IT Governance Risk & Compliance (GRC) Analyst
Trustmark
Overview The IT GRC Analyst operates within the enterprise Cybersecurity Operations function and supports the Information Technology, Information Systems, and other technology teams aligned under the Chief Information Officer. This role executes governance, risk, and compliance activities aligned with regulatory frameworks and internal policies. Core responsibilities include ensuring operational alignment with frameworks such as GLBA, FFIEC, SOX, NIST CSF, and the Computer Risk Institute (CRI) Profile; conducting IT assessments and Risk Control Self Assessments (RCSAs); maintaining control libraries; and supporting recurring testing, reporting, and metrics analysis and response. The analyst contributes to recurring reporting cycles, supports departmental risk remediation and response efforts associated with findings and risks, and helps drive continuous improvement of governance practices through collaboration, documentation, and control maturity efforts. The analyst collaborates with Enterprise Risk, Audit (internal and external), Compliance, and Policy Management teams to execute these activities effectively. Day-to-day responsibilities include control documentation, testing coordination, assistance with reviewing and updating policies, standards, and control libraries, and policy lifecycle support. Familiarity with GRC platforms (e.g., AuditBoard), ITSM tools (e.g., ServiceNow), and regulatory compliance in financial services is strongly preferred. The analyst also contributes to the development and maintenance of IT policies and procedures and supports the definition and tracking of key performance indicators (KPIs) and key risk indicators (KRIs). Success in this role requires strong technical writing skills, cross-functional engagement, and a focus on building and maintaining automation to streamline control testing and reporting processes. The role demands a self-driven desire to continuously learn and improve along with a collaborative mindset and a willingness to meet teammates and coworkers where they are in their processes. The analyst must be committed to helping develop, strengthen, and sustain a resilient and effective IT GRC program across the organization. This position may be filled as a Level I, II or III. Additional responsibilities and qualifications apply. Responsibilities Serve as liaison between internal IT/IS/Cyber teams and Enterprise Risk and Audit to facilitate compliance efforts and assessments (GLBA, FFIEC, SOX, CRI/NIST CSF). Coordinate the collection of sufficient, appropriate evidence for assessments, including facilitating questionnaires and direct engagement with engineers and operational personnel. Execute and document testing procedures in spreadsheets and GRC platforms; draft reports based on results and environmental context. Utilize GRC tools to manage questionnaires, evidence collection, assessment documentation, and asset definitions. Track, document, and support remediation of findings, risk exceptions, and issues identified through audits, assessments, or operational testing, escalating unresolved items as appropriate. Collaborate with internal IT/IS teams to maintain and review policy/standards documentation. Research, implement, and monitor compliance initiatives to protect organizational assets. Assess systems for compliance gaps and oversee sustainable remediation efforts. Manage new and recurring compliance initiatives by conducting control assessments and recommending remediation or compensating controls. Collaborate with peers and leadership to review and refine assessment work. Stay current on regulatory changes and industry best practices to maintain alignment with standards. Facilitate cross-functional collaboration (IT, Engineering, Legal, HR) to address security risks. Advise IT and IS leadership on risk impacts and governance priorities. Assist with the design and monitoring of KPIs and KRIs aligned to operational objectives. Support timely execution of user access reviews and associated remediation efforts. Perform other duties commensurate with responsibilities of an IT GRC department. Associates are expected to perform all additional duties as assigned. Qualifications Bachelor’s degree in information security, Information Systems/Technology, Risk Management, Cybersecurity, or a similar discipline. 1 year of experience in IT GRC, IT audit, or a closely related compliance or risk function. Ability to coordinate with operational and IT/IS personnel to gather evidence, clarify processes, and support control implementation. Proficiency with Microsoft Office 365, including Excel and SharePoint for documentation and collaboration. Strong written and verbal communication skills, including drafting audit findings and control narratives. Familiarity with enterprise infrastructure components such as operating systems, directory services, and security technologies. External-facing project experience (e.g., consulting, public accounting) is a plus. Strong Preference for candidates located within commuting distance of Ridgeland, MS or willing to work hybrid/remote with occasional in-person sessions. Additional