Senior GRC Analyst
Tasks
- Administer and optimize GRC platforms
- Analyze training effectiveness using KPIs and KRIs
- Conduct CMMC gap analysis and control testing
- Conduct third-party risk reviews
- Develop control readiness evidence and POA Ms
- Draft and operationalize security governance policies
- Execute phishing simulations
- Lead third-party risk management program
- Maintain GDPR aligned data classification and handling
- Maintain risk register and accountabilities
- Manage security tasks and projects
- Oversee business continuity disaster recovery and backup recovery
- Own security awareness and training program
- Perform ISO 27001 SOC 2 and NIST CSF control readiness
- Report metrics and executive dashboards
- Review and negotiate client contracts
- Standardize security and privacy contract clauses
- Standardize vendor inventory and tiering
- Support Privacy by Design reviews
- Support audit coordination and compliance monitoring
- Track vendor obligations issues and findings through closure
Perks/Benefits
- 401k
- Back-Up Daycare
- Corporate charitable giving program
- Dental insurance
- Disability coverage
- Employee assistance program
- Employee discount program
- Employee referral program
- FSA/HSA
- First professional licensure bonus
- Flexible work arrangements
- Health plans
- Life insurance
- Merit scholarship program
- Paid Holidays
- Paid bereavement leave
- Paid parental leave
- Paid time off
- Pre-tax commuter account
- Tuition assistance
- Vision insurance
Skills/Tech-stack
Audit Readiness | Awareness Training | BI reporting | Backup & Recovery | Business Continuity | Business Continuity Management | By Design | CMMC | Continuity management | Contract Management | Control mapping | Data Classification | Disaster Recovery | Excel | GDPR | Governance Risk | Governance risk compliance | ISO 27001 | Information security | NIST CSF | Phishing Simulations | Policy Management | Power BI | Power BI Reporting | Privacy by Design | Risk Assessment | Risk Management | Risk compliance | Risk register | SOC 2 | Security Awareness Training | Security awareness | Third Party | Third-Party Risk | Third-party risk management | Vendor Risk | Vendor risk management
Related jobs
-
SkillBridge - IT Security Engineer USD 147K-197KAccess Control | Admin Console | CUI Access | Configuration Management | Device Management401k retirement plan | Conference reimbursement | Dental insurance | Disability insurance | Flexible time offEntry-level Full TimeUnited States - Remote R19h ago
-
Cybersecurity Application Analyst USD 72K-98KHIPAA | PCI DSS | Risk Management | Security Architecture | Security controlsMid-level Full TimeRemote - TX, United States R1d ago
-
Lead Technical GRC Analyst (Governance) USD 110K-140KAI | Active Directory | Archer | Azure Active Directory | CIS Benchmarks401k | Dental insurance | Discounts | Medical insurance | Paid leaveSenior-level Full TimeNew York, NEW YORK, United States R1d ago
-
IDC Security Engineer USD 194K-226KAttack Vectors | CIA triad | Control Systems | Data Center Security | Data ProtectionDomestic and international travel 30 percent allowed | Telecommuting allowedMid-level Full TimeMenlo Park, CA | Remote, US R2d ago
-
AES | Certificate management | Cloud key management | Common Criteria | Crypto agility401k match | Paid time off | Remote work flexibility | Stock purchase discountSenior-level Full TimeRemote - Texas, United States R2d ago
-
IT Security Analyst IV - Remote USD 122K-164KAlert development | CIS Benchmarks | CNAPP | Cloud Security | Detection engineering401k match | Career growth | Flexible workplace | Knowledge sharing | MentorshipSenior-level Full TimeGlendale, Arizona, United States R2d ago
-
Senior IAM Security Analyst USD 94K-169KAccess Governance | Access Management | Attack vector analysis | Cloud Security | Conditional AccessHealthcare benefits | Remote work eligibilitySenior-level Full TimeRemote - TN, United States R2d ago
-
Chief of Staff, Information Security USD 150K-235KAWS | Azure | Budgeting | Cloud Computing | CybersecurityContinuing education program | Continuous learning resources | Family-friendly perks | Flexible time off | Health and wellness benefitsSenior-level Full TimeUS - CO - VIRTUAL, United … R2d ago
