IT GRC Analyst
$55 - $80 per hourEight Eleven Group
IT GRC Analyst Remote, USA Compensation: $55 - $80 per hour Contract Length: 6-month Contract to Hire Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under heavy audit or incident response activity. Start Date: ASAP ABOUT THE ROLE Our client is a healthcare organization providing primary and post-acute care services to seniors across assisted living, life plan communities, independent living, skilled nursing, and long-term care settings nationwide. The organization is value-driven, offering competitive pay, comprehensive benefits, and flexible scheduling, with a mission to improve the health, happiness, and dignity of the seniors it serves. We are seeking an IT GRC Analyst to join the IT Security and Governance team on a 6-month contract-to-hire basis, working remotely within the USA. The IT GRC Analyst will play a key role in supporting the organization's IT Governance, Risk, and Compliance (GRC) program, focusing on security governance, regulatory compliance, risk management, audit readiness, policy administration, and control monitoring. This position collaborates with IT, Security, Privacy, Compliance, Legal, and business stakeholders to enhance the organization's security posture and ensure compliance with healthcare regulations such as HIPAA, SOC 2, and NIST. The role also contributes to business continuity, disaster recovery, and AI governance initiatives. Up to 10% travel may be required. WHAT YOU'LL DO Perform information security risk assessments and document identified risks, control gaps, and remediation recommendations Support administration and maintenance of the organization's IT Governance, Risk, and Compliance (GRC) program Assist with development, review, maintenance, and periodic evaluation of security policies, standards, procedures, and guidelines Coordinate evidence collection, control validation, documentation activities, and remediation tracking for internal and external audits and assessments Maintain and map security controls against applicable regulatory, contractual, and industry frameworks (e.g., HIPAA, SOC 2, NIST, CMS, URAC) Assist with security exception review processes and document risk acceptance decisions Maintain compliance metrics, risk registers, issue logs, corrective action plans, and other governance documentation Collaborate with technology teams to identify and remediate security vulnerabilities, control deficiencies, and compliance gaps Analyze emerging cybersecurity, privacy, and regulatory requirements and provide recommendations for program improvements Support security awareness, compliance training, and organizational education initiatives Support security governance forums, risk committees, and related working groups through agenda preparation, risk presentation, meeting facilitation, and documentation of decisions and action items Facilitate risk intake, scoring, prioritization, escalation, and ongoing monitoring activities in accordance with organizational risk management procedures Support administration, data quality, workflow management, reporting, and continuous improvement of GRC tooling and platforms Participate in security and compliance reviews for new technologies, systems, projects, AI initiatives, and significant change requests to identify regulatory and security requirements early in the lifecycle Support business continuity, disaster recovery, resilience planning, testing, and associated governance activities Support AI governance, risk assessments, control validation, and compliance reviews for approved AI technologies and use cases Develop and maintain key risk indicators (KRIs), key performance indicators (KPIs), and executive reporting packages supporting leadership and governance oversight Perform other related duties as assigned to support departmental and organizational objectives WHAT YOU BRING 3-5 years of experience in information security, risk management, compliance, audit, or GRC functions Healthcare industry experience required Strong understanding of information security governance, risk management, compliance, and control frameworks Knowledge of healthcare regulatory requirements, including HIPAA Privacy and Security Rules Familiarity with industry frameworks and standards such as NIST CSF, SOC 2, HIPAA, and CIS Experience conducting risk assessments, compliance reviews, and control evaluations Understanding of third-party risk management and vendor security review processes Ability to interpret laws, regulations, contractual requirements, and industry standards Strong analytical, organizational, and problem-solving skills with exceptional attention to detail and critical thinking Experience preparing audit-ready documentation and maintaining evidence repositories Excellent written and verbal communication skills, including executive-level reporting and presentations Ability to prioritize multiple assignments and manage deadlines in a dynamic healthcare environment Proficiency with Microsoft Office applications, governance tools, and compliance management platforms Bachelor's degree in Information Security, Information Technology, Cybersecurity, Computer Science, Healthcare Informatics, or a related field (or equivalent experience) Nice to Haves: Experience supporting HIPAA, SOC 2, CIS, NIST Cybersecurity Framework, or similar regulatory and security frameworks Experience participating in audits, risk assessments, control testing, or compliance monitoring activities WHAT'S IN IT FOR YOU Competitive pay and comprehensive benefits Flexible scheduling and remote work Opportunity to contribute to a mission-driven organization improving the lives of seniors Professional growth in a dynamic healthcare environment