Remote GRC Analyst - Risk, Compliance & Audits

Ardent

Tallahassee (FL)

On-site

USD 110,000 - 160,000

Full time

40 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Ardent is seeking a Governance, Risk, and Compliance (GRC) Analyst to join our team in a remote capacity with travel to Tallahassee, FL. The role integrates governance, risk, compliance, and internal-audit support requirements across a multi-agency environment.

You will lead testing design, map procedures to NIST CSF and applicable rules, review evidence for accuracy, and guide OCIG and OIG staff through knowledge transfer and QA reviews.

Qualifications

  • Bachelor’s degree in cybersecurity, information assurance, audit, information systems, or related discipline.
  • Proof of relevant professional certifications such as CISSP, CISA, PMP, CEH, or other relevant certifications.
  • 10 years of progressive cybersecurity experience, including security operations, incident response, vulnerability management, intrusion analysis, adversary simulation, technical assessment, or audit support.
  • 5 years supporting or conducting audits, compliance reviews, independent assessments, or assurance work in government or similarly regulated environments.
  • Demonstrated ability to design defensible test procedures, evaluate control performance, distinguish fact from opinion, and communicate technical results to senior stakeholders.
  • Working knowledge of professional auditing or assurance standards and evidence requirements.

Responsibilities

  • Lead ingestion and analysis of agency documentation including risk assessments, remediation plans, and prior findings.
  • Direct development of the Agency Risk Understanding Memorandum, including environmental summaries, agency-specific risks, assumptions, documentation gaps, and impacts on testing priorities.
  • Design the Ground-Truth and Ad Hoc Testing Strategies and approve detailed procedures defining objectives, systems, controls, access points, tools, sampling, scripts, evidence, thresholds, stop conditions, and escalation paths.
  • Map procedures and results to NIST CSF DE.AE, DE.DP, PR.AC; Rule 60GG-2, F.A.C.; and the applicable approved criteria.
  • Ensure testing remains within written OCIG authorization, avoids duplication of operational testing, and complies with agency-specific Rules of Engagement.
  • Review evidence for relevance, reliability, sufficiency, attribution, timestamps, chain of custody, and reproducibility.
  • Validate that reports accurately state procedures performed and factual results without an audit opinion; ensure advisory recommendations are distinctly labeled.
  • Conduct independent QA reviews of technical deliverables not authored solely by the reviewer and document sign-off.
  • Lead technical briefings, workshops, job aids, and knowledge transfer so OCIG and OIG staff can understand and reuse procedures.
  • Support urgent analysis of logs, timelines, after-action reports, remediation evidence, and incident-specific control issues when directed.

Skills

Cybersecurity experience
Auditing
Risk assessment
Regulatory compliance
Stakeholder communication

Education

Bachelor's degree in cybersecurity / information assurance / audit / information systems

Tools

MITRE ATT&CK
Threat-informed kill chains
Active Directory
Cloud platforms
APIs
SIEM/EDR
Vulnerability scanners
Evidence repositories

Job description

Ardent is seeking a Governance, Risk, and Compliance (GRC) Analyst to join our team in a remote capacity with travel to Tallahassee, FL. The role integrates governance, risk, compliance, and internal-audit support requirements across a multi-agency environment.

You will lead testing design, map procedures to NIST CSF and applicable rules, review evidence for accuracy, and guide OCIG and OIG staff through knowledge transfer and QA reviews.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Hybrid GRC Analyst I: Risk, Audit & Compliance
Hybrid GRC Analyst I: Risk, Audit & Compliance

Geographic Solutions, Inc. • Palm Harbor (FL)

Hybrid
USD 65,000 - 85,000
Remote Cyber Lead Auditor & Test Lead
Remote Cyber Lead Auditor & Test Lead

Ardent • Tallahassee (FL)

Remote
USD 120,000 - 180,000
Cyber Lead Auditor / Test Lead
Cyber Lead Auditor / Test Lead

ardentmc • United States

Remote
USD 140,000 - 190,000
Cyber Lead Auditor / Test Lead
Cyber Lead Auditor / Test Lead

ArdentMC • Atlanta (GA), Tallahassee (FL)

Hybrid
USD 140,000 - 200,000
Governance, Risk, and Compliance (GRC) / Compliance Analyst
Governance, Risk, and Compliance (GRC) / Compliance Analyst

Ardent • Tallahassee (FL)

Remote
USD 110,000 - 160,000
Cyber Lead Auditor / Test Lead
Cyber Lead Auditor / Test Lead

Ardent • Tallahassee (FL)

Remote
USD 120,000 - 180,000
Remote GRC Analyst: Security Controls & Risk Champion
Remote GRC Analyst: Security Controls & Risk Champion

Yipitdatajobs • United States

Remote
USD 92,000 - 113,000
Flexible work hours
Flexible vacation
401K match
+4
Remote Security GRC Analyst: Risk & Compliance Lead
Remote Security GRC Analyst: Risk & Compliance Lead

NEPSE Trading • United States

On-site
USD 70,000 - 77,000
Health insurance
401(k) plan with company match
Pension plan
+1
Senior Security & GRC Analyst - Policy, Risk & Audit
Senior Security & GRC Analyst - Policy, Risk & Audit

TechArmy • Tallahassee (FL)

On-site
USD 110,000 - 140,000
Hybrid GRC Analyst I: Risk, Audit & Compliance
Hybrid GRC Analyst I: Risk, Audit & Compliance

GEOGRAPHIC SOLUTIONS INC • Palm Harbor (FL)

Hybrid
USD 65,000 - 90,000