Information Security Sr Anlyst

TALENT Software Services

Cary (NC)

On-site

USD 100,000 - 130,000

Full time

4 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

TALENT Software Services is seeking a Sr. Analyst, GRC to help manage governance, risk, and compliance programs onsite at multiple U.S. locations, including Cary, NC.

The role emphasizes contract, regulatory, and cyber risk management with collaboration across IT and business teams. The candidate will review contract clauses, support audits, monitor regulatory developments, and help enforce governance standards.

Qualifications

  • Bachelor’s degree in information systems, Information Security, or a related field.
  • 7–10 years of experience in GRC executing or auditing against standards, frameworks, and industry regulations.
  • Demonstrated experience supporting GRC functions for global companies.
  • Solid proficiency in risk assessment methodologies and frameworks.

Responsibilities

  • Contract Risk Management: review client contract provisions related to data security and compliance.
  • Regulatory Compliance Risk Management: support audits, collect documentation, and monitor regulatory landscape.
  • IT Governance: align with regulatory requirements and develop standards documentation.
  • Cyber Risk Management: develop metrics to measure cyber risk management effectiveness and drive data-driven insights.
  • Supplier/Third Party Risk Management: assess vendor risk and communicate mitigations to stakeholders.

Skills

GRC experience
Risk assessment methodologies
Regulatory frameworks
Global experience

Education

Bachelor’s degree in information systems or related field

Job description

Sr. Analyst, GRC

Onsite 5 days/week - manager is open to Cary, NC / Houston, TX / Overland Park, KS

Temp to perm

Overview

The Sr. Analyst, Governance, Risk, and Compliance (GRC) plays an important role in the GRC delivery framework, ensuring compliance with contractual and regulatory requirements, assessing control design and operation against common standards and frameworks, and assisting with third-party/supply chain risk management. The candidate will also promote a culture of risk awareness across the enterprise among other responsibilities. With an emphasis on cyber, contract and regulatory compliance risk management, the ideal candidate should be able to contribute to measuring success and identifying improvement opportunities and capabilities development in these areas.

Key Responsibilities
  • Contract Risk Management
    • Proven experience reviewing client contract provisions related to data security, breach reporting, cyber resilience, and compliance certifications and measuring compliance in IT and security architecture and operations.
  • Regulatory Compliance Risk Management
    • Support independent certification and audit by working with D&IT peer groups and lines of business to collect documentation and evidence of security policies and operations.
    • Request and review documentation and evidence from control owners to certify and validate compliance to standards and industry-accepted best practice.
    • Monitor regulatory and legal landscape at a global scale and across market sectors and maintain awareness of compliance requirements.
  • IT Governance
    • Act as an informed voice in development of policy and ensure alignment with regulatory, legal, and contractual requirements.
    • Assist establishment and enforcement of standards of practice documentation to be referenced by architecture and operations teams.
    • Contribute process and subject matter expertise in governance forums and cross-functional committees.
  • Cyber Risk Management
    • Support establishment, collection, and ongoing improvement of metrics to measure effectiveness of cyber risk management and provide data-driven insight to decision makers and control owners.
    • Collaborate with peer D&IT groups to collect KPI’s, KRI’s and drive efficiency through automation and other means.
  • Supplier/Third Party Risk Management
    • Contribute subject matter expertise through third party risk assessment process.
    • Identify and communicate risk of vendor engagements and mitigation actions to business owners and D&IT stakeholders.
    • Assist review of client security requirements in contracts and aggregate relevant clauses to inform contractual risk.
Qualifications
  • Minimum Requirements
    • Bachelor’s degree in information systems, Information Security, or a related field.
    • 7-10 years of experience in GRC executing or auditing against standards, frameworks, and industry regulations.
    • Demonstrated experience supporting GRC functions for global companies.
    • Solid proficiency in risk assessment methodologies and frameworks.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
Sr. IT Security Analyst
Sr. IT Security Analyst

The Marzetti Company • Columbus (OH)

On-site
USD 90,000 - 120,000
Information Security Sr Anlyst
Information Security Sr Anlyst

ARTSMARTUK LTD. • Cary (NC)

On-site
USD 120,000 - 180,000
GRC Analyst
GRC Analyst

Golden Technology • North Carolina

Hybrid
USD 120,000 - 160,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Westfield Insurance • Westfield Center (OH)

Hybrid
USD 90,000 - 120,000
Governance, Risk and Compliance Analyst Senior
Governance, Risk and Compliance Analyst Senior

Cone Health • Greensboro (NC)

On-site
USD 90,000 - 130,000
Risk Management Specialist
Risk Management Specialist

Patel Consultants Corporation • New Jersey

On-site
USD 83,000 - 152,000
Sr. Security Engineer/Analyst (GRC)
Sr. Security Engineer/Analyst (GRC)

Insight Global • Vancouver (WA)

Hybrid
USD 120,000 - 180,000
Bonus
Information Security Governance Specialist
Information Security Governance Specialist

SRM Digital • Roanoke (TX)

On-site
USD 120,000 - 160,000
Governance Risk and Compliance Analyst Intermediate
Governance Risk and Compliance Analyst Intermediate

Cone Health • Greensboro (NC)

On-site
USD 110,000 - 140,000