GRC Analyst: Vendor Risk & Compliance

City of Indianapolis

Indianapolis (IN)

On-site

USD 65,000 - 95,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

City of Indianapolis seeks a GRC Analyst to implement internal control reviews, test and monitor access reviews, vendor assessments, and security reviews. The role ensures alignment with regulatory requirements and internal policies, reporting to the CISO.

The candidate will work with the Information Services Agency to support risk, compliance, and data governance initiatives, using ServiceNow and Microsoft Security Suite for oversight and documentation.

Qualifications

  • Bachelor’s degree in computer science, information systems, IT, or related field or equivalent work experience.
  • 2-3 years in governance, risk and compliance roles.
  • Familiarity with risk assessment methodologies and control frameworks (COSO, COBIT, NIST).
  • Experience with CIS Benchmarks, NIST, CJIS, PCI and related standards.
  • Familiarity with Microsoft Security suite and ServiceNow.

Responsibilities

  • Ensure adherence to regulatory requirements and internal policies.
  • Monitor CIS Benchmarks, NIST, CJIS, PCI standards and policy.
  • Support vendor assessments and scalable evaluation templates.
  • Manage Third-party risk via Vendor Risk Management program.
  • Collaborate with partners to ensure compliance and data governance.
  • Assist incident documentation and root-cause analysis with Security Manager.
  • Support data governance and reporting for risk and compliance.

Education

Bachelor’s degree in computer science or related field
2-3 years governance, risk and compliance experience
Strong understanding of risk assessment methodologies
Familiarity with COSO, COBIT, NIST
Experience with CIS Benchmarks, NIST, CJIS, PCI
Microsoft Security suite, ServiceNow

Tools

ServiceNow
Microsoft Security Suite

Job description

City of Indianapolis seeks a GRC Analyst to implement internal control reviews, test and monitor access reviews, vendor assessments, and security reviews. The role ensures alignment with regulatory requirements and internal policies, reporting to the CISO.

The candidate will work with the Information Services Agency to support risk, compliance, and data governance initiatives, using ServiceNow and Microsoft Security Suite for oversight and documentation.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst: Risk & Compliance Strategist
GRC Analyst: Risk & Compliance Strategist

City of Indianapolis & Marion County • Indianapolis (IN)

On-site
USD 70,000 - 100,000
GRC Analyst
GRC Analyst

City of Indianapolis & Marion County • Indianapolis (IN)

On-site
USD 70,000 - 100,000
GRC Analyst: Cyber Risk & Vendor Compliance
GRC Analyst: Cyber Risk & Vendor Compliance

Coretelligent, LLC. • Northern (KY)

Hybrid
USD 70,000 - 88,000
Health insurance
401k
Paid parental leave
+1
GRC Analyst: Risk, Compliance & Security Awareness
GRC Analyst: Risk, Compliance & Security Awareness

Protective • United States

Remote
USD 70,000 - 77,000
Health insurance
Dental insurance
Vision insurance
+5
GRC Analyst: Risk, Compliance & Audit Lead
GRC Analyst: Risk, Compliance & Audit Lead

Access Data Consulting Corporation • Phoenix (AZ)

Hybrid
USD 80,000 - 100,000
GRC Analyst - Drive Security, Compliance & Risk Strategy
GRC Analyst - Drive Security, Compliance & Risk Strategy

Whatnot • Los Angeles (CA)

On-site
USD 120,000 - 180,000
Flexible Time off Policy
Health Insurance options
Work From Home Support
+6
GRC Analyst: InfoSec, Vendor Risk & Compliance
GRC Analyst: InfoSec, Vendor Risk & Compliance

Nelson Mullins Riley & Scarborough LLP • Charleston (SC)

On-site
USD 70,000 - 100,000
Senior GRC Analyst: Risk, Compliance & Vendor Management
Senior GRC Analyst: Risk, Compliance & Vendor Management

Selective Insurance • Millburn (NJ)

On-site
USD 116,000 - 157,000
Health care plans
Retirement plan
Employee Stock Purchase Program
+2
Cyber GRC & Risk Analyst
Cyber GRC & Risk Analyst

Protective Life • United States

On-site
USD 70,000 - 77,000
Health, dental, vision insurance
401(k) with company matching
Pension plan
+1
Remote Security GRC Analyst: Risk & Compliance Lead
Remote Security GRC Analyst: Risk & Compliance Lead

NEPSE Trading • United States

On-site
USD 70,000 - 77,000
Health insurance
401(k) plan with company match
Pension plan
+1