Potential for contract-to-hire conversion #LI-CM1 Medasource is an equal opportunity employer that does not discriminate on the basis of actual or perceived race, color, creed, religion, national origin, ancestry, citizenship status, age, sex or gender (including pregnancy, childbirth, lactation and related medical conditions), gender identity or gender expression, sexual orientation, marital status, military service and veteran status, physical or mental disability, protected medical condition as defined by applicable state or local law, genetic information, or any other characteristic protected by applicable federal, state, or local laws and ordinances. Benefits & Perks: Medasource offers competitive medical, dental, vision, Health Savings Account, Dependent Care FSA, and supplemental coverage with plans that can fit each employee’s needs. We offer a 401k plan that includes a company match and is fully vested after you become eligible, paid time off, sick time, and paid company holidays. We also offer an Employee Assistance Program (EAP) that provides services like virtual counseling, financial services, legal services, life coaching, etc. Pay Disclaimer: The pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. #J-18808-Ljbffr
$55 - $80 per hour
...IT GRC Analyst Remote, USA Compensation: $55 – $80 per hour Contract Length: 6-month Contract to Hire Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under heavy audit or incident response activity. Start Date: ASAP ABOUT THE...SuggestedHourly payFull timeContract workWork at officeImmediate startRemote workFlexible hours- Medasource is seeking an IT GRC Analyst to join the IT Security and Governance team on a 6-month contract-to-hire basis, remote within the USA. The role focuses on governance, risk, and compliance across HIPAA, SOC 2, and NIST, collaborating with IT, Security, Privacy,...SuggestedRemote jobContract work
- Medasource is seeking an IT GRC Analyst to join our IT Security and Governance team on a 6-month contract-to-hire basis, working remotely within the USA. The role focuses on security governance, regulatory compliance, risk management, audit readiness, policy administration...SuggestedRemote jobContract work
- New American Funding in Santa Ana, CA seeks a Cybersecurity GRC Analyst I, II, or III to support TPCRM through risk assessments, monitoring, and reporting across the vendor ecosystem. The role scales by experience, offering hands-on assessments, SARs, AI risk reviews, and...Suggested
- ...Experience Experience in Financial Services domain expertise in one or more of the following areas - Governance, Risk & Compliance (GRC), Regulatory Reporting, Financial Risk. Experience in requirement gathering, process mapping, functional analysis, and Data validation...SuggestedFull timeTemporary workRelocation
- ...discovery and driving faster innovation. THE POSITION NMC² is hiring a GRC Analyst to join the Information Security team, reporting to the GRC &... ...security change management review process - triaging incoming IT and infrastructure change requests, engaging Engineering and IT...
- Responsibilities· Represent the Regulatory Reporting team in the New Products Committee, reviewing business line documentation, actively participating in stakeholder discussions, and assessing regulatory reporting impacts. Deliver clear, documented analyses of implications...Work at office
- Commerce seeks a detail-oriented GRC Analyst to join our Governance, Risk & Compliance team. You will support third-party risk assessments, maintain the vendor risk register, and assist with control testing and audit activities across SOC 2, ISO 27001, PCI-DSS. Ideal candidates...
- Commerce is seeking a GRC Analyst to join our Governance, Risk & Compliance team. You’ll support day-to-day risk and vendor assessments, ensure documentation, and assist audits. This is an opportunity for early career professionals to grow within a globally distributed...
$134k - $202k
...customers, growing our community, or shaping our story, you’ll help define what comes next. About the role: We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance...Work at officeRemote workWork from homeWorldwideMonday to FridayFlexible hours- Commerce, a leader in enterprise risk and compliance, seeks a detail-oriented GRC Analyst for its Governance, Risk & Compliance team. You will support day-to-day risk and compliance operations, assess third-party vendors, maintain policy documentation, and help with audits...
- ...Cyber Risk AnalystThe Cyber Risk Analyst will serve in the Cyber Command Risk Program under the direction of the Senior Advisor. They will... ...: 2-3 years of experience in cybersecurity risk management, IT auditing, or policy Familiarity with cybersecurity framework(s)...Full time
$110k - $165k
...Full-Time Location: Chicago - 300 E Randolph St Capability Area: IT DSS Security and Compliance JOB SUMMARY: NORC at the University... ...supporting and administering compliance activities within ServiceNow GRC/IRM and conducting internal and external compliance assessments...Full timeTemporary workCasual workWork at officeRemote work2 days per week1 day per week- Blue Cross NC is seeking an IT Governance Analyst to help identify, assess, monitor, and mitigate third-party vendor risks across technology, cybersecurity, data privacy, and regulatory requirements. You will partner with business stakeholders, procurement, information...Remote jobFlexible hours
- Blue Cross NC is seeking an IT Governance Analyst to assist in identifying, assessing, monitoring, and mitigating risks from third-party vendors, suppliers, and outsourced providers. You will act as a trusted advisor to stakeholders across procurement, information security...
