GRC Cybersecurity Analyst
$70k - $80kFractional CISO
As a GRC Cybersecurity Analyst (CA), you will play a pivotal role securing our clients’ infrastructure, data and software. Beyond helping our clients, you will also make a huge impact and help society as a whole by contributing to our fast moving, passionate efforts to smartly improve and promote cybersecurity best practices. Fractional CISO is not a typical cybersecurity consulting firm. Instead of technical support, we focus on delivering the best possible cybersecurity advice to our client’s leadership teams. Our typical clients are medium sized tech firms with significant cybersecurity needs, but they’re not quite large enough yet to hire a full-time “C-level” senior security leader, like a Chief Information Security Officer (CISO). We fill that gap with our “fractional” CISO consulting services and help guide our clients on their cybersecurity improvement programs. In this position, you will work as a team with a vCISO to provide cybersecurity leadership in Governance, Risk, and Compliance (GRC) directly to our clients. You will work with a wide range of companies across many industries to develop and deliver the components of a good cybersecurity management program, including: Leading Internal Cybersecurity Audits to ensure our clients’ operational environments stay compliant and secure. Planning and running tabletop training exercises to help our clients’ employees practice how they will respond to a cybersecurity incident. Performing quantitative Risk Assessments for clients so they can understand where to make smart investments in their cybersecurity. Responding to security questionnaires from our clients’ customers so they can grow their businesses. Writing cybersecurity policy documents to build up our clients’ cybersecurity programs. Assisting with evidence collection to help our clients prepare for external compliance audits. Providing advice and guidance to clients on a wide range of cybersecurity topics. Project managing client accounts to keep them on track. Contributing to service development program to improve our client deliverables. Qualifications 2 or more years of experience as a SOC analyst, developer, incident response remediator, technical auditor, IT administrator with security responsibilities or similar technical role A passion about solving clients’ security challenges High personal and professional ethical standards Experience managing internal projects and initiatives Well-developed technical writing skills Additional Technical Experience Security Operations (SOC) Security Compliance (SOC 2, ISO 27001, PCI-DSS, HIPAA, TX-RAMP, etc.) Secure Software Development Lifecycle (S-SDLC) practices Network or firewall administration Professional Experience Knowledge of security operations tools, systems, and practices (SIEM, WAF, vulnerability scanning, penetration testing, system hardening, MFA, SSO, etc.) Able to explain at a high level how the Internet and websites function Familiar with core networking concepts, protocols, and common services Understanding of encryption concepts and SSL/TLS certificates General scripting or coding experience Cybersecurity certifications (SSCP, CompTIA Security+, etc.) Experience with any security frameworks (NIST CSF, CIS, COBIT, etc.) A degree in Cybersecurity or a related field. While we value candidates with operational experience, this role is not the same as a Security Operations Center (SOC) analyst! This job does not focus on routine security tasks like monitoring logs, responding to security alerts, patching systems, or running vulnerability scans. If you have experience as a SOC analyst but are looking for a new challenge that will advance your career towards thoughtful cybersecurity leadership, this may be a great position for you! We are committed to providing guidance and support to the right GRC Cybersecurity Analyst candidate so they can accelerate their cybersecurity career. What we ask in return is that the candidate bring a passion for cybersecurity, a strong work ethic, and demonstrated excellence in their prior positions and coursework. We value diversity and believe that qualified candidates are just as likely to come from non-traditional work or educational backgrounds. Salary range for this position is $70,000 - $80,000 annually with an opportunity to earn bonus pay. Our office is conveniently located next door to the Riverside T stop on the Green Line in Newton, MA. It is near the I-95 / I-90 exchange. This is a hybrid position with at least 3 days in our Newton office. #J-18808-Ljbffr Fractional CISO
$130k - $160k
