Governance, Risk, & Compliance (GRC) Analyst

Districttechgroup

Washington (District of Columbia)

Hybrid

USD 80,000 - 100,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Fully remote work environment
Competitive salary and performance bonuses
Health, dental, and vision insurance
Professional development and certification support
Mentorship from industry-leading security experts

Job summary

A cybersecurity compliance consulting firm is looking for a GRC Analyst to help organizations manage cybersecurity compliance and risk. This fully remote position involves conducting assessments, developing security policies, supporting compliance audits, and collaborating with clients on risk management. The ideal candidate has over 2 years of experience in information security, deep knowledge of compliance frameworks, and a bachelor's degree in a related field. Competitive salary, bonuses, and comprehensive health benefits offered.

Qualifications

  • 2+ years of experience in GRC, compliance, or information security.
  • Strong knowledge of compliance frameworks such as SOC 2, HIPAA, NIST CSF.
  • Experience conducting security assessments and audits.

Responsibilities

  • Conduct security assessments and gap analyses against compliance frameworks.
  • Develop and maintain security policies, procedures, and documentation.
  • Support clients through SOC 2, HIPAA, and other compliance audits.

Skills

GRC
Compliance frameworks
Risk management
Documentation
Technical writing
Security assessments
Communication to non-technical stakeholders

Education

Bachelor's degree in Cybersecurity, Information Systems, or related field

Tools

GRC platforms (ServiceNow, OneTrust, ControlMap)

Job description

Governance, Risk, & Compliance (GRC) Analyst

Washington, DC Remote Full-Time

About This Role

As a GRC Analyst, you will help organizations navigate the complex landscape of cybersecurity compliance and risk management. You will work directly with clients to assess their security posture, develop policies, and guide them through compliance frameworks including HIPAA, SOC 2, NIST, and more.

Responsibilities
  • • Conduct security assessments and gap analyses against compliance frameworks
  • • Develop and maintain security policies, procedures, and documentation
  • • Support clients through SOC 2, HIPAA, and other compliance audits
  • • Perform risk assessments and develop risk treatment plans
  • • Create and deliver compliance reports and executive summaries
  • • Assist with vendor security questionnaire responses
  • • Stay current on regulatory changes and industry best practices
  • • Collaborate with technical teams to implement security controls
Qualifications
  • ✓ 2+ years of experience in GRC, compliance, or information security
  • ✓ Strong knowledge of compliance frameworks (SOC 2, HIPAA, NIST CSF, ISO 27001)
  • ✓ Experience conducting security assessments and audits
  • ✓ Excellent documentation and technical writing skills
  • ✓ Strong understanding of security controls and risk management principles
  • ✓ Ability to communicate complex concepts to non-technical stakeholders
  • ✓ Detail-oriented with strong organizational skills
  • ✓ Bachelor's degree in Cybersecurity, Information Systems, or related field
Preferred Qualifications
  • + GRC certifications (CISA, CRISC, CGRC, or equivalent)
  • + Experience with GRC platforms (ServiceNow, OneTrust, ControlMap)
  • + Healthcare or financial services industry experience
  • + Knowledge of cloud compliance (FedRAMP, SOC 2 for SaaS)
  • + Experience with privacy regulations (GDPR, CCPA)
What We Offer
  • ★ Fully remote work environment
  • ★ Competitive salary and performance bonuses
  • ★ Health, dental, and vision insurance
  • ★ Professional development and certification support
  • ★ Mentorship from industry-leading security experts
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Analyst
Cyber Security Analyst

System One • United States

Remote
USD 73,000 - 98,000
IT GRC Analyst
IT GRC Analyst

Medasource • Town of Texas (WI), Northern (KY)

On-site
USD 76,000 - 110,000
Cybersecurity GRC Professional
Cybersecurity GRC Professional

duvari group • United States

On-site
USD 120,000 - 190,000
GRC (Governance, Risk, and Compliance) Consultant
GRC (Governance, Risk, and Compliance) Consultant

Zoho • United States

Remote
USD 120,000 - 180,000
Director of Governance, Risk & Compliance (Fully Remote)
Director of Governance, Risk & Compliance (Fully Remote)

Unknown • United States

Remote
USD 110,000 - 180,000
Competitive salary
401(k) match
Employer-paid health vision dental
+1
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta-Denta • St. Louis (MO)

On-site
USD 75,000 - 110,000
Entry Level GRC Analyst
Entry Level GRC Analyst

Hotman Group • United States

On-site
USD 55,000 - 75,000
GRC Analyst – SecOps
GRC Analyst – SecOps

Bright Defense, LLC. • United States

On-site
USD 70,000 - 90,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
Senior GRC Analyst
Senior GRC Analyst

Averity • New York (NY)

On-site
USD 90,000 - 140,000