(GRC) Cybersecurity Analyst ( Full-time ) Atlanta, GA - DK

Central Business Solutions, Inc

Atlanta (GA)

On-site

USD 95,000 - 110,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

ICD in Atlanta, GA seeks a GRC Cybersecurity Analyst to lead risk assessments and policy implementation for safeguarding sensitive information. The role drives regulatory compliance, security training, and collaboration across IT and governance teams.

Responsibilities include incident monitoring, audits, and reporting. Strong communication and 5+ years in governance, risk, and compliance are required, with relevant certifications preferred.

Qualifications

  • Bachelor’s degree in cybersecurity, information security, information assurance, or related field, or equivalent experience.
  • 5+ years of governance, risk, compliance, or information security experience.
  • Practical knowledge of security technologies and OS platforms (Windows, macOS, Linux).
  • Experience with vulnerability management processes and tools.
  • Understanding threats, vulnerabilities, and business risk.
  • Advanced data analysis in Excel (pivot tables, lookups, formulas).
  • Ability to communicate risk and priorities to technical and non-technical stakeholders.
  • CISSP/CISM/CISA/SecurityX or equivalent certifications.

Responsibilities

  • Monitor security incidents and vulnerabilities; respond to mitigate threats.
  • Conduct risk assessments and security audits to improve posture.
  • Develop and implement security policies, procedures, and controls.
  • Provide cybersecurity training and awareness programs.
  • Analyze incidents to determine root causes and preventive strategies.
  • Stay informed on threats and update security measures accordingly.
  • Prepare reports on cybersecurity status, incidents, and remediation progress.
  • Collaborate with external agencies and internal teams on security initiatives.
  • Deploy security technologies with IT teams (firewalls, IDS, encryption).
  • Perform other duties as assigned.

Skills

Security
Risk assessment
Policy development
Data analysis in Excel
Communication
Certifications in cybersecurity

Education

Bachelor’s degree in cybersecurity or related field

Tools

Windows
macOS
Linux
Vulnerability scanners
DFARS/NIST frameworks

Job description

(GRC) Cybersecurity Analyst ( Full-time ) Atlanta, GA - DK
  • Atlanta, GA
Job Purpose

The Governance, Risk, and Compliance (GRC) Cybersecurity Analyst is responsible for leading the assessment and oversight of business policies, procedures, and operations to ensure the organization meets internal requirements and government regulations for the protection of sensitive and critical information. GRC Analysts own complex legal, regulatory, and operational risk areas related to information assets, drive continuous risk assessment across business units, and design and implement policies, procedures, and training needed to meet or exceed internal and external requirements.

Cybersecurity Analysts are responsible for protecting the institution's information systems and data from cyber threats and vulnerabilities. This role involves monitoring security incidents, conducting risk assessments, and implementing security measures to ensure compliance with regulatory requirements and best practices in cybersecurity.

