Governance, Risk, & Compliance (GRC) Analyst

Districttechgroup

Washington (District of Columbia)

Hybrid

USD 80,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Fully remote work environment
Competitive salary and performance bonuses
Health, dental, and vision insurance
Professional development and certification support
Mentorship from industry-leading security experts

Job summary

A cybersecurity compliance consulting firm is looking for a GRC Analyst to help organizations manage cybersecurity compliance and risk. This fully remote position involves conducting assessments, developing security policies, supporting compliance audits, and collaborating with clients on risk management. The ideal candidate has over 2 years of experience in information security, deep knowledge of compliance frameworks, and a bachelor's degree in a related field. Competitive salary, bonuses, and comprehensive health benefits offered.

Qualifications

  • 2+ years of experience in GRC, compliance, or information security.
  • Strong knowledge of compliance frameworks such as SOC 2, HIPAA, NIST CSF.
  • Experience conducting security assessments and audits.

Responsibilities

  • Conduct security assessments and gap analyses against compliance frameworks.
  • Develop and maintain security policies, procedures, and documentation.
  • Support clients through SOC 2, HIPAA, and other compliance audits.

Skills

GRC
Compliance frameworks
Risk management
Documentation
Technical writing
Security assessments
Communication to non-technical stakeholders

Education

Bachelor's degree in Cybersecurity, Information Systems, or related field

Tools

GRC platforms (ServiceNow, OneTrust, ControlMap)

Job description

Governance, Risk, & Compliance (GRC) Analyst

Washington, DC Remote Full-Time

About This Role

As a GRC Analyst, you will help organizations navigate the complex landscape of cybersecurity compliance and risk management. You will work directly with clients to assess their security posture, develop policies, and guide them through compliance frameworks including HIPAA, SOC 2, NIST, and more.

Responsibilities
  • • Conduct security assessments and gap analyses against compliance frameworks
  • • Develop and maintain security policies, procedures, and documentation
  • • Support clients through SOC 2, HIPAA, and other compliance audits
  • • Perform risk assessments and develop risk treatment plans
  • • Create and deliver compliance reports and executive summaries
  • • Assist with vendor security questionnaire responses
  • • Stay current on regulatory changes and industry best practices
  • • Collaborate with technical teams to implement security controls
Qualifications
  • ✓ 2+ years of experience in GRC, compliance, or information security
  • ✓ Strong knowledge of compliance frameworks (SOC 2, HIPAA, NIST CSF, ISO 27001)
  • ✓ Experience conducting security assessments and audits
  • ✓ Excellent documentation and technical writing skills
  • ✓ Strong understanding of security controls and risk management principles
  • ✓ Ability to communicate complex concepts to non-technical stakeholders
  • ✓ Detail-oriented with strong organizational skills
  • ✓ Bachelor's degree in Cybersecurity, Information Systems, or related field
Preferred Qualifications
  • + GRC certifications (CISA, CRISC, CGRC, or equivalent)
  • + Experience with GRC platforms (ServiceNow, OneTrust, ControlMap)
  • + Healthcare or financial services industry experience
  • + Knowledge of cloud compliance (FedRAMP, SOC 2 for SaaS)
  • + Experience with privacy regulations (GDPR, CCPA)
What We Offer
  • ★ Fully remote work environment
  • ★ Competitive salary and performance bonuses
  • ★ Health, dental, and vision insurance
  • ★ Professional development and certification support
  • ★ Mentorship from industry-leading security experts
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT GRC Analyst
IT GRC Analyst

Medasource • Town of Texas (WI), Northern (KY)

Hybrid
USD 76,000 - 110,000
GRC Analyst
GRC Analyst

Glocomms • Dallas (TX)

Hybrid
USD 90,000 - 150,000
Competitive base salary
Annual bonus
Comprehensive medical, dental, and eye
+2
Cybersecurity GRC Professional
Cybersecurity GRC Professional

duvari group • United States

On-site
USD 120,000 - 190,000
GRC Analyst - Cloud Security & Compliance
GRC Analyst - Cloud Security & Compliance

United States Digital Space LLC • United States

Remote
USD 134,000 - 202,000
Equity
Healthcare
Mentorship events
+2
IT Security GRC Analyst
IT Security GRC Analyst

The Phoenix Group • Charlotte (NC)

On-site
USD 85,000 - 120,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta-Denta • St. Louis (MO)

Hybrid
USD 75,000 - 110,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta Dental of Missouri • Missouri

Hybrid
USD 80,000 - 100,000
Senior GRC Specialist
Senior GRC Specialist

Franklin Fitch • United States

Remote
USD 100,000 - 130,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
Information Technology Security Analyst
Information Technology Security Analyst

The Phoenix Group • Charlotte (NC)

Hybrid
USD 54,000 - 90,000
Hybrid work model
Relocation assistance
Certifications support