The governance, risk, and compliance (GRC) security analyst are responsible for supporting the overall GRC program, security direction of the business and elevating the company’s security posture. The position requires both an understanding of legacy systems, as well as new technologies and requirements. The GRC security analyst is also responsible for supporting the planning and design of policies and maintenance. The ideal candidate is technical and possesses experience in security, compliance, or risk management. The role oversees the business’ security requirements and obligations mandated by standards and regulations such as the Gramm-Leach-Bliley Act (GLBA), Sarbanes-Oxley Act (SOX), and Payment Card Industry Data Security Standard (PCI DSS). In tandem with security leadership, the GRC security analyst consistently assesses and validates the assurance of the security program. The GRC security analyst will help facilitate communications with internal and external auditors, and monitors progress of outstanding issues that may lead to non-compliance or security threats to the business. As a key member of the security team, the GRC security analyst must focus on strong risk management and corporate resiliency and not be driven solely by compliance.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
251-500 employees