{"id":1465652,"url":"https://alion.io/job/copeland-cybersecurity-grc-analyst","title":"Cybersecurity GRC Analyst","company":{"id":1847558,"name":"Copeland","domain":"copeland.com","url":"https://alion.io/company/copeland-com","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":{"grade":"B","score":75,"open_postings":48,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":26,"computed_at":"2026-10-02T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"middle","employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Quezon City, Philippines"],"countries":["PH"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":16500,"max_usd":41000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":414},"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"DLP","optional":false},{"name":"ISO 27001","optional":false},{"name":"NIST 800-53","optional":false},{"name":"NIST CSF","optional":false},{"name":"SOC 2","optional":false},{"name":"Zscaler","optional":false}],"status":"live","first_seen_at":"2026-06-10T00:00:00Z","employer_posted_date":"2026-06-10","last_verified_at":"2026-10-02T05:29:59Z","board_verified":true,"closed_at":null,"days_open":115,"trust":{"level":"stale","repost_count":0,"flags":["stale"],"days_open":114},"description":"About Us\nWe are a global climate technologies company engineered for sustainability. We create sustainable and efficient residential, commercialand industrial spaces through HVACR technologies. We protect temperature-sensitivegoods throughout the cold chain. And we bring comfort to people globally. Best-in-class engineering, design and manufacturing combined with category-leading brands in compression, controls, softwareand monitoring solutions result in next-generation climate technology that is built for the needs of the world ahead.\nWhether you are a professional looking for a career change, an undergraduate student exploring your first opportunity, or recent graduate with an advanced degree, we have opportunities that will allow you to innovate, be challenged and make an impact. Join our team and start your journey today!\nJob Description\nPrincipal Functional Responsibilities\nDevelop, implement, and maintain cybersecurity policies, standards, and procedures in alignment with industry frameworks and regulatory requirements.\n\nConduct risk assessments, security control evaluations, and gap analyses to identify and mitigate risks.\n\nSupport internal and external audits, ensuring compliance with frameworks such as NIST CSF, ISO 27001, CIS Controls, SOC 2, and regulatory obligations.\n\nAssist in the management of third-party risk assessments and vendor security evaluations.\n\nTrack, monitor, and report on cybersecurity risks, controls, and compliance metrics.\n\nWork with cross-functional teams to ensure security controls are embedded in business processes and IT operations.\n\nDevelop and maintain risk registers, compliance documentation, and audit evidence repositories.\n\nProvide cybersecurity awareness training and guidance to employees on security best practices and compliance requirements.\n\nDLP Strategy & Oversight: Manage and help fine tune DLP Policies (preferable Zscaler) for Endpoint, Network and cloud) to protect sensitive data (PII, PCI, IP)\n\nStay current with evolving cybersecurity threats, regulatory changes, and best practices to enhance the organization's security and compliance posture.\n\nBasic Requirements\nBachelor’s degree in computer science, Information Systems, or related degree plus three (3+) years of experience or equivalent combination of education and experience.\n\nStrong knowledge of security and risk management frameworks like NIST CSF, CIS Critical Security Controls, ISO 27001, NIST 800-53, FAIR, and CIS\n\nMust possess excellent oral and written communication skills and the ability to communicate in technical and business terms. Additionally, must be comfortable developing presentations and delivering them to senior management.\n\n3+ years of experience in cybersecurity, governance, risk, and compliance.\n\nExperience conducting risk assessments, control evaluations, and compliance audits.\n\nStrong knowledge of cybersecurity best practices, policies, and procedures.\n\nExcellent analytical, problem-solving, and communication skills.\n\nAbility to work independently and collaboratively in a dynamic environment.\n\nProfessional certifications in IT and Cybersecurity a plus (e.g., Security+, GCRP, CGRC etc.).\n\nPreferred Requirements\nBachelor’s degree in computer science, Information Systems, or related degree plus eight (3-4) years of experience or equivalent combination of education and experience\n\n3-4 years of experience in Cybersecurity roles (i.e., incident response, security operations, application security, etc.)\n\nAbility to simultaneously handle multiple projects and adjust to changing priorities while multitasking effectively.\n\nSelf-starter, strong initiative, critical thinker, self-directed with a proven track record to collaborate and inspire change.\n\nExperience designing and implementing cybersecurity reporting and metrics (i.e., KPI/KRI development)\n\nFluent in English; additional languages are a plus.\n\nCompetencies\nTech Savvy: Anticipating and adopting innovations in business-building digital and technology applications.\n\nOptimizes Work Processes: Knowing the most effective and efficient processes to get things done, focusing on continuous improvement.\n\nPlans & Aligns: Planning and prioritizing work to meet commitments aligned with the interpersonal goals.\n\nBusiness Insight: Applying knowledge of business and the marketplace to advance the organization’s goals.\n\nCommunicates Effectively: Developing and delivering multi-mode communications that clearly understand the different audiences' unique needs.\n\nWork Conditions\nThis role will have a mid shift schedule from 4pm to 1am\n\nWe have a hybrid work arrangement and we work on-site for thrice a week\n\nOur Commitment to Our People\nAcross the globe, we are united by a singular Purpose: Sustainability is no small ambition. That’swhy everything we do is geared toward a sustainable future-for our generation and all those to come. Through groundbreaking innovations, HVACR technology and cold chain solutions, we are reducing carbon emissions and improving energy efficiency in spaces of all sizes, from residential to commercial to industrial.\nOur employees are our greatest strength. We believe that our culture of passion, openness, and collaboration empowers us to work toward the same goal - to make the world a better place. We invest in the end-to-end development of our people, beginning at onboarding and through senior leadership, so they can thrive personally and professionally.\nFlexible and competitive benefits plans offer the right options to meet your individual/family needs.We provide employees with flexible time off plans, including paid parental leave (maternal and paternal), vacation and holiday leave.\nTogether, we have the opportunity - and the power - to continue to revolutionize the technology behind air conditioning, heatingand refrigeration, and cultivate a better future. Learn more about us and how you can join our team!\nOur Commitment to Inclusion & Belonging\nAt Copeland, we cultivate a strong sense of inclusion and belonging where individuals of all backgrounds, and with diverse perspectives, are embraced and treated fairly to enable a stronger workforce. Our employee resource groups play an important role in culture and community building at Copeland.\nEqual Opportunity Employer\nCopeland is an Equal Opportunity/AffirmativeAction employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, age, marital status, political affiliation, sexual orientation, gender identity, genetic information, disability or protected veteran status. We are committed to providing a workplace free of any discrimination or harassment.","description_format":"text","description_chars":6680,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[{"language":"English","level":"Advanced (C1)","optional":true}]},"benefits":["Flexible time off","Hybrid work","Parental leave"],"hiring_locations":[{"name":"Philippines","iso":"PH","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Cybersecurity","Information Security"],"lifecycle":[{"event":"open","at":"2026-09-29T14:46:39Z"}],"liveness":{"score":7,"band":"cold","label":"Long shot","p_open":1,"p_active":0.233,"p_room":0.28,"age_days":114,"expected_fill_days":26,"reasons":["conf:0","stale_co","velocity","win:tail","crowd:brand"],"computed_at":"2026-10-02T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/copeland-cybersecurity-grc-analyst","json_url":"https://alion.io/job/copeland-cybersecurity-grc-analyst.json","meta":{"generated_at":"2026-10-03T03:13:06Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":2893,"day_limit":5000,"remaining_today":2107,"minute_limit":60,"resets_at":"2026-10-04T00:00:00Z"}}}