Senior Cyber Risk & GRC Analyst

Perfict

Massachusetts

On-site

USD 120,000 - 170,000

Full time

32 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Perfict in Massachusetts seeks an experienced cybersecurity risk leader to conduct assessments across cloud, applications, infrastructure, and AI systems, coordinating remediation with IT and business teams. You will evaluate controls, incidents, and threats, and document risk-based mitigation plans aligned with established frameworks.

The role supports audits, reporting, and governance activities, leveraging Purview and Defender tools to enforce data protection and compliance.

Qualifications

  • Knowledge of vulnerability management, incident response, SIEM, DLP, and GRC platforms.
  • Experience evaluating security controls and developing remediation or risk mitigation plans.
  • Strong understanding of cloud security principles and enterprise cybersecurity practices.
  • Excellent analytical, written, verbal, and stakeholder communication skills.
  • Ability to work effectively with both technical and non-technical teams.
  • 6+ years of experience in cybersecurity, IT risk, security engineering, information security, or a related discipline.
  • Strong understanding of cybersecurity risk management and security governance.
  • Hands-on experience with frameworks and standards such as NIST, ISO 27001, FFIEC, and PCI DSS.
  • Experience performing security and risk assessments across applications, infrastructure, cloud environments, and third-party vendors.

Responsibilities

  • Perform cybersecurity risk assessments covering cloud environments, applications, infrastructure, AI technologies, and third-party vendors.
  • Assess security controls, vulnerabilities, incidents, and emerging threats and develop risk-based mitigation recommendations.
  • Support vulnerability management, incident response, security audits, regulatory compliance, and cybersecurity risk reporting.
  • Partner with IT and business stakeholders to identify security gaps and recommend governance and control improvements.
  • Apply established cybersecurity frameworks and industry standards to evaluate and document security risks.
  • Assist with GRC activities, including risk tracking, control assessments, remediation monitoring, and compliance documentation.
  • Leverage Microsoft Purview and Microsoft security technologies to support data protection, compliance, and risk management initiatives.
  • Review security findings and translate technical risks into clear business-level recommendations.
  • Collaborate with internal teams and third-party partners to monitor remediation activities and ensure security requirements are addressed.
  • Stay informed on emerging cybersecurity threats, regulatory requirements, and industry best practices.

Skills

Vulnerability management
Incident response
GRC platforms
Cloud security
Stakeholder communication
Risk assessment
Frameworks & standards

Education

CISSP
CISM
CRISC
CISA

Tools

SIEM
DLP
GRC platforms
Microsoft Purview
Microsoft Defender

Job description

Perfict in Massachusetts seeks an experienced cybersecurity risk leader to conduct assessments across cloud, applications, infrastructure, and AI systems, coordinating remediation with IT and business teams. You will evaluate controls, incidents, and threats, and document risk-based mitigation plans aligned with established frameworks.

The role supports audits, reporting, and governance activities, leveraging Purview and Defender tools to enforce data protection and compliance.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Architect: Cloud, AI, DevSecOps
Senior Cybersecurity Architect: Cloud, AI, DevSecOps

ISO New England • Manchester (NH)

Hybrid
USD 135,000 - 168,000
Hybrid work 3 days onsite
Tuition reimbursement
Professional development
+5
Senior Cybersecurity Risk & GRC Leader
Senior Cybersecurity Risk & GRC Leader

mTrade, LLC. • Oxford (MS)

On-site
USD 110,000 - 160,000
Security Analyst
Security Analyst

Perfict • Massachusetts

On-site
USD 120,000 - 170,000
Senior Cyber Risk Analyst: AI-Powered GRC Lead
Senior Cyber Risk Analyst: AI-Powered GRC Lead

Procore • Austin (TX)

On-site
USD 112,000 - 154,000
Equity compensation
Bonus incentive compensation
Remote Security GRC Analyst: Risk & Compliance Lead
Remote Security GRC Analyst: Risk & Compliance Lead

NEPSE Trading • United States

On-site
USD 70,000 - 77,000
Health insurance
401(k) plan with company match
Pension plan
+1
Senior Cyber Defense & Incident Response Lead
Senior Cyber Defense & Incident Response Lead

MedPro Group • United States

On-site
USD 80,000 - 135,000
GRC Analyst: Cyber Defense Risk & Compliance
GRC Analyst: Cyber Defense Risk & Compliance

Chaos Industries • Washington

On-site
USD 130,000 - 170,000
Health benefits
401k match
FSA/HSA
+2
Senior GRC Lead - Cybersecurity & Compliance (Remote)
Senior GRC Lead - Cybersecurity & Compliance (Remote)

ExperTech Inc. • Boston (MA)

Remote
USD 90,000 - 120,000
Flexible work schedules
Remote work opportunities
Opportunity to manage complex projects
+1
Enterprise Cybersecurity & GRC Leader
Enterprise Cybersecurity & GRC Leader

Emergent Staffing • Hartford (CT)

On-site
USD 130,000 - 180,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000