GRC Analyst
NorthMark Strategies
The Company NorthMark Compute & Cloud (NMC²) is backed by dedicated leadership and investment, with a clear mission as it operates at the bleeding edge of technology. Its goal is to scale and enhance the high-performance computing (HPC) and cloud infrastructure that supports its clients’ research, production, and delivery, enabling breakthroughs that shape the industries of tomorrow. Its engineers build critical infrastructure to eliminate friction in scientific research, simulations, analysis, and decision-making, accelerating discovery and driving faster innovation. THE POSITION NMC² is hiring a GRC Analyst to join the Information Security team, reporting to the GRC & Privacy Manager and based at our Dallas, TX offices at Victory Commons. This role is the operational engine of NMC²’s security governance program — responsible for the processes, documentation, and cross‑functional coordination that keep our compliance posture current and our risk exposure understood. You will run the security change management review process, conduct risk and vendor assessments, maintain the enterprise risk register, and own the lifecycle of NMC²’s security policy library. Day‑to‑day, you will work closely with Engineering, Product, Legal, and Operations — acting as the connective tissue between technical teams and the governance structures that protect the business. The right person for this role is equally at home authoring a policy document, running a risk workshop with a product team, and producing a clean risk summary for the CISO. You bring strong judgment about where governance adds real value, and you know how to design processes that people actually follow. Responsibilities Own and operate the security change management review process — triaging incoming IT and infrastructure change requests, engaging Engineering and IT stakeholders, and documenting findings, approvals, and escalations. Iterate on change management processes, runbooks, and risk criteria to reduce friction for low‑risk changes while preserving appropriate rigor for high‑risk ones. Conduct security reviews for new products, features, third‑party integrations, and vendor onboarding, applying a consistent risk‑based assessment methodology and tracking remediation of identified gaps. Facilitate threat identification workshops and risk discussions with Engineering, Product, and Operations for major initiatives or architectural changes. Maintain and continuously improve the enterprise Information Security risk register, ensuring risks are clearly articulated, owned, prioritized, and tracked through to mitigation or acceptance. Develop risk reporting dashboards and narrative summaries for the CISO and executive leadership; monitor the regulatory and threat landscape for emerging risks that warrant program attention. Author, revise, and manage the organization’s information security policy library — policies, standards, procedures, and guidelines — aligned to applicable frameworks including ISO 27001, SOC 2, and NIST CSF. Manage the security exception process: collect requests, facilitate risk‑based approvals with the GRC Manager, and track expiry and renewal. Monitor adherence to governance processes across the business (change management, access reviews, training, exception management) and produce compliance metrics for security leadership. Serve as a day‑to‑day point of contact for Engineering, Product, Legal, HR, and Operations on security governance questions, and represent the Information Security team in cross‑functional forums such as the Change Advisory Board and Risk Committee. Requirements Bachelor’s degree in Information Systems, Computer Science, Business Administration, or a related field — or equivalent experience. 