GRC Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
The GRC Analyst provides support for the development, implementation, and maintenance of security controls, working cross-functionally to ensure regulatory compliance requirements are met, managing risk, and maintaining a strong security posture., * Assist in the development, update, review, and maintenance of security and compliance policies, standards, guidelines, and procedures
- Support internal and external audits (e.g. SOC 2, HIPAA)
- Track and maintain alignment of controls with industry frameworks (e.g. SOC 2, HIPAA, NIST CSF) using Drata
- Optimize Drata environment, automating controls and reporting
- Assist with regulatory reporting and compliance documentation
- Conduct vendor risk assessments and due diligence reviews
- Monitor third-party compliance with regulatory obligations
- Track remediation efforts and ensure timely closure of findings
- Conduct risk assessments and support risk mitigation planning
- Maintain risk register and support risk tracking and reporting
- Monitor user adherence to acceptable use, least privilege access, and data retention and security policies
- Promote company culture of security and compliance awareness
- Other duties as assigned, The company has reviewed this job description to ensure that essential functions and basic duties have been included. It is not intended to be construed as an exhaustive list of all functions, responsibilities, skills and abilities. Additional functions and requirements may be assigned by supervisors as deemed appropriate., Allied reserves the right to amend, change, alter, and revise, pay ranges and benefits offerings at any time. All applicants acknowledge that by applying to the position you understand that the specific pay range is contingent upon meeting the qualification and requirements of the role, and for the successful completion of the interview selection and process. It is at the Companys discretion to determine what pay is provided to a candidate within the range associated with the role.
Requirements
- B.S. or equivalent in Computer Science, Information Science and Technology, or related field or equivalent work experience required
- Security certifications highly desired
EXPERIENCE AND SKILLS
- At least three years’ experience in Governance, Risk, and Compliance work required
- Experience working in a highly regulated environment
- Experience in HIPAA, HITECH, and SOC 2 compliance environments
- Experience working with GRC platforms, such as Drata
- Familiarity with NIST SP 800 series, ISO/IEC 27000 series, and similar frameworks
- Excellent oral, written, and interpersonal skills with the ability to influence and work effectively with diverse groups of peers and business partners
- Detail oriented with a demonstrated ability to work on multiple tasks simultaneously with strong organizational and prioritization skills
POSITION COMPETENCIES
- Accountability
- Analytical Thinking
- Collaboration
- Communication
- Customer Focus
- Functional Expertise
- Initiative
PHYSICAL DEMANDS
- This is a standard desk role requiring extended sitting and computer work, Analysis Skills, Computer Science, Cross-Functional, Customer Relations, Detail Oriented, Documentation, Due Diligence, Environmental Compliance, Establish Priorities, External Audit, HIPAA (Health Insurance Portability and Accountability Act), ISO (International Organization for Standardization), Information Science, Information Technology & Information Systems, Information/Data Security (InfoSec), Internal Audit, International Electro-Technical Commission (IEC), Interpersonal Skills, Maintain Compliance, Multitasking, Organizational Skills, Presentation/Verbal Skills, Regulatory Compliance, Regulatory Reports, Regulatory Requirements, Risk, Risk Analysis, Risk Management, Team Player, Time Management, U.S. National Institute of Standards and Technology (NIST), Writing Skills
Benefits & conditions
Compensation is not limited to base salary. Allied values our Total Rewards, and offers a competitive Benefit Package including, but not limited to, Medical, Dental, Vision, Life and Disability Insurance, Generous Paid Time Off, Tuition Reimbursement, EAP, and a Technology Stipend.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Résumé-Driven Development: How IT trends affect the job market for software developers
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Data Analyst Salary Germany
Data Engineer Salary UK