GRC Analyst

Allied Benefit SystemsChicago, IL
4d$75,000 - $80,000Remote

About The Position

The Governance, Risk, and Compliance (GRC) Analyst provides support for the development, implementation, and maintenance of security controls, working cross-functionally to ensure regulatory compliance requirements are met, managing risk, and maintaining a strong security posture.

Requirements

  • B.S. or equivalent in Computer Science, Information Science & Technology, or related field or equivalent work experience required.
  • At least three years experience in Governance, Risk, and Compliance work required.
  • Experience working in a highly regulated environment
  • Experience in HIPAA, HITECH, and SOC 2 compliance environments
  • Experience working with GRC platforms, such as Drata
  • Familiarity with NIST SP 800 series, ISO/IEC 27000 series, and similar frameworks.
  • Excellent oral, written, and interpersonal skills with the ability to influence and work effectively with diverse groups of peers and business partners
  • Detail oriented with a demonstrated ability to work on multiple tasks simultaneously with strong organizational and prioritization skills
  • Job Knowledge
  • Time Management
  • Accountability
  • Communication
  • Initiative
  • Customer Focus
  • long periods of sitting and working on a computer are required.

Nice To Haves

  • Security certifications highly desired.

Responsibilities

  • Assist in the development, update, review, and maintenance of security and compliance policies, standards, guidelines, and procedures.
  • Support internal and external audits (e.g. SOC 2, HIPAA)
  • Track and maintain alignment of controls with industry frameworks (e.g. SOC 2, HIPAA, NIST CSF) using Drata
  • Optimize Drata environment, automating controls and reporting
  • Assist with regulatory reporting and compliance documentation
  • Conduct vendor risk assessments and due diligence reviews
  • Monitor third-party compliance with regulatory obligations
  • Track remediation efforts and ensure timely closure of findings
  • Conduct risk assessments and support risk mitigation planning
  • Maintain risk register and support risk tracking and reporting
  • Monitor user adherence to acceptable use, least privilege access, and data retention and security policies
  • Promote company culture of security and compliance awareness

Benefits

  • Medical, Dental, Vision, Life & Disability Insurance
  • Generous Paid Time Off
  • Tuition Reimbursement
  • EAP
  • Technology Stipend
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service