Senior Governance, Risk, and Compliance (GRC) Process Analyst
Tasks
- Assist in internal and external SOX audits
- Conduct risk assessments and maintain risk registers
- Coordinate IT General Controls and SOX compliance activities
- Coordinate control testing evidence collection and remediation tracking
- Coordinate vulnerability management with infrastructure teams
- Define and deploy common IT process requirements and standards
- Develop dashboards metrics and compliance reports
- Identify assess and track remediation of technology and cybersecurity risks
- Identify scope and recommend SOX control automation options
- Maintain SOX control documentation narratives and process flows
- Maintain documentation for risks controls findings and remediation
- Monitor compliance with internal policies and regulatory requirements
- Perform third-party vendor risk assessments
- Prepare audit evidence and coordinate audit requests
- Provide audit liaison between IT Security and auditors
- Review and update policies and procedures
- Support GRC framework and procedures
- Support SOX control design effectiveness and operational effectiveness
- Support access reviews and security compliance assessments
- Support audit readiness and continuous monitoring
- Track audit findings and remediation plans to closure
- Track remediation of vulnerabilities and security findings
Perks/Benefits
- N/A
Skills/Tech-stack
Access Management | Access reviews | Audit board) | Audit evidence | COBIT | Cairo | Cause analysis | Change Management | Control Testing | Evidence collection | General controls | Governance Risk | Governance Risk and Compliance | ISO 27001 | IT Audit | IT General Controls | Identity and Access Management | Identity and access | Infrastructure Security | NIST | OWASP | Risk Assessment | Risk Management | Risk and Compliance | Root Cause Analysis | Root cause | SOX IT | SOX IT General Controls | Security controls | ServiceNow GRC | Third Party | Third-Party Risk | Third-party risk management | Vulnerability Management
Education
N/A
Related jobs
-
Cyber Defense Analyst (Threat Hunt) USD 120K-130K800-53 | Access Control | Computer Network Defense | Computer network | Content Filtering401k | Dental insurance | Education assistance | Health insurance | InsuranceMid-level Full TimeQuantico, VA, 22134, US11h ago
-
Cyber Security Analyst USD 45K-84KCause analysis | Compliance | Incident Response | Information security | Problem SolvingDental insurance | Hybrid workstyle | Life insurance | Medical insurance | Paid time offMid-level Full TimeFL - Saint Petersburg - 880 …21h ago
-
Head of Info/Network Security USD 135K-222KBusiness Continuity | Cloud Security | Cybersecurity | Data Loss Prevention | Data lossEmergency on call rotation | Remote work availableExecutive-level Full TimeHeadquarters, United States21h ago
-
Information Security - IT Information Security USD 66K-97KAccess Management | Audit Logging | User Access Management | User access | WindowsMid-level Full TimeDededo, GU, 96929, USA1d ago
-
Senior-level Full TimeChantilly, VA1d ago
-
Cybersecurity Account Associate USD 30K-40KAccess Management | CRM | Change Management | Customer communication | Documentation ManagementCareer development | Mentorship | Ongoing training | Professional Certification Experience HoursEntry-level Full TimeBozeman, MT2d ago
-
Junior Cyber Security Analyst USD 69K-100KACAS | ATO Support | Active Directory | Artifact review | AzureOnsite Work Fort MeadeEntry-level Full TimeFort Meade, MD, United States2d ago
-
Cyber Security & ITAR Analyst USD 100K-130KAdobe Acrobat | Android | Awareness Training | Control compliance | Cyber Security401k match | Health savings account | Life Insurance Paid by Employer | Long Term Disability Insurance Paid By Employer | Paid HolidaysMid-level Full TimeBroomfield, CO, US R2d ago
-
Systems Technician USD 70K-82K800-171 | Active Directory | Audit Logging | Azure MFA | Backup and Disaster RecoveryEmergency incident response readiness | On-call supportMid-level Full TimeTorrance, CA2d ago
-
Security Analyst Consultant - Attack Surface Management USD 110K-140KAWS | Attack Path | Attack Path Analysis | Attack surface | Attack surface discovery401k matching | Dental insurance | Medical insurance | Paid time off | Remote work optionSenior-level Full TimeSeattle, WA2d ago
-
Senior Risk Management Analyst USD 72K-150KBusiness Intelligence | Business Objects | CMS | COSO ERM | Compliance MonitoringSenior-level Full TimeUnited States3d ago
-
Risk Management Analyst USD 57K-120KCompliance Management | Coso | Data Analysis | Data Visualization | ISO 31000Mid-level Full TimeUnited States3d ago
-
Cybersecurity Internship Fall 2026 - International Organization for Standardization (ISO) USD 50K-62KBCMS | Business Continuity | Business Continuity Management | Business Continuity Management System | Computer TroubleshootingCareer advancement opportunities | Paid sick time off | Vibrant work cultureEntry-level Full TimeIrvine, CA3d ago
-
Cybersecurity Internship Fall 2026 - Healthcare USD 50K-62KComputer Troubleshooting | DNS | Excel | Firewalls | HIPAACareer advancement opportunities | Paid sick time off | Vibrant work cultureEntry-level InternshipIrvine, CA3d ago
-
Cybersecurity Internship Fall 2026 - Federal USD 50K-62KCompliance | Computer Troubleshooting | DNS | Excel | FirewallCareer advancement opportunities | Paid sick time off | Vibrant work cultureEntry-level InternshipFairfax, VA3d ago
-
Computer Troubleshooting | DNS | Enterprise Risk | Enterprise Risk Management | ExcelCareer advancement opportunities | Paid sick time off | Vibrant work cultureEntry-level InternshipIrvine, CA3d ago
-
API Integration | AWS | Automation | Azure | Device provisioningHybrid work | On-call rotationSenior-level Full TimeMaplewood, MN3d ago
-
Access Control | Access Controls | Access Management | Access provisioning | Access reviewsContract extension optionSenior-level Full TimeLatham, NY, United States3d ago
-
Technical Operations Administrator USD 50K-60KAWS | Access Management | Azure | Backup and Restore | Cause analysisEntry-level Full TimeMiami, FL, 33186, US3d ago
-
System Cybersecurity - Senior USD 175K-194KAccess Management | Computer Security | Cybersecurity | Disaster Recovery | Evidence PreservationSenior-level Full TimeBedford, Massachusetts, United States3d ago
-
Senior Information Security Analyst USD 104K-158KApplication Control Reviews | Application control | COBIT | Cause analysis | Control reviewsBenefits package | Flexible work schedule | Monday to Friday hours | Remote workSenior-level Full TimeUnited States3d ago
-
Application Security Analyst USD 95K-140KAWS | AWS WAF | Akamai | Application Firewall | Application SecurityOn site 5 days per weekMid-level Full TimeAuburn Hills, MI, United States3d ago
-
2026 Central Ohio InfoSec Summit USD 175K-185KIncident Response | Penetration Testing | Red Teaming | Security monitoring | Threat modelingBackup childcare | Financial coaching | Health care coverage | Mental health support | Onsite health and wellness centersSenior-level Full TimeColumbus, OH, United States3d ago
-
Information Systems Security Engineer SME USD 150K-189K800-53 | 800-53A | AWS | Assessment and Authorization | Cloud SecuritySenior-level Full TimeCLARKSBURG, WV, United States3d ago
-
Security Discovery & Assessment Analyst USD 78K-160KApplication Security | BurpSuite | Cryptography | Kali Linux | Network ScanningMid-level Full TimeWashington, DC3d ago