> Markdown version of [/jobs/ext/2525536-grc-analyst](https://www.wearedevelopers.com/jobs/ext/2525536-grc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # GRC Analyst - **Company:** American Tower - **Location:** Boston, MA, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Microsoft Access, Data Analysis, Cyber Security, Identity and Access Management, Microsoft Office, Oracle (Applications) - **Published:** August 10, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/grc-analyst-boston-ma-usa-58914409 ## About the Role and updated on latest access security issues Tasks * Bachelor in Information Security, Cybersecurity, Risk Management, or equivalent experience * Minimum 2 years in GRC or Information Security * Experience conducting requirements gathering and data analysis * Experience documenting and maintaining access and security policies and standards * Strong organization, planning, and project management skills * Excellent written and verbal communication * Ability to work across cross-functional teams * Strong computer skills including Microsoft Office and Oracle * Knowledge of access, security, and risk assessment methods * Knowledge of Information Security Standards (ISO 27001/27002, ITIL) * Knowledge of Data Privacy and Compliance Regulations (MA CMR 201, HIPPA, Red Flag) Key requirements * Healthcare coverage * 401(k) savings plan * Paid time off * Company holidays * Sick leave * Parental leave ## Description Experteer Overview In this role you will support IT and business units in implementing governance, risk, and compliance frameworks. You will gather and document requirements for IAM and assist in maintaining policies and standards. You will collaborate with cross-functional teams to manage risk remediation and ensure regulatory adherence. This position offers the opportunity to influence security governance practices and contribute to a proactive risk management culture. Compensation / Benefits * Support requirements gathering and documentation for InfoSec projects and programs * Manage GRC ticket maintenance and advise stakeholders on GRC topics * Monitor risk remediation activities and track exceptions within established frameworks * Provide governance, risk, and compliance guidance and training to stakeholders * Engage with business partners to address information security governance concerns * Assist in development of security architecture, policies, principles and standards * Stay updated on latest access security issues Tasks * Bachelor in Information Security, Cybersecurity, Risk Management, or equivalent experience * Minimum 2 years in GRC or Information Security * Experience conducting requirements gathering and data analysis * Experience documenting and maintaining access and security policies and standards * Strong organization, planning, and project management skills * Excellent written and verbal communication * Ability to work across cross-functional teams * Strong computer skills including Microsoft Office and Oracle * Knowledge of access, security, and risk assessment methods * Knowledge of Information Security Standards (ISO 27001/27002, ITIL) * Knowledge of Data Privacy and Compliance Regulations (MA CMR 201, HIPPA, Red Flag) Key requirements * Healthcare coverage * 401(k) savings plan * Paid time off * Company holidays * Sick leave * Parental leave ## Related Videos - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Blazing Accessibility Basics](https://www.wearedevelopers.com/videos/568-blazing-accessibility-basics) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Top HR Tech Conferences in 2024](https://www.wearedevelopers.com/magazine/303-top-hr-tech-conferences-in-2024) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [Why Attend a Developer Event in 2026?](https://www.wearedevelopers.com/magazine/688-why-attend-a-developer-event-in-2026)