Start Your Search Here

push notification bell

Would you like to receive notifications about IT & Technology jobs in Minneapolis?

push notification bell

You have blocked notifications

Oops! You have blocked notifications. Click here for more info

You have blocked notifications, please check your browser settings.

push notification bell

You're currently subscribed to job notifications

Want to change your notifications for job alerts?

push notification bell

Subscribe to notifications

You will no longer receive notifications

Job Search

Rice Park Capital Managment LP

Minneapolis / Global

Information Security Analyst

  • $90.000 - $130.000

Job Summary

Salary Range:
$90.000 - $130.000
Apply Now

Job Description

POSITION DESCRIPTION: We are seeking a motivated, detail-oriented Information Security Analyst to own and mature Rice Park’s information security governance, risk, and compliance (“GRC”) program. This is a governance and risk management role, not a security operations role: Rice Park engages a third-party managed security services provider (“MSSP”) to handle day-to-day SIEM monitoring, alert triage, and SOC-level response.

This position is the internal owner of that vendor relationship and of Rice Park’s broader InfoSec program — ensuring the MSSP is delivering against its scope, identifying and closing the gaps the vendor does not cover (e.g., access reviews, policy governance, internal risk assessments), and driving Rice Park’s compliance posture across frameworks such as SOC 2 and GLBA, as well as investor and lender due diligence requirements.

The Information Security Analyst will work closely with the head of IT and coordinate across the organization to manage risk, maintain governance documentation, and ensure Rice Park meets its regulatory, contractual, and investor-facing security obligations.

DUTIES AND RESPONSIBILITIES: Vendor & Security Program Management Serve as the primary internal owner of the relationship with Rice Park’s managed security services provider (MSSP), ensuring SLAs are met and proactively identifying coverage gaps

Coordinate third-party penetration testing engagements, including scoping, scheduling, documentation, and remediation tracking

Track and drive remediation of findings from the MSSP, internal audits, and vulnerability scans

Governance, Risk & Compliance Own and maintain the information security policy and procedure suite, including annual review and approval cycles

Lead SOC 2, GLBA, and related compliance efforts, including evidence collection, control testing, and remediation of gaps

Conduct internal and external risk assessments and audits, and maintain the enterprise risk register

Support the development and execution of Business Impact Analyses (BIA), business continuity planning, and related risk management activities

Manage investor, lender, and other counterparty information security due diligence requests and questionnaires, on both an ad hoc and annual basis

Access & Control Oversight Own the user access review program across systems and applications — an area outside the MSSP’s scope — including designing the review cadence and ensuring appropriate controls are documented and enforced

Serve as the internal escalation point of contact for the MSSP during a security incident, coordinating internal response, documentation, and communication

Awareness & Continuous Improvement Maintain and deliver Rice Park’s security awareness training and phishing simulation program

Collaborate with internal teams across the organization to promote security awareness and ensure adherence to security policies and protocols

Stay current on cybersecurity trends, regulatory developments, and industry best practices relevant to Rice Park’s risk profile

Undertake other related duties as assigned to support business operations and evolving organizational needs

QUALIFICATIONS: Bachelor’s degree in Information Technology, Risk Management, Business, Cybersecurity, or a related field (or equivalent experience)

2+ years of experience in information security governance, risk, or compliance (GRC); experience managing an MSSP or other outsourced security vendor relationship is a strong plus

Working knowledge of regulatory and compliance frameworks such as SOC 2, ISO 27001, NIST CSF, and GLBA

Experience conducting or supporting risk assessments, audits, access reviews, and third-party/vendor due diligence

Strong policy writing, documentation, and project management skills

Familiarity with SIEM and security tooling output sufficient to interpret and act on vendor reporting (hands‑on SIEM operation is not required — that is handled by our MSSP)

Strong organizational and communication skills; comfort managing vendors and driving cross‑functional accountability

Ability to handle sensitive information with discretion and professionalism

Nice to have: exposure to a scripting or programming language (e.g., SQL, Python) for reporting and data analysis

Nice to have: CISA, CRISC, or a similar governance-oriented certification

POSITION DETAILS: This is a full-time position with competitive compensation (salary & bonus) and a comprehensive benefits package including:

Medical, Dental, Vision Insurance Options

Paid Time Off and Paid Holidays

Company Paid Life Insurance

Long-Term Disability

401(k) with employer match

Work Location: Plymouth, MN or Charlotte, NC (hybrid)

#J-18808-Ljbffr

Apply Now

Similar Opportunities

View all jobs

Get Job Alerts

Don't miss the perfect fit. Get Daily curated job alerts.

Job Title or Keyword(s)
Location