...Business System which makes everything possible.The Senior Cybersecurity Risk Analyst is responsible for executing third-party and supplier risk... ...risk including country-of-origin scrutiny.Familiarity with GRC platforms (e.g., OneTrust, ServiceNow IRM, RSA Archer) and...SuggestedFull timeRemote workWork from homeFlexible hours- The TeamThe Analyst Governance, Risk, and Compliance, a member of the Information Security - Governance, Risk and Compliance (GRC) team, focuses on implementing and maintaining governance... ...s degree in Information Security, Cybersecurity, Risk Management, or equivalent...SuggestedWork experience placementWork at officeLocal area
$130k - $170k
...extend healthspan. The Governance, Risk, and Compliance (GRC) team helps ensure technology and cybersecurity risks are identified, assessed, and communicated... ...-oriented Senior Governance, Risk, and Compliance Analyst to lead the day-to-day execution and support the ongoing...SuggestedFull timeWork at officeRelocation$99k - $225k
RMF Cybersecurity AnalystThe Opportunity:Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding... ...system administrator, systems engineer, requirements analyst, ISSO, ISSM, or ISSEExperience with Security Technical Implementation...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$99k - $225k
RMF Cybersecurity Analyst The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to government agencies. In all of this “cyber noise,” how can these organizations understand their...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$119k - $193k
Forrester Research, Inc. is seeking a Senior Analyst based in Cambridge, Massachusetts. This role involves delivering strategic advice for risk management leaders and conducting impactful research. The ideal candidate will have 5-7 years of experience in risk management...$22.5 per hour
...Agency Cybersecurity Entry-Level Role Agency Cybersecurity is a fast growing venture-backed startup that provides best-in-class cybersecurity... ...If you make it through and stay, the trajectory is real. Analysts who put in 3+ years in this role routinely move into full...Hourly payFull timeWork at office- ...development within the Security Operations team. Required Skills and Qualifications: ~3-5 years as a professional experience in Cybersecurity, IT, or a related technical field. ~ Demonstrated commitment to developing cybersecurity knowledge, with a foundational...Local area
$85k - $95k
...Associate GRC Analyst KAYAK, part of Booking Holdings, is a leading travel search engine. With billions of queries across our platforms... ...for an early-career professional to grow within a dynamic cybersecurity and risk management environment. A great candidate has a...InternshipWork at officeFlexible hours2 days per week3 days per week- KAYAK, part of Booking Holdings, is seeking an Associate GRC Analyst to join our Cyber Governance, Risk, and Compliance team. This early‑career role develops skills in risk assessments, policy management, and control monitoring while modernizing GRC practices. The position...Work at office3 days per week
- KAYAK, part of Booking Holdings, is hiring an Associate GRC Analyst in Massachusetts. You will support risk assessments, policy management... ...engineering and security, and helping with BC/DR planning. Hybrid work and growth in cybersecurity are offered. #J-18808-Ljbffr KAYAK
- Babel Street is seeking a GRC Analyst to support cybersecurity governance, risk management, and compliance across multiple stakeholders. You will help maintain compliance with NIST CSF, CMMC, ISO/IEC 27001, SOC 2, and related controls, and support audits and policy management...
$90k - $130k
We are hiring a GRC Analyst to support the Governance, Risk, and Compliance program with a focus on third-party vendor risk. You will... ...party risk management experience preferred Working knowledge of cybersecurity compliance frameworks and controls: ISO 27001, NIST CSF, COSO...Relocation package- Job Title cybersecurity principles and vulnerability management Location Burlington, MA Contract Duration Contract Responsibilities Perform vulnerability scans using security tools such as Tenable, Qualys, Nessus, or Rapid7. Review scan results and identify critical...Contract work
$60k - $90k
Whoop is searching for a GRC Analyst in Boston, MA, to enhance the Governance, Risk, and Compliance program. This role involves managing GRC intake processes, coordinating third-party risk reviews, and ensuring effective compliance operations. The ideal candidate will have...- KAYAK is seeking an Associate GRC Analyst to join the Cyber Governance, Risk, and Compliance team in Cambridge/Concord, MA. Early‑career professional with a solid foundation in GRC and interest in automation will thrive here. The role focuses on risk assessments, policy...Work at office3 days per week
- Centuria is seeking a Cybersecurity Analyst located at Hanscom Air Force Base, MA. The role emphasizes providing Information Assurance guidance and support, ensuring systems meet security requirements, and managing security-related issues. Ideal candidates will possess...