-
Vulnerability Assessment Analyst USD 87K-157KAuthorization to Operate | Continuous Monitoring | FedRAMP | Log review | Management FrameworkMid-level Full Time6314 Remote/Teleworker US, United States R2d ago
-
Vendor Security Analyst USD 123K-216KAudit Evidence Collection | Audit evidence | Cybersecurity Framework | Evidence collection | GDPRFlexible work schedule | In office collaboration 1 to 2 times per quarterMid-level Full TimeChicago, IL, US; Remote, US R2d ago
-
Compliance assurance | Corrective Action | Cybersecurity integration | Encryption | FirewallsCareer advancement opportunities | Collaborative team culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimeVirginia R3d ago
-
Compliance assurance | Corrective Action | Encryption | Firewall | Governance RiskCareer advancement opportunities | Collaborative cross functional team culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimeTexas R3d ago
-
Compliance assurance | Encryption | Firewalls | Governance Risk | Governance Risk and ComplianceCareer advancement opportunities | Collaborative team culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimeWashington R3d ago
-
Compliance Management | Cybersecurity integration | Encryption | Firewalls | Governance RiskCareer advancement opportunities | Collaborative cross functional team culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimePennsylvania R3d ago
-
Compliance Management | Cybersecurity integration | Encryption | Firewall | Governance RiskCareer advancement opportunities | Collaborative cross functional culture | Professional development opportunities | Remote work flexibility | Training opportunitiesSenior-level Full TimeNew York R3d ago
-
Compliance | Encryption | Firewalls | Governance | Information securityCareer advancement opportunities | Collaborative cross functional team culture | Competitive benefits package | Flexible remote work environment | Professional development and trainingSenior-level Full TimeMaine R3d ago
-
Compliance Management | Encryption | Firewalls | Governance Risk | Governance risk complianceCareer advancement opportunities | Collaborative team culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimeNorth Carolina R3d ago
-
Compliance | Cybersecurity compliance | Encryption | Firewalls | GRCCareer advancement opportunities | Collaborative team culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimeNew Jersey R3d ago
-
Compliance | Cybersecurity | Encryption | Firewalls | GovernanceCareer advancement | Collaborative team culture | Flexible remote work environment | Professional development trainingSenior-level Full TimeMichigan R3d ago
-
Compliance Management | Corrective Action | Encryption | Firewall | Governance RiskCareer advancement opportunities | Collaborative team culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimeMaryland R3d ago
-
Compliance Management | Data Privacy | Encryption | Firewall | Governance RiskCareer advancement opportunities | Collaborative team culture | Flexible remote work environment | Professional developmentSenior-level Full TimeMassachusetts R3d ago
-
Compliance assurance | Cybersecurity integration | Encryption | Firewalls | Governance RiskCareer advancement potential | Cross-functional collaboration | Professional development | Remote work flexibility | Training opportunitiesSenior-level Full TimeMinnesota R3d ago
-
Compliance Management | Encryption | Firewall | Governance | Information securityCareer advancement potential | Collaborative culture | Professional development | Remote work flexibility | Training opportunitiesSenior-level Full TimeIllinois R3d ago
-
Compliance Management | Encryption | Firewalls | Governance Risk | Governance Risk and ComplianceCareer advancement opportunities | Collaborative cross functional culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimeColorado R3d ago
-
Compliance | Control Assessment | Encryption | Firewalls | GovernanceCareer advancement opportunities | Collaborative cross functional culture | Flexible remote work environment | Professional development and trainingSenior-level Full TimeColumbia R3d ago