An application made for this job — a tailored resume and cover letter that speak straight to the posting.
CMG is seeking a Senior IT GRC Analyst to lead policy development and audit execution within its IT Governance, Risk, and Compliance program, with emphasis on SOC 2 readiness. You will work with the GRC team and IT to plan audits, maintain the policy framework, and manage auditor relationships.
The role requires strong writing, independent judgment, and deep knowledge of control frameworks (NIST CSF, ISO 27001, SOX) plus experience in financial services or regulated industries.
CMG is seeking a Senior IT GRC Analyst to lead policy development and audit execution within its IT Governance, Risk, and Compliance program, with emphasis on SOC 2 readiness. You will work with the GRC team and IT to plan audits, maintain the policy framework, and manage auditor relationships.
The role requires strong writing, independent judgment, and deep knowledge of control frameworks (NIST CSF, ISO 27001, SOX) plus experience in financial services or regulated industries.