qualifications required for Level II: 3 years of experience in IT GRC, IT audit, or a closely related compliance or risk function. Demonstrated ability to work independently with minimal oversight. Experience documenting control testing results in GRC platforms or structured formats. Working knowledge of GRC platforms (e.g., Archer, AuditBoard, ServiceNow). At least one relevant certification (e.g., CISSP, CISM, CISA, CIA, CRISC, CGRC). Experience translating regulatory requirements into detailed policies, standards, and control procedures, with the ability to explain technical and regulatory concepts clearly to non-GRC stakeholders. Understanding of cybersecurity infrastructure (e.g., firewalls, vulnerability management, IDS/IPS). Proactively identifies tasks and next steps rather than waiting for work to be assigned. Approaches problems from a solution-oriented perspective and brings proposed options when raising issues. Recognizes and corrects gaps or weaknesses in own work prior to submission. Produces well-structured, professionally formatted reports, presentations, and spreadsheets suitable for executive, audit, and regulatory audiences, with minimal need for substantive review, rework, or edits. Additional qualifications required for Level III: 5 years of experience in IT GRC, IT audit, or a closely related compliance or risk function. Proven ability to manage cross-functional collaboration across IT, Engineering, Legal, HR, and other stakeholders. Advanced analytical skills with experience using tools like Alteryx, Tableau, Power BI, or Python for reporting and automation. Independently identifies, prioritizes, and drives work with minimal direction, proactively voicing and coordinating areas where effort is needed. Provides guidance, instruction, and informal training to Analyst I and Analyst II team members. Leads project execution by bringing structure, ideas, and recommended solutions, and translating detailed analysis into clear direction. Reviews the work of others constructively, identifying weaknesses and improvement opportunities. Produces work requiring minimal review and demonstrates sound judgment in improving overall team output beyond personal deliverables. Physical Requirements & Working Conditions Must be able to sit for long periods of time and use computer keyboard and/or mouse requiring hand and wrist manipulation, while viewing computer screens. #J-18808-Ljbffr
- Trustmark in Ridgeland, MS is seeking an IT GRC Analyst to oversee governance, risk, and compliance activities. The role includes coordinating compliance efforts, executing IT assessments, and developing policies. The ideal candidate will hold a Bachelor's in information...SuggestedRemote job
- ...Creates analytics to identify trends and implement risk mitigating strategies to support the reduction of the Company’s operational risk exposures, promoting risk awareness and loss prevention techniques to address individual OpCo’s business operational risk. Administers...SuggestedContract work
$81.07k - $129.71k
...the development, maintenance, and ongoing improvement of the IT risk management, IT controls framework, training, and associated processes... ...design and documentation, including process mapping and governance. CISSP, CISM, CISA or CRISC certification preferred. What You'...SuggestedWork at officeLocal areaRemote workFlexible hours2 days per week$95.03k - $111.8k
...quarterly for intense in-person working sessions called “surges.”learn more about working at Coinbase. We're hiring a Credit Risk Analyst to join the Counterparty and Credit Risk team within Financial & Operational Risk. This team manages credit exposure across Coinbase...SuggestedLocal area$60k
...and improving essential government systems and services, with... ...status required. The Risk, Quality, and Performance Analyst serves as the Risk, Quality... ...supporting an enterprise IT services contract. This... ...management activities to ensure compliance with contract...SuggestedContract workRemote work- ...Senior Actuarial Analyst At Blue Cross & Blue Shield of Mississippi, we encourage professional growth in a challenging and fast-paced atmosphere. Our 'be healthy' culture promotes health and wellness at all levels of the Company, and we provide our employees with the...Work at office
- ...Actuarial Analyst Be part of a vision for a healthier Mississippi as an Actuarial Analyst. At Blue Cross & Blue Shield of Mississippi... ...every day. What You'll Do: Analyze healthcare costs, risk, pricing, forecasting and other projects to help improve quality...
$143.62k - $229.79k
...Job Description As a Consulting Actuary -ACA Risk Adjustment, you will play a pivotal role in delivering a wide array of actuarial... ...complex actuarial or analytical projects, ensuring timeliness, compliance, and quality of work Provide proactive and strategic thought leadership...- Healthy Careers Start Here Senior Actuarial Analyst Be part of a vision for a healthier Mississippi as a Senior Actuarial Analyst. At Blue... ..., data analytics and actuarial principles to assess financial risks and guide strategic decisions for our Company. This Senior Actuarial...