Key Responsibilities
  • Monitor the institution's information systems for security incidents and vulnerabilities, responding promptly to mitigate potential threats.
  • Conduct regular risk assessments and security audits to identify weaknesses in the institution's cybersecurity posture and recommend remediation measures.
  • Develop and implement security policies, procedures, and protocols to protect sensitive data and ensure compliance with regulatory requirements.
  • Provide cybersecurity training and awareness programs for faculty, staff, and students to promote a culture of security within the institution.
  • Analyze security incidents and breaches to determine their root causes and develop strategies to prevent future occurrences.
  • Stay informed about emerging cybersecurity threats and trends, continuously updating security measures to address new challenges.
  • Prepare and present reports on the status of cybersecurity efforts, highlighting incidents, vulnerabilities, and progress on remediation activities.
  • Serve as a liaison with external agencies and partners on cybersecurity initiatives, collaborating on strategies to enhance the institution's security capabilities.
  • Collaborate with IT teams to deploy security technologies, such as firewalls, intrusion detection systems, and encryption tools, to safeguard institutional data.
  • Perform other duties as assigned.
Additional Responsibilities
  • Serve as a primary point of contact for complex or sensitive cybersecurity and compliance inquiries from GTRI customers and leadership.
  • Lead the development, review, and maintenance of:
    • Enterprise-wide security policies, standards, practices, plans, and procedures, ensuring alignment with GTRI baseline cybersecurity requirements and University System of Georgia (USG) guidelines.
    • Information technology risk assessments for systems, software, architectures, and configurations (compute, hardware/virtual, OS, storage, networking, security).
    • Requests for changes to critical information systems and guide implementation of approved configuration changes.
    • Cybersecurity documentation, including system security plans, and disaster recovery plans, and impact analyses (privacy, business, and security), ensuring completeness, accuracy, and currency.
  • Validate security control implementation and configuration on systems to ensure compliance with requirements such as NIST, DFARS, CMMC, and related frameworks.
  • Direct the creation and refinement of cybersecurity training content for GTRI personnel (e.g., security awareness, CUI training), ensuring alignment with current threats and regulatory expectations.
  • Lead the development and ongoing improvement of departmental website content (articles, processes, procedures, FAQs, contacts, organizational charts, and team member information).
  • Provide advanced support to the GRC Team service desk by resolving complex tickets and establishing standards and workflows for ticket triage and resolution.
  • Lead or coordinate activities related to audits, assessments, and regulatory reviews, including evidence collection, policy review, and compliance analysis.
  • Own or significantly contribute to the preparation and presentation of regulatory and compliance reports and dashboards, working with other units to ensure data completeness and accuracy.
  • Mentor junior and mid-level GRC analysts, providing guidance on best practices, work products, and professional development.
  • Actively collaborate with customers and cross-functional teams; derive and refine requirements; and facilitate forums that capture the voice of the customer to improve ICD’s people, processes, and services.
  • Serve as a subject-matter expert in governance, risk, and compliance within ICD.
  • Interpret and apply laws, regulations, standards, policies, and industry best practices to complex secure infrastructures and research environments.
  • Lead or co-lead GRC-related projects and initiatives, managing scope, timelines, and deliverables for a range of complex compliance and risk problems.
  • Recommend and drive process improvements to enhance the effectiveness and efficiency of the enterprise cybersecurity and compliance program.
Required Minimum Qualifications
  • Bachelor’s degree in cybersecurity, information security, information assurance, or a related field, or an equivalent combination of education and experience.
  • 5+ years of progressively responsible experience in governance, risk, compliance, or information security in a complex environment.
  • Strong practical knowledge of security technologies and controls, as well as operating system platforms including Windows, macOS, Linux, and core networking technologies.
  • Demonstrated experience with vulnerability management processes and tools, including scanning, reporting, prioritization, and remediation tracking.
  • Solid understanding of threats, vulnerabilities, exploitation techniques, and how they map to business risk.
  • Advanced experience with data analysis and reporting in Excel (pivot tables, lookups, intermediate/advanced formulas; scripting or macros a plus).
  • Proven ability to assess and communicate the priority and business impact of vulnerabilities and risks to both technical and non-technical stakeholders.
  • Excellent written and verbal communication skills, including experience drafting policies, standards, and executive-level summaries.
  • One or more intermediate or advanced cybersecurity/GRC certifications such as CISSP, CISM, CISA, SecurityX, CCNP-Security, or equivalent.
Preferred Qualifications
  • Active Secret clearance.
  • Master’s degree in cybersecurity, information security, information assurance, business, or a related field.
  • Deep understanding of cybersecurity frameworks and best practices such as NIST 800-53/171, CMMC, RMF, MITRE ATT&CK, and OWASP Top 10.
  • Demonstrated experience leading audit, assessment, or certification efforts (e.g., NIST, CMMC, DFARS, FedRAMP, or similar).
  • Experience developing and tracking security and compliance metrics for remediation stakeholders and leadership.
  • Strong knowledge of common vulnerability categorizations and scoring systems such as CVE, CVSS, and CWE.
  • Proficiency with Atlassian Confluence for documentation and knowledge management.
  • Proficiency with Atlassian Jira for workflow, issue tracking, and project management.
Skills and Certifications
Governance Risk Compliance (GRC)
Cybersecurity

Security Clearance Required:No

Visa Candidate Considered:No

Compensation

Base Salary -USD $95,000 to $110,000

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
GRC Cybersecurity Analyst — Policy, Risk & Compliance
GRC Cybersecurity Analyst — Policy, Risk & Compliance

Central Business Solutions, Inc • Atlanta (GA)

On-site
USD 95,000 - 110,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Westfield Insurance • Westfield Center (OH)

Hybrid
USD 90,000 - 120,000
Senior Analyst, Cyber Governance, Risk and Compliance (GRC)
Senior Analyst, Cyber Governance, Risk and Compliance (GRC)

H.I.G. Capital • Coral Gables (FL)

On-site
USD 120,000 - 170,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta-Denta • St. Louis (MO)

Hybrid
USD 75,000 - 110,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta Dental of Missouri • Missouri

Hybrid
USD 80,000 - 100,000
GRC Analyst
GRC Analyst

NMC2 • Dallas (TX), Northern (KY)

Hybrid
USD 81,000 - 99,000
Governance Risk & Compliance Manager
Governance Risk & Compliance Manager

Inside Higher Ed • Atlanta (GA)

On-site
USD 117,000 - 143,000
GRC Analyst
GRC Analyst

Golden Technology • North Carolina

Hybrid
USD 120,000 - 160,000
Secure Computing Engineer (Level 3, 4) - HAC - Colorado Springs, CO - Open Rank
Secure Computing Engineer (Level 3, 4) - HAC - Colorado Springs, CO - Open Rank

Georgia Tech Research Institute (GTRI) • Colorado Springs (CO)

On-site
USD 120,000 - 166,000