Senior Information Security Analyst — Hybrid, Risk & Compliance

Great Gray Group.

Wilmington (DE)

Hybrid

USD 95,000 - 140,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Competitive compensation package
Medical, dental, and vision insurance
Life and disability insurance
Annual well-being stipend
401(k) with employer contribution

Job summary

Great Gray Group is seeking a Senior Information Security Analyst to support IT governance, risk assessment, and security compliance within the Information Security Team. Hybrid work options with offices in Boston, MA or Wilmington, DE, with 4 days onsite and 1 day remote.

The role focuses on reviewing and maintaining ISMS policies and controls, ensuring SOC2, CIS18, and NIST CSF alignment, and facilitating documentation and implementation across IT security programs.

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • 5+ years of audit, compliance, or technical experience.
  • Excellent knowledge of IT security control trends and auditing & compliance best practices.
  • Effective communication skills to articulate IT controls to leadership and partners.
  • Relevant certifications in auditing, compliance, or IT security.

Responsibilities

  • IT governance, risk assessment, and security awareness.
  • Audit and evidence collection for IT controls (PCI, SOX) and SOC2.
  • Vendor risk management assessment, onboarding, and reviews.
  • Business Impact Analysis (BIA) and Sensitive Data Reviews (SDR).
  • URM and PAM reviews for critical applications.
  • Support design and implementation of technical control requirements.
  • Identify and implement improvements to key controls and processes.
  • Collaborate with control owners to ensure operability of controls.
  • Review IT systems and tools to include appropriate controls.
  • Remediate IT control gaps and elevate issues to management.
  • Update IT documentation to reflect processes and controls.

Skills

IT governance
Risk assessment
Security controls
Auditing & compliance
Vendor risk management

Education

Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field

Tools

SOC2
NIST CSF

Job description

Great Gray Group is seeking a Senior Information Security Analyst to support IT governance, risk assessment, and security compliance within the Information Security Team. Hybrid work options with offices in Boston, MA or Wilmington, DE, with 4 days onsite and 1 day remote.

The role focuses on reviewing and maintaining ISMS policies and controls, ensuring SOC2, CIS18, and NIST CSF alignment, and facilitating documentation and implementation across IT security programs.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior InfoSec Analyst — Hybrid Role in Compliance & Risk
Senior InfoSec Analyst — Hybrid Role in Compliance & Risk

Great Gray • Boston (MA)

Hybrid
USD 95,000 - 120,000
Medical, dental and vision insurance
Employer-paid life and disability ins.
Annual well-being stipend
+1
Senior Information Security Analyst – Hybrid (SOC2/PCI)
Senior Information Security Analyst – Hybrid (SOC2/PCI)

Great Gray Group. • Wilmington (MA), Northern (KY)

Hybrid
USD 95,000 - 120,000
Group medical, dental and vision
Employer-paid life and disability
Annual well-being stipend
+1
Cyber Risk & Compliance Analyst — Hybrid/Remote
Cyber Risk & Compliance Analyst — Hybrid/Remote

Boston Government Services, LLC (BGS) • Knoxville (TN)

Hybrid
USD 136,000 - 161,000
Health Insurance
Dental Insurance
Vision Insurance
+4
Senior GRC Security Engineer - Hybrid, Full Benefits
Senior GRC Security Engineer - Hybrid, Full Benefits

Insight Global • United States

Hybrid
USD 120,000 - 160,000
Hybrid Information Governance & Compliance Analyst
Hybrid Information Governance & Compliance Analyst

INSPYR Solutions • Deerfield Beach (FL)

Hybrid
USD 69,000 - 83,000
Comprehensive medical benefits
401(k)
Retirement plan
Senior InfoSec Analyst — Hybrid, Woburn, C2H
Senior InfoSec Analyst — Hybrid, Woburn, C2H

Conch Technologies Inc • Massachusetts

Hybrid
USD 120,000 - 150,000
Hybrid Senior IT Governance & Risk Analyst
Hybrid Senior IT Governance & Risk Analyst

Alexander Technology Group • Boston (MA)

Hybrid
USD 110,000 - 150,000
Hybrid Information Security Analyst: GRC & Policy
Hybrid Information Security Analyst: GRC & Policy

ASCENDING • Richmond (VA)

Hybrid
USD 85,000 - 120,000
Hybrid GRC Analyst I: Risk, Audit & Compliance
Hybrid GRC Analyst I: Risk, Audit & Compliance

Geographic Solutions, Inc. • Palm Harbor (FL)

Hybrid
USD 65,000 - 85,000
Senior Information Security & Risk Analyst (Hybrid)
Senior Information Security & Risk Analyst (Hybrid)

COUNTRY Financial • Bloomington (IL)

Hybrid
USD 94,000 - 130,000
401(k) with company match
Hybrid work
Incentive plan
+1