> Markdown version of [/jobs/ext/637757-senior-information-security-grc-analyst-security-architect-consultant](https://www.wearedevelopers.com/jobs/ext/637757-senior-information-security-grc-analyst-security-architect-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Security GRC Analyst (Security Architect - Consultant) - **Company:** Intersources Inc. - **Location:** Columbia, SC, United States (Remote available) - **Experience:** Expert - **Salary:** $26,000.0 - **Contract:** Temporary contract - **Skills:** Cyber Security, Information Security Management, PCI Data Security Standards, Smartsuite - **Published:** June 25, 2026 - **Apply:** https://www2.jobdiva.com/portal/?a=62jdnw10t7d77ytz0lbaey9qxonk3b05a9tqw96rb7z6hlfo7xj79l9g6mp6aj2o&compid=0/jobs/32498382#/jobs/32498382 ## About the Role * 10+ years of Information Security and Compliance experience. * 2+ years of experience performing security audits using a standard control framework as an Auditor or Information System Security Officer (ISSO). * Strong working knowledge of NIST SP 800-53 (2+ years). * Experience with POA&M (Plan of Action & Milestones) or Corrective Action Plans (CAP). * 3+ years of experience using Archer or similar GRC tools. * Strong written and verbal communication skills. * Bachelor's Degree (completed and verifiable). Preferred Skills: * Experience developing Information Security Plans (ISP) or System Security Plans (SSP). * Experience managing multiple information security work efforts simultaneously. * Knowledge of IRS 1075, HIPAA, CJIS, MARS-E, and/or PCI-DSS. * Government/Public Sector experience. * Strong business process analysis and documentation skills. Required Education: * Bachelor's Degree (Required) Preferred Certifications: * CISA * GSLC * Equivalent Information Security Certification ## Description Candidate Location: No South Carolina residency required. Open to nationwide candidates. Preference will be given to local candidates who can attend client meetings, trainings, and other onsite activities as needed. Travel expenses for onsite work are the responsibility of the consultant. Daily Duties / Responsibilities: * Support DIS in executing the statewide Information Security Program. * Conduct interviews with business owners, technical teams, administrators, and third parties to understand agency security processes. * Develop and track agency Information Security implementation plans. * Review security documentation to ensure compliance with established security controls. * Document policies, procedures, and security processes. * Perform security compliance assessments using standard control frameworks. * Assess agency compliance with NIST 800-53 security controls. * Track POA&M and Corrective Action Plan (CAP) activities. * Utilize Archer or similar GRC tools to manage compliance activities. * Identify process improvements and assist agencies with security implementation. * Manage multiple information security initiatives while meeting project deadlines. * Collaborate with agency stakeholders to improve overall security compliance. ## Related Videos - [GitOps keeps focus on apps, not on infrastructure](https://www.wearedevelopers.com/videos/182-gitops-keeps-focus-on-apps-not-on-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland)