GRC Analyst

Coretelligent, LLC
United States
3 days ago
Apply on job-boards.greenhouse.io
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$70,000.0 - $88,000.0
Working hours
Regular working hours

Tech stack

CompTIA Security+ Cyber Security Phishing RSA Archer Platform

Job description

Coretelligent is seeking a diligent GRC Analyst to join our team. This role will serve as a key contributor to Coretelligent’s holistic cybersecurity solutions by managing critical security awareness programs, conducting vendor risk assessments, and maintaining controls frameworks. This position requires both technical proficiency in security platforms and the analytical skills to assess and document client security postures across multiple environments. The successful candidate will work with clients and Coretelligent staff to support governance, risk, and compliance programs and ongoing security awareness initiatives and third-party risk management activities., * Assist vCISO staff with client cybersecurity & governance program management

  • Update policies to ensure alignment with client practices
  • Conduct comprehensive vendor risk assessments and manage vendor risk monitoring programs
  • Collaborate with multiple departments to complete security and compliance due diligence questionnaires on behalf of clients, ensuring accurate and timely responses
  • Manage and administer security awareness training and phishing simulation campaigns, including content deployment, user enrollment, and progress tracking
  • Collect evidence for frameworks and regulations.
  • Manage, coordinate, and track client projects and security-related audits
  • Prepare detailed reports on security and governance activities, findings, and risk assessments, Perks: Twelve holidays, including a day off on your birthday and work anniversary, flexible vacation, monthly rewards, spot bonuses for demonstrated excellence, community and social events, learning and development, flexible working life, $100 well-being allowance, and other health & wellness perks.

Equal Opportunity and Accessibility Commitment

Coretelligent is an Equal Opportunity employer committed to diversity, equity, and inclusion. We welcome qualified applicants of all races, ethnicities, religions, ages, sexual orientations, gender identities, socioeconomic statuses, and more. Our focus is on creating an inclusive workplace where diversity is valued beyond compliance, ensuring that every team member feels respected, supported, and empowered to be their authentic selves.

In compliance with the Colorado Anti-Discrimination Act (CADA), we do not request or consider age or age-adjacent information (such as graduation dates) during the hiring process. We encourage all qualified individuals to apply, regardless of age.

We extend our dedication to accessibility and inclusivity to our remote workforce. In alignment with the Americans with Disabilities Act (ADA), we are committed to providing reasonable accommodations to enable individuals with disabilities to effectively perform their job duties in a remote setting. Applicants needing accommodations for the application or interview process are encouraged to reach out to [email protected] for necessary arrangements.

Requirements

  • Experience: 3+ years in a GRC role focused on IT or cybersecurity controls, and/or 3+ years in an IT role with cybersecurity focus.
  • Excellent analytical, organizational, and problem-solving skills
  • Past experience at a Managed Services Provider.
  • Strong written and verbal communication skills
  • Comfortable working with various technical tools to gather information on systems and settings
  • Detail-oriented with a commitment to accuracy and meeting deadlines
  • Ability to manage multiple projects simultaneously while maintaining quality standards
  • High personal and professional ethical standards

Preferred Skills:

  • Cybersecurity / Compliance certifications (CompTIA Security+, CGRC, CRISC, CISSP, CISA, etc.)
  • Hands-on experience with GRC platforms, security awareness training tools, and phishing simulation platforms.
  • Familiarity with regulations pertaining to the financial services or biotech verticals, including SEC, SOX, and HIPAA.
  • Experience with vendor management platforms and third-party risk assessment methodologies.

Benefits & conditions

Be an Early Applicant Remote Hiring Remotely in United States 70K-88K Annually Mid level Remote Hiring Remotely in United States 70K-88K Annually Mid level Supports client cybersecurity governance, risk, and compliance programs. Responsibilities include updating policies, conducting vendor risk assessments, managing third-party risk monitoring, completing compliance questionnaires, administering security awareness and phishing campaigns, collecting framework evidence, coordinating audits and security projects, and preparing risk and governance reports. The summary above was generated by AI

At Coretelligent, we take ownership of the technology our clients rely on every day.

We partner with growing, highly regulated organizations that need secure, dependable IT environments built to scale. Our role goes beyond support. We bring structure, clarity, and accountability to complex technology landscapes so leaders can move forward with confidence.

Over the past several years, Coretelligent has entered a new chapter. We have strengthened our leadership team, modernized our service delivery, and sharpened our focus on long-term client outcomes. Our work spans managed IT, cybersecurity, cloud, and strategy, delivered through a model designed for consistency, transparency, and trust.

We are building a team of professionals who care deeply about quality, ownership, and continuous improvement. If you value clear expectations, thoughtful collaboration, and work that genuinely matters to the businesses you support, you will feel at home here, @list l0:level1 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l0:level2 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l0:level3 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l0:level4 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l0:level5 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l0:level6 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l0:level7 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l0:level8 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l0:level9 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level1 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level2 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level3 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level4 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level5 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level6 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level7 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level8 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l1:level9 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level1 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level2 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level3 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level4 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level5 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level6 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level7 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level8 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:; font-family:Wingdings; } @list l2:level9 { mso-level-start-at:1; mso-level-number-format:bullet; mso-level-text:*; font-family:Wingdings; }, $70,000-$88,000

This range reflects the minimum and maximum targets for new hires across all US locations (with the exception of MA, NY, and CA). Within the range, individual pay is determined by job-related skills, experience, work location, and relevant education or training.

What you’ll love about Coretelligent:

We take Coretelligent culture very seriously! As a company, we constantly think of ways to give back to our valued employees through company engagement. We offer a competitive salary, amazing benefits, a great vacation package, a healthy work-life balance, and opportunities to grow your career from within!

Benefits: Health, Dental, & Vision, Flexible Spending Account (FSA), 401k, Health Reimbursement Account (HRA), Health Savings Account (HSA), Life Insurance, Disability Insurance, Paid Parental Leave, Holiday Pay, Flexible Vacation & Sick Days.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on job-boards.greenhouse.io
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all