Senior GRC Analyst

Request Technology, LLC

Chicago (IL)

On-site

USD 105,000 - 145,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Request Technology, LLC is seeking an Information Security professional with a strong background in security frameworks and risk management to support client-facing security initiatives in a fast-paced environment.

The role focuses on leading risk assessments, maintaining security policies, and ensuring IT systems meet cybersecurity and compliance requirements across the organization.

Qualifications

  • Bachelor’s degree in Information Security or related field.
  • 4+ years of Information Security experience.
  • Strong knowledge of ISO 27001, NIST, SOC, and SIG frameworks.
  • Experience leading risk assessments, vendor security reviews, and client-facing security discussions.

Responsibilities

  • Lead responses to client security assessments, questionnaires, and audits, documenting evidence and performing risk assessments as needed.
  • Create, maintain, and evolve security policies, standards, guidelines, and support documentation through strong technical writing.
  • Manage and support processes that ensure IT systems meet cybersecurity, risk, and compliance requirements.
  • Serve as an Information Security subject matter expert, advising technical and non-technical stakeholders across the organization.
  • Manage the third-party Security Vendor Risk Management program, including assessments, remediation tracking, and lifecycle oversight.
  • Oversee the security exception request process and provide guidance on risk treatment decisions.
  • Manage the full lifecycle of the Security Awareness program, including roadmap development, training evaluation, and effectiveness measurement.
  • Support and optimize Governance, Risk, and Compliance (GRC) technology platforms and associated workflows.
  • Conduct evaluations of IT programs and components to confirm alignment with published security standards and frameworks.

Skills

Information Security
Security frameworks
Risk assessments
Vendor security
Client-facing discussions
GRC platforms
RBAC
Security tools

Education

Bachelor’s degree

Tools

GRC platforms

Job description

*We are unable to provide sponsorship for this role*

Qualifications

  • Bachelor’s degree and 4+ years of Information Security experience
  • Strong working knowledge of security frameworks and standards such as ISO 27001, National Institute of Standards and Technology (NIST), System and Organization Controls (SOC), and Standardized Information Gathering (SIG)
  • Experience leading risk assessments, vendor security reviews, and client-facing security discussions with professionalism and tact.
  • Familiarity with GRC platforms, role-based access controls, and a broad range of security technologies and tools.
  • Working knowledge of areas such as authentication, encryption, firewalls, SIEM, intrusion detection/prevention, vulnerability management, mobile security, and privileged access management.

Responsibilities

  • Lead responses to client security assessments, questionnaires, and audits, documenting evidence and performing risk assessments as needed.
  • Create, maintain, and evolve security policies, standards, guidelines, and support documentation through strong technical writing.
  • Manage and support processes that ensure Information Technology (IT) systems meet cybersecurity, risk, and compliance requirements.
  • Serve as an Information Security subject matter expert, advising technical and non-technical stakeholders across the organization.
  • Manage the third-party Security Vendor Risk Management program, including assessments, remediation tracking, and lifecycle oversight.
  • Oversee the security exception request process and provide guidance on appropriate risk treatment decisions.
  • Manage the full lifecycle of the Security Awareness program, including roadmap development, training evaluation, and effectiveness measurement.
  • Support and optimize Governance, Risk, and Compliance (GRC) technology platforms and associated workflows.
  • Conduct evaluations of IT programs and components to confirm alignment with published security standards and frameworks.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior GRC Analyst
Senior GRC Analyst

Request Technology, LLC • Austin (TX)

On-site
USD 120,000 - 160,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
Governance, Risk and Compliance Analyst Senior
Governance, Risk and Compliance Analyst Senior

Cone Health • Greensboro (NC)

On-site
USD 90,000 - 130,000
Governance, Risk & Compliance Analyst I
Governance, Risk & Compliance Analyst I

Geographic Solutions, Inc. • Dunedin (FL)

On-site
USD 60,000 - 100,000
GRC Specialist II
GRC Specialist II

SCIGON • Salt Lake City (UT)

On-site
USD 116,000 - 144,000
GRC Specialist (Governance, Risk & Compliance)
GRC Specialist (Governance, Risk & Compliance)

360CyberX • United States

On-site
USD 70,000 - 90,000
Cybersecurity GRC Professional
Cybersecurity GRC Professional

duvari group • United States

On-site
USD 120,000 - 190,000
Senior Manager, Information Security
Senior Manager, Information Security

Nations Lending Corporation • Kentucky

On-site
USD 120,000 - 190,000
Senior GRC Analyst
Senior GRC Analyst

Insight Global • Town of Florida (NY)

On-site
USD 120,000 - 160,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Westfield Insurance • Westfield Center (OH)

Hybrid
USD 90,000 - 120,000