GRC Analyst
NorthMark Strategies
THE COMPANY NorthMark Compute & Cloud (NMC²) is backed by dedicated leadership and investment, with a clear mission as it operates at the bleeding edge of technology. Its goal is to scale and enhance the high-performance computing (HPC) and cloud infrastructure that supports its clients' research, production, and delivery, enabling breakthroughs that shape the industries of tomorrow. Its engineers build critical infrastructure to eliminate friction in scientific research, simulations, analysis, and decision-making, accelerating discovery and driving faster innovation. THE POSITION NMC² is hiring a GRC Analyst to join the Information Security team, reporting to the GRC & Privacy Manager and based at our Dallas, TX offices at Victory Commons. This role is the operational engine of NMC²'s security governance program - responsible for the processes, documentation, and cross-functional coordination that keep our compliance posture current and our risk exposure understood. You will run the security change management review process, conduct risk and vendor assessments, maintain the enterprise risk register, and own the lifecycle of NMC²'s security policy library. Day-to-day, you will work closely with Engineering, Product, Legal, and Operations - acting as the connective tissue between technical teams and the governance structures that protect the business. The right person for this role is equally at home authoring a policy document, running a risk workshop with a product team, and producing a clean risk summary for the CISO. You bring strong judgment about where governance adds real value, and you know how to design processes that people actually follow. RESPONSIBILITIES
- Own and operate the security change management review process - triaging incoming IT and infrastructure change requests, engaging Engineering and IT stakeholders, and documenting findings, approvals, and escalations.
- Iterate on change management processes, runbooks, and risk criteria to reduce friction for low-risk changes while preserving appropriate rigor for high-risk ones.
- Conduct security reviews for new products, features, third-party integrations, and vendor onboarding, applying a consistent risk-based assessment methodology and tracking remediation of identified gaps.
- Facilitate threat identification workshops and risk discussions with Engineering, Product, and Operations for major initiatives or architectural changes.
- Maintain and continuously improve the enterprise Information Security risk register, ensuring risks are clearly articulated, owned, prioritized, and tracked through to mitigation or acceptance.
- Develop risk reporting dashboards and narrative summaries for the CISO and executive leadership; monitor the regulatory and threat landscape for emerging risks that warrant program attention.
- Author, revise, and manage the organization's information security policy library - policies, standards, procedures, and guidelines - aligned to applicable frameworks including ISO 27001, SOC 2, and NIST CSF.
- Manage the security exception process: collect requests, facilitate risk-based approvals with the GRC Manager, and track expiry and renewal.
- Monitor adherence to governance processes across the business (change management, access reviews, training, exception management) and produce compliance metrics for security leadership.
- Serve as a day-to-day point of contact for Engineering, Product, Legal, HR, and Operations on security governance questions, and represent the Information Security team in cross-functional forums such as the Change Advisory Board and Risk Committee.
- Bachelor's degree in Information Systems, Computer Science, Business Administration, or a related field - or equivalent experience.
- 4-8 years of experience in GRC, information security governance, compliance, or risk management.
- Hands-on experience owning or significantly contributing to security change management, risk assessment, or policy management processes.
- Working knowledge of at least two major security frameworks or standards - ISO 27001, SOC 2 TSC, NIST CSF, NIST SP 800-53, or CIS Controls.
- Experience developing, reviewing, and publishing information security policies, standards, and procedures.
- Familiarity with risk register management: identifying, rating, tracking, and reporting on information security risks.
- Experience with GRC or compliance automation platforms such as ServiceNow GRC, Vanta, Drata, Hyperproof, or Archer.
- Proficiency with project and workflow tools (Jira, Confluence, or similar) for change tracking, risk registers, and policy workflows.
- Strong written communication skills with the ability to translate technical security requirements into clear, accessible policy language for a non-technical audience.
- Collaborative working style with demonstrated experience engaging stakeholders across Engineering, Legal, HR, and Operations.
- One or more relevant certifications preferred: CISM, CRISC, CISA, CISSP, ISO 27001 Lead Implementer or Lead Auditor, or CompTIA Security+.
