GRC Analyst

Allied Benefit Systems, LLC
Oklahoma City, OK, United States
1 day ago
Apply on www.careerbuilder.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security Information Systems Data Retention Data Security Information Sciences Information Technology RSA Archer Platform

Job description

The GRC Analyst provides support for the development, implementation, and maintenance of security controls, working cross-functionally to ensure regulatory compliance requirements are met, managing risk, and maintaining a strong security posture., * Assist in the development, update, review, and maintenance of security and compliance policies, standards, guidelines, and procedures

  • Support internal and external audits (e.g. SOC 2, HIPAA)
  • Track and maintain alignment of controls with industry frameworks (e.g. SOC 2, HIPAA, NIST CSF) using Drata
  • Optimize Drata environment, automating controls and reporting
  • Assist with regulatory reporting and compliance documentation
  • Conduct vendor risk assessments and due diligence reviews
  • Monitor third-party compliance with regulatory obligations
  • Track remediation efforts and ensure timely closure of findings
  • Conduct risk assessments and support risk mitigation planning
  • Maintain risk register and support risk tracking and reporting
  • Monitor user adherence to acceptable use, least privilege access, and data retention and security policies
  • Promote company culture of security and compliance awareness
  • Other duties as assigned, The company has reviewed this job description to ensure that essential functions and basic duties have been included. It is not intended to be construed as an exhaustive list of all functions, responsibilities, skills and abilities. Additional functions and requirements may be assigned by supervisors as deemed appropriate., Allied reserves the right to amend, change, alter, and revise, pay ranges and benefits offerings at any time. All applicants acknowledge that by applying to the position you understand that the specific pay range is contingent upon meeting the qualification and requirements of the role, and for the successful completion of the interview selection and process. It is at the Companys discretion to determine what pay is provided to a candidate within the range associated with the role.

Requirements

  • B.S. or equivalent in Computer Science, Information Science and Technology, or related field or equivalent work experience required
  • Security certifications highly desired

EXPERIENCE AND SKILLS

  • At least three years’ experience in Governance, Risk, and Compliance work required
  • Experience working in a highly regulated environment
  • Experience in HIPAA, HITECH, and SOC 2 compliance environments
  • Experience working with GRC platforms, such as Drata
  • Familiarity with NIST SP 800 series, ISO/IEC 27000 series, and similar frameworks
  • Excellent oral, written, and interpersonal skills with the ability to influence and work effectively with diverse groups of peers and business partners
  • Detail oriented with a demonstrated ability to work on multiple tasks simultaneously with strong organizational and prioritization skills

POSITION COMPETENCIES

  • Accountability
  • Analytical Thinking
  • Collaboration
  • Communication
  • Customer Focus
  • Functional Expertise
  • Initiative

PHYSICAL DEMANDS

  • This is a standard desk role requiring extended sitting and computer work, Analysis Skills, Computer Science, Cross-Functional, Customer Relations, Detail Oriented, Documentation, Due Diligence, Environmental Compliance, Establish Priorities, External Audit, HIPAA (Health Insurance Portability and Accountability Act), ISO (International Organization for Standardization), Information Science, Information Technology & Information Systems, Information/Data Security (InfoSec), Internal Audit, International Electro-Technical Commission (IEC), Interpersonal Skills, Maintain Compliance, Multitasking, Organizational Skills, Presentation/Verbal Skills, Regulatory Compliance, Regulatory Reports, Regulatory Requirements, Risk, Risk Analysis, Risk Management, Team Player, Time Management, U.S. National Institute of Standards and Technology (NIST), Writing Skills

Benefits & conditions

Compensation is not limited to base salary. Allied values our Total Rewards, and offers a competitive Benefit Package including, but not limited to, Medical, Dental, Vision, Life and Disability Insurance, Generous Paid Time Off, Tuition Reimbursement, EAP, and a Technology Stipend.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · World Congress 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:54 min

Applying strict enterprise design principles for zero data retention

Alexander Wallner Alexander Wallner +3 · World Congress 2024

3:24 min

Evaluating remote software roles and compensation structures

Nacho Iacovino · World Congress 2021

41 sec

Massive client data loss and bio-digital storage

Chris Heilmann +1 · LIVE

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

Videos

See all

Related articles

See all