IT Risk & Compliance Analyst (Hybrid)

Intact Insurance Specialty Solutions

Canton (MA)

Hybrid

USD 75,000 - 110,000

Full time

32 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical insurance
Paid time off
401(k) plan
Mental health support

Job summary

Intact Insurance Specialty Solutions is seeking an IT Risk & Compliance Analyst to support IT risk, GRC, and audit activities in a hybrid role across multiple U.S. offices. You will collect evidence, track remediation, and report on cybersecurity metrics to leadership.

The ideal candidate is organized, analytical, and quick to learn new cybersecurity domains, collaborating across IT, security, and business teams to ensure controls meet regulatory expectations.

Qualifications

  • Three to five years of IT risk, GRC, information security, or a related function.
  • Experience in regulated industries is preferred.
  • Certifications such as Security+, CISA, CRISC, CISM, CISSP are a plus.

Responsibilities

  • Maintain organized records of IT and cybersecurity risks, controls, owners, evidence requests, action items, and remediation status.
  • Collect and validate information from control owners and technical teams for risk reviews and compliance activities.
  • Coordinate audit responses with internal and external auditors across regions and stakeholders.
  • Track audit requests, evidence, findings, remediation actions, and close gaps.
  • Develop reports and dashboards using Excel, PowerPoint, SharePoint and other tools.
  • Analyze trends, gaps, and remediation progress for leadership and risk committees.
  • Coordinate application security testing for SaaS, web, mobile, API, and cloud apps.

Skills

IT risk
GRC
Information security
IT audit
Security operations

Education

Related field experience

Tools

Excel
PowerPoint
SharePoint
Ticketing systems

Job description

Our employees are at the heart of what we do: helping people, businesses and society prosper in good times and be resilient in bad times. When you join our team, you are bringing this purpose to life alongside a passionate community.

Feel empowered to learn and grow while being valued for who you are. At Intact, we commit to supporting you in reaching your goals with tools, opportunities, and flexibility. It’s our promise to you.

Who we are

At Intact Insurance Specialty Solutions, we are experts at what we do in protecting what makes businesses unique. Our deep understanding of the specialty insurance market is the foundation for our customized solutions, backed by targeted risk control and claims services. Our employees are passionate about providing insurance coverage that’s aligned to our targeted customer groups.

Intact’s Global Specialty Lines business spans across more than 20 verticals in four distinct markets: U.S., Canada, UK and Europe. The following opportunity is for our U.S. team.

The opportunity

We currently have an opportunity for an IT Risk & Compliance Analyst to join our Corporate IT team based in our Canton, MA; Boston, MA; Farmington, CT or Raleigh, NC offices on a hybrid schedule. The IT Risk & Compliance Analyst supports the organization’s IT Risk / GRC function by collecting, organizing, analyzing, and reporting information related to cybersecurity risk, control performance, audit response, remediation tracking, and security metrics. This is a hands-on individual contributor role where one person may support multiple related activities across governance, risk, compliance, cybersecurity metrics, and audit coordination all aligned with the NIST framework.

The analyst works with and contributes to IT, cybersecurity, infrastructure, identity and access management, vulnerability management, and audit stakeholders to help organize evidence, track action items, maintain accurate status reporting, and translate technical information into clear management-ready reporting. The ideal candidate is highly organized, analytical, comfortable learning new cybersecurity domains, and able to follow up consistently across multiple teams and deadlines. Some of the IT Risk & Compliance Analyst responsibilities include but are not limited to:

  • Maintain organized records of IT and cybersecurity risks, controls, owners, evidence requests, action items, dependencies, due dates, exceptions, and remediation status.
  • Collect and validate information from control owners and technical teams to support risk reviews, control assessments, compliance activities, cybersecurity metrics, and management reporting.
  • Coordinate audit response activities across internal and external auditors in multiple geographic regions and IT, security infrastructure, compliance, and business stakeholders.
  • Track audit requests, evidence, responses, findings, remediation actions, retesting, risk acceptances, compensating controls, owners, deadlines, and closure; identify blockers and elevate overdue or unclear items as appropriate.
  • Help IT and security teams develop clear, well-supported responses to audit findings and maintain evidence in an organized, repeatable, and auditable manner.
  • Collect, organize, and analyze cybersecurity and IT risk metrics across vulnerability management, identity and access management, endpoint protection, incident response, infrastructure operations, logging, and monitoring.
  • Develop accurate reports, dashboards, and management-ready summaries using tools such as Excel, PowerPoint, SharePoint, ticketing systems, and other available reporting platforms.
  • Analyze trends, gaps, aging items, control exceptions, and remediation progress, and translate technical security information into business-relevant insights for leadership, risk committees, auditors, and non-technical audiences.
  • Define and maintain consistent metric definitions, data owners, source systems, refresh schedules, assumptions, and limitations.
  • Create and maintain trackers, checklists, evidence logs, reporting calendars, process maps, and follow-up routines that improve consistency, accuracy, timeliness, and repeatability of risk, audit, and security reporting.
  • Coordinate application security and penetration testing for internally developed, SaaS, web, mobile, API, cloud, and vendor-hosted applications, including scoping, scheduling, execution support, findings tracking, remediation validation, and retesting through closure.
  • Support application security governance by maintaining application inventories, promoting secure software development practices, preparing management reporting, and aligning testing with organizational and regulatory requirements.
  • Apply recognized cybersecurity and control frameworks, including NIST-based terminology, under leadership guidance.
  • Clarify ownership, next steps, and response dates; follow up consistently and communicate professionally with stakeholders while maintaining a collaborative, service-oriented approach.
  • Escalate material risks, delays, unresolved ownership, and data quality concerns, and promote accountability and continuous improvement across IT risk and security operations.
The expertise you bring
  • Management, Audit, Accounting, or a related field, or equivalent relevant experience.
  • Three (3) to five (5) years of experience in IT risk, GRC, information security, IT audit, technology controls, security operations, or a related function.
  • Experience in insurance, financial services, healthcare, utilities, or another regulated or compliance-intensive industry is preferred.
  • Relevant professional certifications, such as Security+, CISA, CRISC, CISM, CISSP, CGRC, or ITIL Foundation, are preferred but not required.

