To enhance the security posture of the organization, the full-time GRC Analyst will design, implement, and manage control and risk workflows, perform third-party risk assessments, and ensure compliance with industry standards and regulations. Key responsibilities Leads the design and governance of control frameworks and risk workflows within the GRC platform Monitors and updates risk registers, ensuring accurate tracking and prioritization of risks Conducts information security risk assessments and collaborates with internal teams and external auditors for compliance audits Required qualifications Bachelor's degree in information security, cybersecurity, computer science, or a related field, or equivalent experience Minimum of 5 years of relevant experience in governance, risk, and compliance functions within IT or information security Experience with AuditBoard (Optro) is highly preferred Certifications such as CISA, CRISC, or CISM are preferred Familiarity with compliance frameworks like HIPAA, NIST CSF, and SOC 2
GRC Analyst in workfromhome at Unknown Company
This position is listed as full time and onsite.