- Company-Paid Lunch Stipend : Lunch is provided via GrubHub
- Company-Paid Benefits: 100% Employer-Paid Medical in our High Deductible Health Plan, Dental and Vision benefits for employees and their families, 16 weeks of Paid Parental Leave, Employee Assistance Program, Life insurance, Short-Term Disability and Long-Term Disability
- 401(k): Company will match 100% of your contributions up to 6%
- Optional Employee-Paid Benefits: Medical insurance in our PPO plan and a variety of other benefits such as Health Savings Accounts (with Company Contribution!), Flexible Spending Accounts, Supplemental Life Insurance, Wellhub and more.
- Time Off: 25 days of Paid Time Off plus 12 company holidays
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the GRC Analyst in Dallas, TX vacancy
$100.8k - $168k
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being...Suggested- ...OR ~4+ years of experience in Risk Management or Third-Party Risk Management (TPRM) with a strong focus on Information Security and GRC; OR ~4+ years of experience in Information Technology with a dedicated focus on Security or GRC. ~ Experience or familiarity with...Suggested
- NorthMark Compute & Cloud (NMC²) is seeking a GRC Analyst to join the Information Security team in Dallas. You will own the security change management review, conduct risk and vendor assessments, maintain the enterprise risk register, and manage the policy library. Day...Suggested
- NorthMark Strategies LLC is hiring a GRC Analyst to join the Information Security team in Dallas, TX. You will drive governance processes, risk assessments, policy library management, and cross‑functional coordination with Engineering, Product, Legal, and Operations. You...Suggested
- Glocomms is partnered with a leading IT and Cloud Computing firm seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support and enhance the organization's security governance, risk management, and compliance programs. This individual will play...SuggestedRemote workFlexible hours
- Crunchyroll is seeking an experienced Risk Analyst to support our Information Security GRC team. This role emphasizes governance, risk, and compliance, ensuring technology evolution aligns with employee needs and strategic goals. Successful candidates will have over 8 years...Flexible hours
- BAL is seeking a senior GRC/InfoSec professional in the United States (Texas - Richardson) to lead audits, maintain ISMS/PIMS, and grow BAL's privacy and AI governance programs. You will collaborate across IT, security, privacy, and legal teams to ensure regulatory compliance...
- Glocomms, in partnership with a leading IT and Cloud Computing firm, is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support security governance, risk management, and regulatory compliance. You will conduct risk assessments, manage third-...Remote work
- NorthMark Compute & Cloud in Dallas, TX is seeking a GRC Analyst to join the Information Security team. You will manage security change reviews, perform risk and vendor assessments, and maintain the enterprise risk register, aligning policies with frameworks to protect...
$118k
...SAP GRC Analyst / SAP Security AnalystLocation: Monday - Friday - Onsite in Richardson, TX Employment Type: Direct Hire - Full-Time Employment Salary Range: $118K + BonusPosition OverviewWe are seeking an experienced SAP GRC Analyst to serve as the critical link between...Full timeMonday to Friday- Vanguard is seeking a Governance, Risk & Compliance Analyst, Specialist to lead enterprise‑wide information security policies and standards... ...within defined risk controls. You will assess the end‑to‑end GRC framework, monitor policy lifecycles, and use data‑driven methods...
- ...to predict risk issues, develop solutions, and partner with key owners and stakeholders.Designs, implements and supports modernized GRC process and tool capabilities.Participates in special projects and performs other duties as assigned.QualificationsSeven years related...Full timeWork experience placement
- ...Governance, Risk, and Compliance (GrC) Senior Associate Weaver is a full-service national accounting, advisory, and consulting firm with opportunities for professionals in many different fields. We seek to bring a human element to the world of accounting, which includes...Flexible hours
$112.61k - $172.21k
Who You Are:The Senior Analyst, Insurance and Risk Management will serve as a key contributor responsible for executing development insurance and risk management activities supporting large-scale data center campuses. The role partners closely with cross-functional stakeholders...$100.1k - $185.9k
Job ID: R214578Posted: 2026-08-19Location: TX - DallasSalary: $100,100.00 - $185,900.00Type: Full timeCountry: United States of AmericaCompany: PNCPosition OverviewAt PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are...Full timeTemporary workPart timeWork experience placementWork at office- ...Skill and ExperienceThe ideal candidate is a highly organized Risk Analyst with strong project management and documentation skills who can... .... Experience supporting Governance, Risk, and Controls (GRC) programs in financial services or other regulated environments....Full timeTemporary workWork at officeRelocation
- How You Will Fulfill Your PotentialManage all aspects of issue identification, analysis, remediation and monitoring & reporting, including collaboration with issue owners, aggregation of issues across the business, and facilitation of executive reporting.Proactively identify...