4–8 years of experience in GRC, information security governance, compliance, or risk management. Hands‑on experience owning or significantly contributing to security change management, risk assessment, or policy management processes. Working knowledge of at least two major security frameworks or standards — ISO 27001, SOC 2 TSC, NIST CSF, NIST SP 800-53, or CIS Controls. Experience developing, reviewing, and publishing information security policies, standards, and procedures. Familiarity with risk register management: identifying, rating, tracking, and reporting on information security risks. Experience with GRC or compliance automation platforms such as ServiceNow GRC, Vanta, Drata, Hyperproof, or Archer. Proficiency with project and workflow tools (Jira, Confluence, or similar) for change tracking, risk registers, and policy workflows. Strong written communication skills with the ability to translate technical security requirements into clear, accessible policy language for a non‑technical audience. Collaborative working style with demonstrated experience engaging stakeholders across Engineering, Legal, HR, and Operations. One or more relevant certifications preferred: CISM, CRISC, CISA, CISSP, ISO 27001 Lead Implementer or Lead Auditor, or CompTIA Security+. It is impossible to list every requirement for, or responsibility of, any position. Similarly, we cannot identify all the skills a position may require since job responsibilities and the Company’s needs change over time. Therefore, the above job description is not comprehensive or exhaustive. The Company reserves the right to adjust, add to or eliminate any aspect of the above description. The Company also retains the right to require all employees to undertake additional or different job responsibilities when necessary to meet business needs. Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future. Benefits & Perks Company-Paid Lunch Stipend: Lunch is provided via GrubHub Company-Paid Benefits: 100% Employer-Paid Medical in our High Deductible Health Plan, Dental and Vision benefits for employees and their families, 16 weeks of Paid Parental Leave, Employee Assistance Program, Life insurance, Short‑Term Disability and Long‑Term Disability 401(k): Company will match 100% of your contributions up to 6% Optional Employee-Paid Benefits: Medical insurance in our PPO plan and a variety of other benefits such as Health Savings Accounts (with Company Contribution!), Flexible Spending Accounts, Supplemental Life Insurance, Wellhub and more. Time Off: 25 days of Paid Time Off plus 12 company holidays EQUAL OPPORTUNITY EMPLOYER NORTHMARK STRATEGIES LLC IS AN EQUAL EMPLOYMENT OPPORTUNITY EMPLOYER. THE COMPANY'S POLICY IS NOT TO DISCRIMINATE AGAINST ANY APPLICANT OR EMPLOYEE BASED ON RACE, COLOR, RELIGION, NATIONAL ORIGIN, GENDER, AGE, SEXUAL ORIENTATION, GENDER IDENTITY OR EXPRESSION, MARITAL STATUS, MENTAL OR PHYSICAL DISABILITY, AND GENETIC INFORMATION, OR ANY OTHER BASIS PROTECTED BY APPLICABLE LAW. THE FIRM ALSO PROHIBITS HARASSMENT OF APPLICANTS OR EMPLOYEES BASED ON ANY OF THESE PROTECTED CATEGORIES. #J-18808-Ljbffr
$100.8k - $168k
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being...Suggested- ## GRC AnalystApplylocations: Dallas, TXtime type: Full timeposted on: Posted 2 Days Agojob requisition id: R13277**THE COMPANY**NorthMark... ...driving faster innovation.**THE POSITION**NMC2 is hiring a GRC Analyst to join the Information Security team, reporting to the GRC &...SuggestedTemporary workFlexible hours
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter, more trustworthy AI - and we need practitioners who know how GRC actually works in the real world. Your expertise...SuggestedHourly payOngoing contractContract workFreelanceRemote workFlexible hours
$94k - $123.9k
...secure, compliant, and scalable SAP environment. Perform security and compliance assessments and support the ongoing evolution of the SAP GRC (Governance Risk Compliance) environment, ensuring risks are accurately identified, assessed, and mitigated. Ruleset Governance &...SuggestedTemporary work- Glocomms is partnered with a leading IT and Cloud Computing firm seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support and enhance the organization's security governance, risk management, and compliance programs. This individual will play...SuggestedRemote workFlexible hours
- ...OR ~4+ years of experience in Risk Management or Third-Party Risk Management (TPRM) with a strong focus on Information Security and GRC; OR ~4+ years of experience in Information Technology with a dedicated focus on Security or GRC. ~ Experience or familiarity with...
