GRC Analyst

Veritis Group Inc

Plano (TX)

On-site

USD 55,000 - 70,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A consulting firm is seeking an entry-level Technology Risk Assessor in Plano, Texas. This role focuses on identifying, assessing, and documenting technology risks across the enterprise, supporting Technology Risk and Governance functions. Candidates should have a foundational understanding of technology risk and excellent communication skills. A Bachelor’s degree in a relevant field is required. This position offers opportunities to learn and grow in the technology risk management field.

Qualifications

  • Foundational understanding of technology risk, IT controls, and governance concepts.
  • Basic knowledge of cybersecurity and technology risk management.
  • Familiarity with NIST, COBIT, and/or ISO frameworks.

Responsibilities

  • Support enterprise Technology Risk Assessments across IT and cybersecurity domains.
  • Document risk statements, control descriptions, and supporting evidence.
  • Prepare clear risk summaries for governance and management review.

Skills

Analytical skills
Organizational skills
Communication skills
Documentation skills

Education

Bachelor’s degree in Information Systems, Cybersecurity, Computer Science, Business, or related field

Job description

Overview

The Technology Risk Assessor is an entry-level role focused on identifying, assessing, and documenting technology risks across the enterprise. This role supports the Technology Risk and Governance function by evaluating technology controls against industry-standard frameworks such as NIST, COBIT, and ISO, and by working closely with Control Owners to understand control design, effectiveness, and residual risk.

Responsibilities
  • Support enterprise Technology Risk Assessments across IT, cybersecurity, and technology domains.
  • Assess technology risks using recognized frameworks including NIST, COBIT, and ISO/ISO 27001.
  • Identify, document, and evaluate inherent and residual technology risks.
  • Understand and document existing technology and security controls and how they mitigate risk.
  • Map risks to controls and align them to applicable framework requirements.
  • Engage and collaborate with Control Owners to perform control walkthroughs and risk discussions.
  • Facilitate structured conversations with stakeholders to validate control design and operating effectiveness.
  • Document risk statements, control descriptions, and supporting evidence in risk registers and governance tools.
  • Support risk remediation tracking and follow-up with Control Owners.
  • Prepare clear risk summaries and materials for risk governance and management review.
Technology Risk & Framework Focus
  • Apply NIST, COBIT, and ISO principles to assess technology risks and controls.
  • Understand how framework requirements translate into practical technology controls.
  • Assist in identifying control gaps and areas of improvement relative to framework expectations.
  • Support alignment of technology risk posture with organizational risk tolerance.
Requirements
  • Foundational understanding of technology risk, IT controls, and governance concepts.
  • Basic knowledge of cybersecurity and technology risk management.
  • Familiarity with NIST, COBIT, and/or ISO frameworks (academic or professional).
  • Strong written and verbal communication skills.
  • Ability to engage professionally with Control Owners and technical stakeholders.
  • Strong analytical, organizational, and documentation skills.
  • Ability to translate technical discussions into clear risk language.
Education and Experience
  • Entry-level role; 0–3 years of experience in technology, IT risk, cybersecurity, audit, compliance, or governance.
  • Bachelor’s degree in Information Systems, Cybersecurity, Computer Science, Business, or a related field (or equivalent experience).
Key Success Factors
  • Comfortable navigating conversations with Control Owners and stakeholders.
  • Clear and structured articulation of technology risks and controls.
  • Strong attention to detail and documentation quality.
  • Willingness to learn and grow within a Technology Risk and Governance function.
  • Collaborative mindset across technical and non-technical teams.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT GRC Lead Analyst
IT GRC Lead Analyst

Jobtailor • Westfield Center (OH)

On-site
USD 120,000 - 190,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Ohio Farmers Insurance Company • Westfield Center (OH)

Hybrid
USD 90,000 - 120,000
GRC Specialist (Governance, Risk & Compliance)
GRC Specialist (Governance, Risk & Compliance)

360CyberX • United States

On-site
USD 70,000 - 90,000
Senior Technical Risk Analyst
Senior Technical Risk Analyst

Jobtailor • Town of Florida (NY)

On-site
USD 170,000 - 210,000
CyberSecurity Specialist - GRC
CyberSecurity Specialist - GRC

TechDigital Group • Phoenix (AZ)

On-site
USD 120,000 - 150,000
IT Operational Risk Manager
IT Operational Risk Manager

Selby Jennings • Town of Florida (NY)

On-site
USD 90,000 - 140,000
Cyber GRC Specialist
Cyber GRC Specialist

Jobtailor • Washington

On-site
USD 90,000 - 130,000
Head of Technology Risk, Governance, and Controls
Head of Technology Risk, Governance, and Controls

Jobtailor • New Jersey

Hybrid
USD 190,000 - 270,000
Principal Technology Risk Analyst - Program & Regulatory Assurance
Principal Technology Risk Analyst - Program & Regulatory Assurance

Fidelity Investments • Merrimack (NH)

On-site
USD 110,000 - 170,000
IT Governance Risk & Compliance (GRC) Analyst
IT Governance Risk & Compliance (GRC) Analyst

Trustmark Bank • Ridgeland (MS)

Hybrid
USD 60,000 - 80,000