Enable job alerts via email!
Boost your interview chances
Create a job specific, tailored resume for higher success rate.
Join a forward-thinking company as a Governance Risk and Compliance Analyst, where you will play a crucial role in implementing regulatory frameworks and developing security authorization packages. This position offers the opportunity to work with a dynamic team of security analysts and engineers, leveraging innovative GRC tools to ensure compliance with federal standards. If you are passionate about cybersecurity and want to make a significant impact in a collaborative environment, this role is perfect for you. With a focus on continuous improvement and client success, you will contribute to shaping the future of IT transformation and security practices.
C2 Labs [www.c2labs.com] partners with clients on their IT transformation journey via
data-driven IT strategic planning, application rationalization and redevelopment, and innovative
research and development of new industry standards and technologies. C2 Labs provides
specialized products and services that allow our clients to innovate with speed and scale
seamlessly while maintaining a robust and effective security posture. C2 has a unique approach
to client success enablement that is empowered by ART (Application Rationalization and
Transformation) and SCIENCE (Strategic Client Interview and Engineering to assess, design,
and implement Cloud Ecosystems) to couple creative new approaches/technologies with proven
methodologies that deliver rapid results.
Must Live in the Knoxville, Tennessee metro area and Must be a US Citizen and capable
of passing a Public Trust background investigation. This is a two year contract.
Job Summary:
As a Governance Risk and Compliance (GRC) Analyst 3 at C2 Labs you will work with a
team of security analysts and engineers to implement regulatory frameworks such as the
Federal Information Security Modernization Act (FISMA), the Federal Risk Authorization
Management Program (FedRAMP) and the State Risk Authorization Management Program
(StateRAMP). You will leverage GRC tools to develop security authorization package
documentation such as the System Security Plan (SSP), Security Assessment Plan (SAP),
Security Assessment Report (SAR), and the Plan of Actions & Milestones (POA&M) in human
readable and machine-readable formats. You will draft security control implementation
statements with enough detail to facilitate the testing of the controls and will develop supporting
documentation including the Contingency Plan (CP), Incident Response Plan (IRP), and
Configuration Management Plan (CMP). As a GRC Analyst 3 your primary responsibility will be
to ensure the timely development of the security authorization package in accordance with C2
Labs quality standards.
Job Responsibilities:
Qualifications:
Working knowledge of: