation of MLB’s data privacy, governance, and risk management programs.
  • Facilitate the execution of PCI-DSS and SOC 1 Type II audits by reviewing evidence, coordinating with internal stakeholders, and maintaining audit readiness dashboards.
  • Perform thorough vendor security and compliance risk assessments while providing recommendations for contractual security provisions.
  • Refine and maintain vendor risk review workflows, manage the vendor repository, and apply risk tiering based on data access and criticality using MLB’s TPRM tool.
  • Track and manage risk acceptances and policy exceptions, ensuring proper documentation and regular reviews.
  • Support the fulfillment of Data Subject Access Requests (DSAR), ensuring compliance with statutory timelines required by applicable privacy laws.
  • Assist in drafting compliance policies, procedures, and playbooks related to cybersecurity, privacy, confidentiality, and data protection.
  • Develop and maintain KPIs and dashboards to evaluate the success of GRC programs and initiatives.

About Major League Baseball

Major League Baseball (MLB) is a premier professional sports organization, recognized for its commitment to excellence in sports and entertainment. The MLB Information Security team plays a critical role in safeguarding the integrity of the game and the data of its stakeholders.

Similar jobs

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.