First American Title Logo

First American Title

Controls & Compliance Senior Analyst-Hybrid

Reposted 13 Days Ago
Be an Early Applicant
In-Office
Santa Ana, CA
95K-127K Annually
Senior level
In-Office
Santa Ana, CA
95K-127K Annually
Senior level
The Senior Analyst will support governance, risk, and compliance strategies, conduct assessments, and collaborate on cybersecurity threats and solutions.
The summary above was generated by AI
Who We AreJoin a team that puts its People First! Since 1889, First American (NYSE: FAF) has held an unwavering belief in its people. They are passionate about what they do, and we are equally passionate about fostering an environment where all feel welcome, supported, and empowered to be innovative and reach their full potential. Our inclusive, people-first culture has earned our company numerous accolades, including being named to the Fortune 100 Best Companies to Work For® list for ten consecutive years. We have also earned awards as a best place to work for women, diversity and LGBTQ+ employees, and have been included on more than 50 regional best places to work lists. First American will always strive to be a great place to work, for all. For more information, please visit www.careers.firstam.com.

What We DoReporting to the Manager of InfoSec GRC, the Senior Analyst is responsible for supporting enterprise-wide governance, risk, and compliance strategies ensuring alignment with regulatory requirements and cybersecurity best practices. This role is responsible for performing self-assessments, control testing, issue lifecycle management, and support of the GRC program to strengthen the organization’s risk posture.
This role is hybrid in office three days a week in Santa Ana, CA.

What You'll Do

  • Assist with security assurance activities, including control design evaluations, walkthroughs, and control effectiveness testing aligned with regulatory and framework requirements (e.g., NIST CSF, ISO 27001, SOX, SOC2, FFIEC CAT).
  • Perform testing of security controls, including coordination with internal audit, external assessors, and business stakeholders.
  • Perform analysis on control activities that reduce risk, add value, and mature the control environment.
  • Perform Information Security risk assessments, including risk identification, evaluation, and prioritization, to support informed decision-making and resource allocation.
  • Collaborate with business units and technology teams to assess the impact and likelihood of cybersecurity threats.
  • Provide support of issue lifecycle, including issue identification, root cause analysis, remediation planning, tracking, validation, and closure, ensuring timely and effective resolution of risk and compliance gaps.
  • Provide subject matter expertise and guidance for Information Security policies and standards.
  • Leverage GRC tools (e.g., Archer, ServiceNow GRC, LogicGate) to automate risk management workflows and enhance reporting capabilities.
  • Maintain data within system of record which tracks issues, engagements, and metrics that are communicated throughout the organization.
  • Support KPI/KRI’s to facilitate risk prioritization and articulation for the enterprise and senior leadership reporting.
  • Assist in the development, maintenance, and implementation of GRC tools and processes to streamline and automate GRC activities.
  • Develop and maintain GRC program documentation.
  • Stay current on emerging threats, industry trends, and regulatory changes proactively adjust GRC strategies.
  • Provide excellent customer service in support of program activities.
  • Frequently interfaces with executives to resolve critical issues and to foster a productive professional network.
  • Ensures the timeliness, quality, and consistency in the delivery of products and services.
  • Required to perform duties outside of normal work hours based on business needs.

What You'll Bring

Knowledge and Skills/Technology Used

  • BA/BS degree in Computer Information Systems, Computer Science or equivalent experience is required. Training courses, seminars, certifications, or other security related education experience preferred 
  • 5+ years of experience in technology, Information Security GRC.
  • Certifications such as CISM, CRISC, CISSP, or CGEIT preferred.
  • Strong knowledge of Information Security and risk management frameworks (NIST, ISO, COBIT, CIS.)
  • Familiarity with GRC platforms and data analytics tools for risk management.
  • Experienced in managing multiple initiatives with strong organization and prioritization skills
  • High attention to detail to manage, analyze and finalize artifacts and documents
  • Highly developed oral and written communication skills; strong presentation skills
  • Highly flexible, adapting to changes in priorities and requirements
  • Team player with positive energy and good customer service skills
  • Self-motivated, demonstrates initiative, and accountability of responsibilities

Salary Range: $95,350.00 - $127,125.00

This hiring range is a reasonable estimate of the base pay range for this position at the time of posting.  Pay is based on a number of factors which may include job-related knowledge, skills, experience, business requirements and geographic location.

What We OfferBy choice, we don’t simply accept individuality – we embrace it, we support it, and we thrive on it! Our People First Culture celebrates diversity, equity and inclusion not simply because it’s the right thing to do, but also because it’s the key to our success. We are proud to foster an authentic and inclusive workplace For All. You are free and encouraged to bring your entire, unique self to work. First American is an equal opportunity employer in every sense of the term.

** Note that the following statements only apply to candidates who will be working from an unincorporated area within Los Angeles County. **

First American will consider for employment all qualified applicants, including those with arrest or conviction records, in a manner consistent with the requirements of applicable state and local laws (e.g., the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act).

First American intends to conduct a review of an applicant’s criminal history in connection with a conditional offer. First American reasonably believes that a criminal history may have a direct, adverse and negative relationship with the following material job duties for this position potentially resulting in the withdrawal of the conditional offer of employment: handling of confidential, proprietary or trade secret information belonging to First American or its customers, administrating or facilitating financial transactions, and the ability to meet customer-imposed criminal history requirements.

Based on eligibility, First American offers a comprehensive benefits package including medical, dental, vision, 401k, PTO/paid sick leave and other great benefits like an employee stock purchase plan.

Top Skills

Archer
Ffiec Cat
Iso 27001
Logicgate
Nist Csf
Servicenow Grc
Soc2
Sox
HQ

First American Title Santa Ana, California, USA Office

1 First American Way, Santa Ana, CA, United States, 92707

First American Title Santa Ana, California, USA Office

3 First American Way, Santa Ana, CA, United States, 92707

Similar Jobs

3 Hours Ago
Remote or Hybrid
Santa Clara, CA, USA
135K-237K Annually
Senior level
135K-237K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The Sr Technical Consultant guides customers in using the ServiceNow Platform, focusing on configuration, integration, and project delivery to enhance customer business outcomes.
Top Skills: BootstrapCSSHTMLJavaScriptLdapSaaSServicenowSsoWeb ServicesXML
3 Hours Ago
Remote or Hybrid
Santa Clara, CA, USA
218K-381K Annually
Expert/Leader
218K-381K Annually
Expert/Leader
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The role involves managing and leading large cross-functional programs, mentoring teams, building strategic relationships, and integrating AI in processes.
Top Skills: JavaJavaScriptPyTorchScikit-LearnSeleniumTensorFlow
3 Hours Ago
Remote or Hybrid
Santa Clara, CA, USA
164K-286K Annually
Senior level
164K-286K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The Staff Software Engineer will design and implement software solutions, mentor colleagues, and integrate AI into work processes while ensuring high code quality and performance.
Top Skills: AIAlgorithmsAngularData StructuresJavaJavaScriptPrompt EngineeringReactVue

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account