$138.75k - $231.25k
Associate Director Regulatory Affairs, OncologyAt GSK, we have bold ambitions for patients, aiming to positively impact the health of 2.5 billion people by the end of the decade. R&D is committed to discovering and delivering transformational vaccines and medicines to prevent...Full timeLocal area- DescriptionAt Viridian Therapeutics, we are focused on developing best-in-class medicines for people living with autoimmune and rare diseases. Leveraging our team’s expertise in antibody discovery and engineering, we have created a robust pipeline of differentiated investigational...Temporary workWork at officeLocal areaImmediate start3 days per week
$105.4k - $207.8k
...understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our... ...such as Microsoft Certified: Security Operations Analyst Associate (SC-200), Certified Cloud Security Professional, Certificate...Local areaVisa sponsorship$130k - $160k
...globe.Showcase the value of the Immersive One platform and secure the technical win alongside a team of the brightest minds in cybersecurity. At Immersive, we’re uniquely positioned to future-proof organizations against any cyber challenge. If that excites you, read on...Contract workWork experience placementRemote workFlexible hours2 days per week- ...organization meets regulatory requirements while supporting innovation and growth. The ideal candidate brings deep expertise in cybersecurity, risk management, and enterprise SaaS environments, along with strong leadership and communication skills.Duties and ResponsibilitiesCollaborate...Work at officeLocal area
$200k - $270k
Department: 2700GL - LegalLocation: Waltham, MACompany Overview:Dyne Therapeutics is focused on delivering functional improvement for people living with genetically driven neuromuscular diseases. We are developing therapeutics that target muscle and the central nervous ...Local areaRemote work$145k - $215k
Who we are:Kymera is a clinical-stage biotechnology company pioneering the field of targeted protein degradation (TPD) to develop medicines that address critical health problems and have the potential to dramatically improve patients’ lives. Kymera is deploying TPD to address...$116k - $160k
Job DescriptionWe are seeking an experienced regulatory professional to support global regulatory activities across early- and late-stage development programs through lifecycle management. The Manager, Regulatory Affairs will partner cross-functionally to support high-quality...$170k - $230k
...North East, preferably near NYC.This position will be remote and can be hired near Minneapolis, MN, IL, WISC (Preferably Wisc)The Cybersecurity Advisor (or Security Advisor / SA as we call it) plays a critical role in serving as a trusted partner to Optiv’s clients. By...Full timeWork experience placementLocal areaRemote workWork from home$130k - $152.5k
...analysis that provide clients with clear, implementable solutions to complex business concerns.Position OverviewCRA is seeking a Cybersecurity Consultant (Assessments / Due Diligence / Advisory) to support client engagements focused on evaluating and managing...Work at officeWork from home3 days per week$102k - $166k
DescriptionThe Elevator PitchEvolv is looking for an experienced NetSuite Systems Analyst to own and strengthen the ERP environment supporting our public-company financial operations. You will bring hands-on experience supporting NetSuite within a publicly traded or similarly...Full timeLocal areaFlexible hours3 days per week$250k - $310k
Department: 1310US - Regulatory - USLocation: Waltham, MACompany Overview:Dyne Therapeutics is focused on delivering functional improvement for people living with genetically driven neuromuscular diseases. We are developing therapeutics that target muscle and the central...Local area$105.4k - $207.8k
...expertise, to best support our clients.Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful...Work experience placementLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Cybersecurity Analyst. Be the first to apply!
- cybersecurity specialist Newton, MA
- senior cybersecurity engineer Newton, MA
- cybersecurity software engineer Newton, MA
- cybersecurity administrator Newton, MA
- grc analyst
- cyber security consultant
- cyber security specialist
- cybersecurity analyst remote
- junior cyber security consultant
- comptia cybersecurity analyst