$55 - $60 per hour
...Meghana GorusuCompany: SRI Tech SolutionsTitle: Third Party Risk AnalystLocation: Dallas TXDuration: Contract / Full timeDescription:The Analyst/ Sr Analyst, Cybersecurity Risk is part of the Technology Division. This role plays a critical role in protecting digital ecosystem...Hourly payFull timeContract work- ...team and culture and contribute to our core mission which is enhancing our customer's experience.Position Summary:The Senior Risk Analyst, Commercial Lending Analytics, will support the development, calibration, and ongoing performance monitoring of commercial lending...Work at officeVisa sponsorshipWork visaMonday to FridayWeekend work
- RISK Goldman Sachs’ Risk Division develops comprehensive programs and processes to identify, monitor, assess and manage financial and non-financial risks in support of the firm’s risk appetite statement and strategic business plans. Risk teams play a critical function for...Work experience placement
- Risk Division The Risk Division develops comprehensive processes to monitor, assess and manage the risk of expected and unexpected events that may have an adverse impact on the firm. Risk teams play a critical function for the firm, driving how the firm takes and manages...
- OverviewThe Contract / Risk Analyst is responsible for reviewing contracts, subcontracts, and related project documents to identify risk exposure and support sound business decisions across company operations. This role works closely with executive leadership and project...Contract workFor contractorsWork at officeLocal areaFlexible hours
$116k - $166k
...ability to multitask.Excellent communication and team-work skills, including working with various internal stakeholders.Financial Analysts ensure that Google makes sound financial decisions. As a Financial Analyst, your work, whether it's modeling business scenarios or...Contract work- Asset & Wealth Management Divisional Overview A career with Goldman Sachs Asset & Wealth Management is an opportunity to help clients across the globe realize their potential, while you discover your own. As part of one of the world’s leading asset managers with over $3...Private practiceWork at office
- JOB TITLE: Associate, Operational RiskENTITY: Goldman Sachs & Co. LLCDIVISION: Risk DivisionJOB LOCATION: 717 North Harwood Street, Dallas, TX 75201Number of direct reports: NoneJOB DUTIES:· Identify, monitor, and analyze operational risks arising from data management practices...
- OverviewWe are seeking a highly motivated and detail-oriented Operational Risk Associate to join our AM Private Operational Risk team. This position plays an integral role in supporting the risk management framework across multiple business segments within the Goldman Sachs...Work at office
- Job-ID28224324Reference24-01204 Responsibilities:This position leads project submissions for regulatory approvals and acts independently to identify and resolve problemsThis new team member will apply advanced regulatory expertise to guide cross-functional partners and ...For contractors
$172.5k - $222.5k
Circle (NYSE: CRCL) is one of the world’s leading internet financial platform companies, building the foundation of a more open, global economy through digital assets, payment applications, and programmable blockchain infrastructure. Circle’s platform includes the world...Flexible hours- About WFSJoin our Worldwide Flight Services family and contribute to the timely delivery of cargo shipment, luggage, business to customer delivery, and on-time flights while operating safely and securely. We perform at the highest level for our customers every day, and ...Full timePart timeWork at officeWorldwide
$100k - $120k
Job RequirementsWhy work for us? Alkegen brings together two of the world’s leading specialty materials companies to create one new, innovation-driven leader focused on battery technologies, filtration media, and specialty insulation and sealing materials. Through global...Local areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!
Related searches