- ...Blue Cross & Blue Shield of Mississippi seeks a Senior Actuarial Analyst to independently develop pricing models, analyze claims trends, and prepare actuarial exhibits for financial reporting. The role includes updating forecast models and mentoring junior staff. You will...Work at office
$80k - $90k
...Senior Actuarial Analyst Flowood, MS 39215 US Posted: 09/15/2025 Job Description Looking for a step up? This is a perfect opportunity to move up to the next level. Well-known Health insurer is in search of a Senior Actuarial Analyst who will enhance pricing models, analyze...$81.07k - $129.71k
...Job Description Blue Cross NC is seeking an Actuarial Analyst to support rating and pricing, valuation, healthcare economics, and financial... ...anomalies. Executes control activities to support Enterprise Risk Management. Provides analytic support for corporate and departmental...Work at officeLocal areaRemote workFlexible hours2 days per week$106.9k - $147k
...current processes for accuracy and completeness Understanding Risk Arrangement contracts and modeling their financial impact... ...It is also the policy of Humana to take affirmative action, in compliance with Section 503 of the Rehabilitation Act and VEVRAA, to employ...Full timeTemporary workApprenticeshipWork at officeRemote workWork from homeHome office- Chief ActuaryAt Blue Cross & Blue Shield of Mississippi, we encourage professional growth in a challenging and fast-paced atmosphere. Our 'be healthy' culture promotes health and wellness at all levels of the Company, and we provide our employees with the time, tools and...Work at office
$18.2 - $21.1 per hour
Job ID: 293424 Store Name/Number: MS-Renaissance Colony Park (0620) Address: 1000 Highland Colony Parkway, Ridgeland, MS 39157, United States (US) Hourly/Salaried: Hourly (Non-Exempt) Full Time/Part Time: Part Time Position Type: Regular Your Role at...Hourly payFull timePart timeFlexible hoursShift workNight shiftWeekend work- ...Grant Compliance Specialist Southern Regional Office Ducks Unlimited, Inc., the world’s leader in wetlands and waterfowl conservation,... ...engineers to deliver wetland projects Monitor compliance with government grants and contracts for financial, administrative, and technical...Full timeContract workLocal area
- ...Alliance office locations approximately 2 days per month. The primary responsibility of this position is to ensure the Company's compliance with the CMS mandatory insurer reporting requirements for Section 111 of the Medicare, Medicaid, and SCHIP Extension Act (MMSEA)...Work at office
- ...Role : Data Analyst Location : Jackson, Mississippi - Fully Onsite Only Locals $55/hr on W2 Client : State of Mississippi USC/GC/H4 EAD Please do not Apply outside Mississippi - it will rejected We dont accept H1B and...H1bLocal area
- ...Data Analyst Location: Jackson, MS - Onsite Type: C2C/W2 Duration: 12+ Months Client: STATE OF MISSISSIPPI Job Description: Required Skills/Experience: Four (4) years of experience with Multidimensional Model Data Base Design, ETL design and development....
$105.1k - $150.1k
...US-Nationwide-FIELD Full time 20185427 Sr. Data Analyst, Data Analysis Finance Digital Partner In Cardinal Health's Finance Digital Solutions Organization, we are focused on using technology to improve healthcare. Our commitment to innovation, design, and a product...Full timeTemporary workWork experience placementLocal areaImmediate startFlexible hours- ...Data Analyst I Fully Remote•United States Job Type Full-time Description Overview... ...services and information technology (IT) solutions to federal agencies in health, agriculture, technology, and other government services. TMS is a subsidiary of the St. George...Full timeContract workFor contractorsWork at officeLocal areaRemote work
- ...descriptive and predictive audience segmentation. We are seeking a Data Analyst with a versatile skill set to undertake data science and... ...requiring the change and writing user stories. Communicate with IT to implement changes through an iterative agile process...Full timeInternshipLocal areaRemote work
$71.8k - $150.8k
...Business Systems AnalystCACI is seeking a Business Systems Analyst to support Shipyard personnel tasked to expedite execution of maintenance... ...including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant...Contract workFor contractorsWork experience placementInterim roleLocal areaFlexible hours- SR International INC. is seeking a help desk specialist to serve as the primary point of contact for users and to diagnose and resolve software issues impacting data conversion projects. The role requires 5 years of experience with automated systems for determining benefits...Remote work
- Are you a credentialed life insurance producer who feels constrained by corporate caps, captive carrier limitations, or opaque lead structures? We are expanding our network of established financial protection specialists. This 1099 entrepreneurial partnership is tailored...Contract workWork at officeImmediate startRemote work
- ...Technical Writer / Business AnalystPreferred Relevant Experience:8+ years preparing government RFPsTechnical specificationsBusiness analysisProcurement documentationKey Skills:Technical WritingBusiness AnalysisRequirements GatheringDocumentationComplianceWorkshop FacilitationResponsibilities...
- ...system integration, including 2+ years supporting large-scale government technology projects. Experience with cloud/SaaS implementations... ...integrations; evaluate integration testing results; identify quality risks and gaps; support production-readiness and go-live assessments....
$51.6k - $77.4k
...Job Summary The Compliance Specialist – Title IX investigator/trainer – is the primary contact for the institution’s compliance program, ensuring adherence to institutional rules and laws related to Title IX, Title VI, Title VII, and other regulatory requirements. The...- ...Compliance SpecialistWe take pride in what we do! Deciding to come grow with us is an exciting opportunity to enhance your career success stories. You are the center to what we do. We would love to have you here!The Compliance Specialist is responsible for supporting...Work at officeHome office
- ...Compliance CoordinatorThis position is responsible for supporting the Manager, Corporate Compliance; Director, Legal Operations; and the... ...to ensure compliance with local, state and federal laws which govern the business activities of Blue Cross & Blue Shield of Mississippi...Work experience placementWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Governance Risk & Compliance (GRC) Analyst. Be the first to apply!
- risk assurance Ridgeland, MS
- high risk Ridgeland, MS
- risk Ridgeland, MS
- IT associate Ridgeland, MS
- information technology and services consultant Ridgeland, MS
- IT performance management Ridgeland, MS
- IT Ridgeland, MS
- information technology specialist Ridgeland, MS
- information technology Ridgeland, MS
- IT team lead Ridgeland, MS



