Cybersecurity Audit Analyst

Applied Aerospace

Huntsville (AL)

On-site

USD 70,000 - 100,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Applied Aerospace in Huntsville, AL, is seeking a Cybersecurity Analyst specializing in GRC to support governance, risk, and compliance initiatives. You will maintain documentation, assist with audits, and help implement security controls across enterprise software and systems.

The role emphasizes collaboration with engineering, quality, and operations, ensuring regulatory adherence and robust risk mitigation within a manufacturing environment.

Qualifications

  • Bachelor’s degree or equivalent experience in cybersecurity, information systems, or related field.
  • 2–5 years of cybersecurity, compliance, or GRC experience.
  • Experience supporting audits and compliance programs.
  • Working knowledge of cybersecurity frameworks (e.g., NIST, DoD/CMMC).
  • Experience with GRC or compliance management tools.

Responsibilities

  • Maintain cybersecurity policies, procedures, and standards aligned with applicable frameworks.
  • Track compliance requirements and ensure documentation is current and complete.
  • Assist in implementation and monitoring of security protocols.
  • Support ongoing compliance initiatives and reporting requirements.
  • Prepare for and support internal and external audits.
  • Coordinate audit requests and organize required documentation.
  • Maintain audit artifacts and support remediation efforts.
  • Assist in risk assessments and maintain risk registers.
  • Support third-party and vendor risk management processes.
  • Coordinate invoices, approvals, and cost tracking for cybersecurity expenditures.

Skills

GRC knowledge
Audits
Documentation
Risk assessment
Regulatory compliance
CMMC/DoD compliance
Manufacturing/regulatory context

Education

Bachelor’s degree in Cybersecurity, Information Systems, or related field

Tools

GRC software

Job description

OVERVIEW OF POSITION

The Cybersecurity Analyst (GRC) is responsible for supporting the organization’s Governance, Risk, and Compliance (GRC) program. This role focuses on maintaining cybersecurity documentation, coordinating audit activities, supporting regulatory compliance efforts, and managing administrative functions of the cybersecurity program. This is an individual contributor role with no direct supervisory responsibilities.

Essential Job Functions
  • Perform Application Portfolio maintenance including various attributes related to enterprise software lifecycle management and cybersecurity lifecycle attributes.
  • Assist with control mapping and data maintenance related to enterprise applications, software, and systems.
  • Coordinate project related activities, to include technology and compliance projects.
  • Coordination of enterprise technology and cybersecurity invoices, approvals, and oversight including financial coding and cost tracking for expenditures.
Governance and Compliance
  • Maintain cybersecurity policies, procedures, and standards in alignment with applicable frameworks.
  • Track compliance requirements and ensure documentation is current and complete.
  • Assist in implementation and monitoring of security protocols.
  • Support ongoing compliance initiatives and reporting requirements.
Audit Coordination and Support
  • Prepare for and support internal and external audits.
  • Coordinate audit requests, including collection and organization of required documentation.
  • Maintain audit artifacts and ensure readiness for review.
  • Track audit findings and support remediation efforts through closure.
Risk Management
  • Assist in conducting risk assessments and documenting results.
  • Maintain and update risk registers.
  • Track mitigation plans and follow up on remediation activities.
  • Support third-party and vendor risk management processes.
Cybersecurity Program Administration
  • Maintain records related to access reviews, training compliance, and security activities.
  • Coordination of enterprise technology and cybersecurity invoices, approvals, and oversight including financial coding and cost tracking for expenditures.
  • Support documentation and tracking security incidents.
  • Manage administrative workflows related to the cybersecurity program.
  • Ensure proper retention and organization of compliance documentation.
Cross-Functional Support
  • Collaborate with BTS, Engineering, Quality, and Operational teams to support compliance and security initiatives.
  • Provide guidance on cybersecurity policies and procedures as needed.
  • Support continuous improvement of cybersecurity and compliance processes.
SKILLS
  • EXPERIENCE
  • EDUCATION
  • Bachelor’s degree in Cybersecurity, Information Systems, or related field, or equivalent experience.
  • 2-5 years of experience in cybersecurity, compliance, or GRC related functions.
  • Experience supporting audits and compliance programs.
  • Working knowledge of cybersecurity frameworks.
  • Strong organizational skills and attention to detail.
  • Strong documentation and recordkeeping skills.
  • Ability to manage multiple tasks and meet deadlines.
  • Experience with CMMC or Department of Defense (DoD) compliance requirements.
  • Experience in manufacturing or regulatory industry environment.
  • Relevant certifications (E.G. Security+. CISA, CISM, or similar).
  • Experience with GRC or compliance management tools.
  • Experience or strong familiarity with CMMC, NIST 800-171, SOX 404, and/or related cybersecurity compliance requirements.
  • SOX (Sarbanes-Oxley Act) compliance (Section 404, ICFR, etc) experience and/or related compliance control mapping experience in a regulated environment preferred.
  • Experience with Risk Management Frameworks and Risk Assessments preferred.
Additional Information

This job description is intended to describe the general nature and level of work being performed. It is not an exhaustive list of all responsibilities, duties, or skills required. Employees may be required to perform other job-related duties as assigned, consistent with business needs and applicable law. Due to the nature of our work and applicable U.S. export control laws, this position requires International Traffic in Arms Regulations (ITAR) eligibility. Only individuals who qualify as a “U.S. person” as defined by ITAR (U.S. citizens, U.S. permanent residents, refugees, or asylees), unless specified otherwise within job description, are eligible for employment. Applied Aerospace & Defense (“AA&D”) is committed to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability, veteran or military status, or any other characteristic protected by applicable federal, state, or local law. Applicants who require reasonable accommodation for any part of the application or hiring process due to disability, medical condition, or other protected reason may contact the Human Resources Department. Requests will be reviewed in accordance with applicable law. Where required by law, the applicable pay range and a summary of benefits and other compensation for this position will be provided.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Audit Analyst
Cybersecurity Audit Analyst

Elevate Ventures, Inc. • Huntsville (AL)

On-site
USD 75,000 - 110,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
Manager, IT Risk & Compliance 2
Manager, IT Risk & Compliance 2

Celestica • United States

On-site
USD 107,000 - 147,000
Global Security Governance, Risk & Compliance Manager (Remote)
Global Security Governance, Risk & Compliance Manager (Remote)

Barnes Aerospace • United States

Remote
USD 140,000 - 190,000
Global Security Governance, Risk & Compliance Manager (Remote)
Global Security Governance, Risk & Compliance Manager (Remote)

Barnes Group • United States

Remote
USD 140,000 - 190,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta Dental of Missouri • Missouri

On-site
USD 80,000 - 100,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta-Denta • St. Louis (MO)

On-site
USD 75,000 - 110,000
Staff Security Analyst - GRC
Staff Security Analyst - GRC

Jobgether • United States

Hybrid
USD 150,000 - 164,000
Remote work within the United States
Hybrid option with designated offices
Cybersecurity GRC Analyst: Audit & Compliance Specialist
Cybersecurity GRC Analyst: Audit & Compliance Specialist

Applied Aerospace • Huntsville (AL)

On-site
USD 70,000 - 100,000
Senior Governance, Risk & Compliance (GRC) Analyst
Senior Governance, Risk & Compliance (GRC) Analyst

Cianbro • North Stonington (CT)

On-site
USD 90,000 - 110,000
Employee-owned company