Our salary ranges are determined by many factors including location, role, experience and skillset of the candidate. The following ranges displayed reflect the target base salary for new hires; however, your recruiter will provide more specific compensation details during the hiring process. The typical base salary range for this position is: $75,000 - $107,000, based on the factors aforementioned. For candidates located in San Francisco, CA; Washington DC; our Massachusetts based offices and the New York City metro area, the base salary range is $95,000 - $110,000. In addition to base salary, full time Intact employees are also eligible for bonus potential and a full range of benefits to include but not limited to:

  • Comprehensive medical, dental and vision insurance with no waiting period
  • Competitive paid time off programs
  • 401(k) savings and annual contributions of up to 12% of annual salary
  • Mental health support programs, life and disability insurance, paid parental leave and a variety of additional voluntary benefits

This position will remain posted until a final candidate is selected. Once the role is filled, this job posting will be removed.

Why choose Intact
We live our Values:

We are committed to acting with the highest of ethical standards through our five core values: integrity, respect, customer driven, excellence and social responsibility.

Our commitment to Diversity:

Founded in our values, we see diversity as a strength and aspire to create an environment where everyone can be themselves, grow and succeed. Together, we will stand up for what’s right to build an inclusive society.

Manage your Time:

What you accomplish matters more than hours in the office. We are committed to creating a positive and supportive environment in which you perform your best. Our Time-Off and Flexible Work Arrangement options help foster a healthy work-life balance.

Check out our Glassdoor reviews to see why people love working for Intact!

Our promise to you

Our Values are foundational to our success at Intact. You’ll make a difference every day when you live our Values, do your best work, are open to change, and invest in yourself.

In return, we promise you support, opportunities and performance-led financial rewards in a flexible work environment where you can:

  • Shape the future: Help us lead an insurance transformation to better protect people, businesses and society.
  • Win as a team: Collaborate with inspiring people to do your best work every day and together, stand up for what is right.
  • Grow with us: Refresh and reinvent your skills, learn from our diverse teams, lift others up, and grow.
About Intact

At Intact Insurance Specialty Solutions we are experts at what we do. Our deep understanding of the specialty insurance market is the foundation for our customized solutions, backed by targeted risk control and claims services. Our employees are passionate about providing insurance coverage that’s aligned to our targeted customer groups. Today, we help protect over a dozen industries with tailored coverages and services.

#LI-DNP

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Risk & Compliance Analyst (Hybrid)
IT Risk & Compliance Analyst (Hybrid)

Intact Specialty Solutions • Canton (MA), Boston (MA), Farmington (CT)

Hybrid
USD 95,000 - 110,000
Medical, Dental, Vision insurance
Paid time off
401(k) savings plan
+4
Technical Consultant (Hybrid)
Technical Consultant (Hybrid)

Intact Insurance Group • Canton (MA), Northern (KY)

Hybrid
USD 144,000 - 169,000
Medical, dental and vision insurance
Paid time off
401(k) contributions
+4
Technical Consultant (Hybrid)
Technical Consultant (Hybrid)

Intact Insurance Specialty Solutions • Canton (MA)

Hybrid
USD 144,000 - 169,000
Medical, dental, vision
401(k) plan
Mental health support
+1
Technical Consultant (Hybrid)
Technical Consultant (Hybrid)

Intact Specialty Solutions • Canton (MA)

Hybrid
USD 124,000 - 169,000
Medical, dental and vision insurance
401(k) with contributions up to 12%
Mental health support
+2
IT Manager (Hybrid)
IT Manager (Hybrid)

Intact Insurance Group • Farmington (CT), Northern (KY)

Hybrid
USD 134,000 - 178,000
Medical, dental and vision insurance
Paid time off programs
401(k) with up to 12% annual contrib
+1
IT Manager (Hybrid)
IT Manager (Hybrid)

Intact Insurance Specialty Solutions • Farmington (CT)

Hybrid
USD 134,000 - 178,000
Health insurance
Paid time off
401(k) matching
+1
IT Help Desk Supervisor (Hybrid)
IT Help Desk Supervisor (Hybrid)

Intact Insurance Group • Canton (MA), Northern (KY)

Hybrid
USD 110,000 - 130,000
Medical, dental, and vision insurance
Paid time off
401(k) savings and contributions
+4
IT Help Desk Supervisor (Hybrid)
IT Help Desk Supervisor (Hybrid)

Intact Insurance Specialty Solutions • Canton (MA)

Hybrid
USD 110,000 - 130,000
Medical insurance
PTO
401(k)
+3
IT Help Desk Supervisor (Hybrid)
IT Help Desk Supervisor (Hybrid)

Intact Insurance U.S. • Canton (MA)

Hybrid
USD 110,000 - 130,000
Bonus potential
Comprehensive benefits
Flexible work options
Senior Privileged Access Management Specialist -IT (Hybrid)
Senior Privileged Access Management Specialist -IT (Hybrid)

Intact Specialty Solutions • Farmington (CT), Canton (MA), Boston (MA), Raleigh (NC)

On-site
USD 111,000 - 148,000
Medical, dental, vision
401(k) with match
Paid time off
+1