> Markdown version of [/jobs/ext/1254631-cyber-grc-analyst](https://www.wearedevelopers.com/jobs/ext/1254631-cyber-grc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber GRC Analyst - **Company:** News Corporation - **Location:** Austin, TX, United States - **Experience:** Experienced - **Salary:** $80,000.0 - $110,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Cloud Computing, Control Objectives for Information and Related Technology (COBIT), Cyber Security, Information Systems, PCI Data Security Standards, Information Technology - **Published:** July 13, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=443e04280e645be6 ## About the Role The Governance, Risk and Compliance (GRC) Analyst will have a good understanding of security and privacy principles as well as a sound understanding of regulatory and compliance requirements affecting a US business., * 3+ years' experience within Cyber Security or related fields * Demonstrated experience in governance, risk and compliance in dynamic and complex cyber security, technology and business environment * Strong knowledge and experience with Industry Frameworks and Standards such as NIST CSF, PCI DSS and ISO 27001 * Good working knowledge of Cloud infrastructure, especially AWS * Previous experience working in a SOX compliance environment is desirable * Strong oral and written communication skills * Qualification in Information Security, Computer Science, Engineering or similar * Professional security certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or similar preferred ## Description As a GRC analyst your roles will support and maintain the Realtor.com Cyber GRC Program along with the BISO and central GRC function, including the development, implementation and maintenance of cyber security policies, standards, guidelines and processes to ensure compliance is maintained and risk is managed. What's the role? * Work with key internal and external stakeholders to ensure compliance with PCI DSS, Privacy and GDPR compliance requirements, audits and assessments. * Assist in the risk assessment process and report on enterprise-wide and third-party security controls * Support in the implementation of key security initiatives across the organisation * Support management of audits, external assessments and assurance processes including, but not limited to PCI DSS and NIST CSF * Develop and manage meaningful metrics to measure and track cyber risks and the effectiveness of the governance, risk and compliance function * Conduct compliance readiness assessments and assurance activities against policies, standards requirements * Track technology and cyber related audit findings and actions * Assist with the development of measurable cyber security standards that align with policy control objectives * Support user and specialist user education and awareness exercises for employees * Assist in the development of effective measurement and simplified reporting of cyber security risks within the business * Assist with third party security assessments against industry standards as well as News UK control standards * Assist in maintaining the cyber security risk register ## Related Videos - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Containers in the cloud - State of the Art in 2022](https://www.wearedevelopers.com/videos/410-containers-in-the-cloud-state-of-the-art-in-2022) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)