$160k - $260k
...lifecycle management of cybersecurity policies, standards, and governance documentation across the enterprisePartner with the CISO, IT Risk, and Compliance teams to integrate regulatory requirements into security strategy, architecture decisions, and operational processesIdentify...Full timeFlexible hours- ...Services Industry. Position Summary: The Information Risk Analyst/Cybersecurity Risk Analyst will be responsible for developing... ...risks related to how business and technology teams utilize IT systems and supporting technological infrastructure. Key...
- ...Cybersecurity Risk AnalystWe are seeking a Cybersecurity Risk Analyst to join our Information Security Risk team. This role focuses on... ...deficiencies in business processes and technology systems, partnering with IT and business units to communicate risks and agree on findings...
- LexisNexis Risk Solutions’ Fraud Data Analyst works with a customer engagement team to support large banking, financial, and e-commerce clients deploying fraud and identity solutions. This is primarily a consultant role with a strong analytics focus. Responsibilities include...
- Capital One seeks a Senior Risk Associate for the MADI team to model and analyze data, delivering dashboards and insights that inform AML and risk management decisions. The role emphasizes program management, process standardization, and strong stakeholder communication...
- We are looking for a Data Analyst with strong expertise in financial risk analysis, refinancing, and ladder management to join our Cloud Commitment Automation team. This person will own the data modeling and analytics required to continuously optimize commitment portfolios...
- GoFundMe seeks an Analyst II to join its global Trust & Safety team, focusing on regulatory reporting and STR filings. You will interpret regulatory changes and help ensure compliance across products, policies, and communications. Responsibilities include preparing STRs...Remote job
- Nelnet, Inc.'s Nelnet Business Services (NBS) seeks a Data & Compliance Analyst to ensure the accuracy, integrity, and regulatory compliance of program data. You will monitor federal scholarship and financial aid regulations, perform data audits, and prepare compliance...
$52k - $54k
...partnerships, while our focus on creativity and innovative solutions empowers our customer communities to thrive. The Data & Compliance Analyst is responsible for ensuring the accuracy, integrity, and compliance of program data and processes. This role monitors regulatory...Temporary workWork at officeLocal area$67k - $127k
...Analyst, Quantitative Risk AnalysisNote: Fidelity will not provide immigration sponsorship for this position.The RoleAs an Analyst within Fidelity Risk Group's Quantitative Risk Analysis team, you will be working in a team-based, fast-paced environment. This role will...Full time- CVS Health Corporation is seeking a Business Analyst for Regulatory Reporting Solutions, primarily remote in the United States. The role supports PBM, Medicaid, and Licensure reporting processes by organizing inputs, maintaining documentation, and assisting with report...Remote job
- Vercel is seeking a GRC Analyst to join the Governance, Risk & Compliance team. You will manage ongoing compliance across security and privacy frameworks (ISO 27001, SOC 2, HIPAA, PCI DSS) and collaborate with cross‑functional teams to promote accountability and ethical...Remote job
$95k - $125k
Job DescriptionWhat is the opportunity?The global Market Data Services (MDS) team consists of three sub-groups (MDS Administration, MDS Solutions and MDS Compliance) who engage, strategize and support enterprise-wide businesses and stakeholders.This role in the MDS Compliance...Full timeContract workWork experience placementFlexible hours- Job Posting Title: Quantitative Risk AnalystLocation: Jersey City, NJ (Hybrid 3 days a week)Contract Duration: 12 Months2 rounds of InterviewsPrimary Responsibilities:Maintain and enhance in-house fixed income risk modelsDesign and produce model performance metrics and...Contract workWork experience placement3 days per week
- This is an insurance regulatory reporting role, not a software engineering, data engineering, business intelligence or general analytics position. Experience in Property and Casualty insurance reporting is required. Candidates should have experience with P&C insurance regulatory...Work at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT GRC Analyst. Be the first to apply!
- grc analyst Brooklyn, NY
- intern IT Brooklyn, NY
- IT professional Brooklyn, NY
- IT delivery manager Brooklyn, NY
- visa sponsorship IT Brooklyn, NY
- information technology technical recruiter Brooklyn, NY
- information technology graduate Brooklyn, NY
- information technology executive Brooklyn, NY
- vice president information technology Brooklyn, NY
- IT student Brooklyn, NY

