Senior GRC Cybersecurity Strategist

ICCU

Meridian, Chubbuck (ID, ID)

On-site

USD 105,000 - 150,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

ICCU is seeking a senior GRC Cybersecurity Analyst III to lead enterprise governance, risk, and compliance initiatives within IT. You will oversee risk assessments, regulatory compliance, IT audits, and policy development, while mentoring junior staff and coordinating with executives and external stakeholders.

The role requires 9+ years in information security, 6+ years in senior IT security, and 3+ years in GRC projects, with familiarity of NIST CSF, PCI‑DSS, and CIS Controls.

Qualifications

  • 9+ years in information security roles.
  • 6+ years in senior IT security roles (security, infra, dev, cloud).
  • 3+ years in senior GRC projects or teams.
  • Experience with regulatory compliance and certification programs.

Responsibilities

  • Lead enterprisewide cyber and information security risk assessments and audits.
  • Help set strategy to strengthen defenses and close control gaps.
  • Manage third‑party cyber risk assessments, vendor reviews, and remediation tracking.
  • Oversee compliance frameworks: NIST CSF, FFIEC, PCI‑DSS, CIS Controls, FedLine, SWIFT.
  • Develop and maintain IT policies, standards, and procedures for regulations.
  • Coordinate IT audits with internal teams and external auditors/regulators.
  • Build IT GRC dashboards, risk registers, and executive reports.
  • Draft statements of work for new IT GRC initiatives.
  • Lead tabletop exercises and incident response planning with stakeholders.
  • Mentor junior GRC analysts and collaborate with IT, Compliance, Risk.
  • Align GRC efforts with IT, compliance, and risk teams.
  • Interact with auditors, regulators, and certification bodies as needed.
  • Monitor compliance gaps and mitigation plans; report audit readiness.
  • Stay current on regulatory developments affecting cybersecurity programs.

Skills

GRC leadership
Cybersecurity
Risk assessments
Stakeholder management

Education

Bachelor's degree in Info Assurance
Master's degree preferred
DoD 8570 certs (CISSP/CISM/CISA)

Tools

SIEM tools
Vulnerability scanners
GRC systems
Dashboards

Job description

ICCU is seeking a senior GRC Cybersecurity Analyst III to lead enterprise governance, risk, and compliance initiatives within IT. You will oversee risk assessments, regulatory compliance, IT audits, and policy development, while mentoring junior staff and coordinating with executives and external stakeholders.

The role requires 9+ years in information security, 6+ years in senior IT security, and 3+ years in GRC projects, with familiarity of NIST CSF, PCI‑DSS, and CIS Controls.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Cybersecurity Analyst III
GRC Cybersecurity Analyst III

ICCU • Meridian (ID), Chubbuck (ID)

On-site
USD 105,000 - 150,000
Governance, Risk and Compliance Analyst Senior
Governance, Risk and Compliance Analyst Senior

Cone Health • Greensboro (NC)

On-site
USD 90,000 - 130,000
Governance Risk and Compliance Analyst Intermediate
Governance Risk and Compliance Analyst Intermediate

Cone Health • Greensboro (NC)

On-site
USD 110,000 - 140,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
GRC Cybersecurity Analyst — Policy, Risk & Compliance
GRC Cybersecurity Analyst — Policy, Risk & Compliance

Central Business Solutions, Inc • Atlanta (GA)

On-site
USD 95,000 - 110,000
Senior GRC Analyst
Senior GRC Analyst

Request Technology, LLC • Austin (TX)

On-site
USD 120,000 - 160,000
Senior GRC Analyst
Senior GRC Analyst

Request Technology, LLC • Chicago (IL)

On-site
USD 105,000 - 145,000
Senior InfoSec GRC Analyst – Risk & Compliance
Senior InfoSec GRC Analyst – Risk & Compliance

CareSource • Dayton (OH)

On-site
USD 94,000 - 165,000
GRC Analyst: Cyber Risk & Compliance Expert
GRC Analyst: Cyber Risk & Compliance Expert

Cone Health • Greensboro (NC)

On-site
USD 110,000 - 140,000
Senior GRC Consultant — Remote, Strategic Risk & Compliance
Senior GRC Consultant — Remote, Strategic Risk & Compliance

Cyberr • United States

On-site
USD 90,000 - 130,000