Job Description
- *Moodle with us!**
- We're the world's most popular learning platform and we’re on a *mission to empower educators to improve our world.*
- *Find out about your new workplace...**
Moodle is the world’s most trusted online learning solution. The engine of our ecosystem is Moodle LMS, the secure and customizable open source learning management platform used by over 250 million learners worldwide. Developed in conjunction with our community, Moodle LMS is complemented by an ecosystem of products including Moodle Workplace and a network of partners and services providing hosting, customizations and support. We also teach and support educators to create effective online learning experiences and share open education resources. Collectively, we empower educators to improve our world.
Moodle provides services in learning design, implementation support, training, hosting, custom development, and support for Moodle LMS, Moodle Workplace, as well as other Moodle products.
We’ve built a passionate team of hard-working and driven people from all over the world, united by a shared belief in the ability of our platform to make a positive difference to our world. We respect our colleagues and value an open and innovative workplace, filled with integrity and of course a strong focus on education (yes, these are our company values!)
- Find out more about us on our [website.](https://moodle.com/)
- *What your new role can look like…**
- The Risk Analyst main function is to work within the Information Security department and serve as an analyst on open source intelligence, quantitative risk assessment, threat and vulnerability assessment practices, compliance management and audit management functions. The individual will support the company’s Information Security Governance, Risk, and Compliance program.
- Please note, as this role will be deeply involved in our Fed RAMP certification process, the individual hired must be a US person (citizen or legal permanent resident). Additional responsibilities involving global projects will require availability to meet with global stakeholders during alternative time zone working hours.*
- *With the pace of Moodle, no two days will ever be the same! You will...**
- Proven ability to leverage open-source intelligence (OSINT) techniques and methodologies.
- Meticulous and detail-oriented with a focus on accuracy.
- Excellent research and analytical skills, with experience gathering and analyzing information from diverse sources, including the dark web, social media, and public records.
- Assist in the ongoing evaluation and enhancement of all departmental policies, processes, and procedures.
- Stay informed on industry trends in security, risk, compliance frameworks, risk management practices, and information security solutions.
- Continuously monitor, audit, evaluate, and improve technical controls under your purview.
- Collaborate with cross-functional teams to develop and maintain risk and security compliance programs, including SOC 2, FedRAMP, ISO 2700, TPRM, and VM, encompassing policy, process, technology, and continuous compliance of active certifications.
- Support departmental audit and compliance activities to maintain active certifications and achieve future certification objectives.
- Help develop and maintain the company’s Third Party Risk Management and Cyber Risk Management Program.
- Regularly liaise with stakeholders and leaders from other departments to ensure accuracy in identifying risks within the Risk Management Program.
- Establish and manage vendor relationships for the technologies under administration by this position.
Apply tot his job
Apply To this Job