GRC Specialist
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Seeking a GRC Specialist to support the Information Security team by managing security compliance, audits, risk assessments, policy governance, and regulatory requirements across enterprise technology environments. This role will help strengthen the organization’s security posture through effective governance and continuous compliance monitoring., * Support governance, risk, and compliance initiatives across the organization.
- Maintain security documentation, policies, and compliance records.
- Coordinate audit activities and compliance evidence collection.
- Track remediation efforts, audit findings, exceptions, and risk treatment plans.
- Conduct control testing, risk assessments, and vendor reviews.
- Assist with mapping controls to security and compliance frameworks.
- Maintain risk registers, control inventories, and compliance reporting.
- Partner with internal stakeholders to support security and regulatory requirements.
- Monitor compliance trends and contribute to continuous improvement of the security program.
Requirements
- 3+ years of experience in GRC, cybersecurity compliance, IT audit, information security, or related areas.
- Knowledge of frameworks including NIST, ISO 27001, SOC 2, and CIS Controls.
- Experience supporting audits, control testing, evidence collection, and remediation activities.
- Ability to develop and maintain security policies, standards, and procedures.
- Experience with risk assessments, compliance reviews, and vendor risk management.
- Strong documentation, organizational, and communication skills.
- Experience collaborating with IT, Security, Engineering, Legal, Compliance, and other business teams.
- Working knowledge of cloud security, identity and access management, vulnerability management, and incident response., * Experience in regulated or critical infrastructure industries.
- Relevant certifications such as CISA, CISM, CISSP, CRISC, Security+, or ISO 27001.
- Experience with GRC platforms including ServiceNow GRC, Archer, OneTrust, AuditBoard, LogicGate, Drata, or Vanta.
- Familiarity with privacy, data protection, and third-party risk management programs.
- Experience creating compliance reporting, risk dashboards, and executive-level presentations.
About the company
Beacon Hill Technologies, a premier National Information Technology Staffing Group, provides world class technology talent across all industries utilizing a complete suite of staffing services. Beacon Hill Technologies’ dedicated team of recruiting and staffing experts consistently delivers quality IT professionals to solve our customers’ technical and business needs.
Beacon Hill Technologies covers a broad spectrum of IT positions, including Project Management and Business Analysis, Programming/Development, Database, Infrastructure, Quality Assurance, Production/Support and ERP roles.
Learn more about Beacon Hill and our specialty divisions, Beacon Hill Associates, Beacon Hill Financial, Beacon Hill HR, Beacon Hill Legal, Beacon Hill Life Sciences and Beacon Hill Technologies by visiting .
Benefits Information:
Beacon Hill offers a robust benefit package including, but not limited to, medical, dental, vision, and federal and state leave programs as required by applicable agency regulations to those that meet eligibility. Upon successfully being hired, details will be provided related to our benefit offerings.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Best Companies to work for in London: Top 25 Companies in 2023
Fully Remote Software Engineer Jobs
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
9 Ways to Make Money Hacking