$100k - $179k
About this role: Wells Fargo is seeking a Senior Risk Asset Review Specialist within Credit Risk as part of Corporate Risk. Learn more about the career areas and lines of business at wellsfargojobs.com. Credit Risk, which independently oversees the management of credit...Full timeWork experience placementRelocation package- ...Governance, Risk, and Compliance (GrC) Senior Associate Weaver is a full-service national accounting, advisory, and consulting firm with opportunities for professionals in many different fields. We seek to bring a human element to the world of accounting, which includes...Flexible hours
- ...Risk Analyst Weitzman is the most respected provider of retail real estate services in Texas. Our team provides a full range of services, including general brokerage, property management, asset management, and development services. We operate exclusively in Texas' major...Contract workWork at officeFlexible hours
$75k - $137.5k
Position Overview At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all...Full timeTemporary workPart timeWork experience placementWork at office- ...Job Description Job Description Position: Risk / Fraud Analyst Reports To: Director of Risk Direct Reports: None Description Summary: Under general supervision, the risk analyst position is an individual contributor to a department responsible for the...Work at officeImmediate startWeekend work
- ...to support the evolution of our corporate Information Security GRC team. A specific focus will be on defining processes and implementing... ...or have equivalent experience A Day In The Life Of a Risk Analyst: Working with a focus to level-up Information Security...For contractorsFlexible hours
- .... About the Role We are building and scaling a high-performance consumer lending platform and are looking for a Fraud Risk Analyst to help protect the business from identity fraud, first-party fraud, and credit abuse. This role sits at the intersection of fraud,...Work at officeVisa sponsorship
$105.4k - $124k
...from Day One. JOB DESCRIPTION NOTE: This position is not eligible for current or future visa sponsorship. The Fraud Risk Analyst develops data-driven insights and strategies that strengthen fraud prevention, detection, and operational performance across...Temporary workWork experience placementWork at officeLocal area3 days per week$105.4k - $124k
...Fraud Risk Analyst 4 At U.S. Bank, we're on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our...Temporary workWork experience placementWork at officeLocal areaShift work3 days per week- ...The Risk Analyst will support clients and executive/market leadership by implementing insurance solutions for the organization. Successful implementation is based on a deep understanding of the business model of the organization, a clear understanding of risk strategies...Hourly payH1bWork at officeLocal areaVisa sponsorshipWork visaFlexible hours
- ...technologies to deliver moments that matter. Summary Professional analyst role that supports the Enterprise Risk Management (ERM) program... ...management workflows and reporting. Acts as SME for RMIS and GRC applications. Performs other duties as assigned. Education...Full timeWork at officeLocal area2 days per week3 days per week
- ...documentation and required research.Conduct routine interviews with suspects and witnesses.Completes a SAR when applicable. The Sr. Fraud Analyst is directly responsible for the evaluation and decision to file suspicious activity reports on cases assigned to them.Identify and...Local areaImmediate startDay shift
- Take a Huge step in your career and join Worldwide Flight Services. WFS employs over 22,200 of the finest professionals in ground handling across a global network of more than 170 locations and 22 countries on five continents. A career with us opens up a world of opportunities...Full timePart timeWork at officeLocal areaWorldwide
- Job Title This position leads project submissions for regulatory approvals and acts independently to identify and resolve problems. This new team member will apply advanced regulatory expertise to guide cross-functional partners and demonstrate strategic thinking and...For contractors
$141k - $192k
About Altruist Altruist is transforming the multi-trillion dollar wealth management industry by building an AI platform for wealth professionals. We partner with financial advisors nationwide, empowering them to grow, optimize time and resources, and deliver superior outcomes...Work at officeImmediate startShift work3 days per week- GEICO is seeking an SIU Major Case Investigator to conduct investigations into large-scale fraud across multiple jurisdictions, assessing claims and exposure. You will coordinate investigative resources, gather evidence, and ensure compliance with company policies while...
- Job Description: We are looking for an energetic and self-motivated Regulatory Affairs professional who will provide global regulatory expertise and strategic leadership to our IVD product development teams. This position is focused on pre-market development activities...Work experience placementWork at office
- In this role, the Director will support the strategic development and execution of business by building and proactively managing strong export and import compliance programs in accordance with applicable laws, regulations and the company policy requirements. The Director...Full timeWork at office
- Compliance Director Job Duties: Accomplishes compliance human resource strategies by determining accountabilities; communicating and enforcing values, policies, and procedures; implementing recruitment, selection, orientation, training, coaching, counseling, disciplinary...
- Benefits Benefit highlights: 11 Paid Holidays, 15+ days of PTO, 401k Matching, Health Benefits, and more! Under supervision of manager or designee, the Fraud Investigator for PlainsCapital Bank accumulates information regarding initial stages of external investigations...Work at office
- ...Model Risk Analyst Sunflower Bank is seeking a Model Risk Analyst to join its Enterprise Risk Management Department. The Analyst will be responsible for supporting the bank-wide Model Risk Management (MRM) program, focusing on the annual assessment process, maintaining...
$60.2k - $107.4k
...help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together. The Model Risk Analyst will be responsible for executing on model governance and model validations in alignment with the Bank's Model Risk Management ("...Minimum wageFull timeWork experience placementLive inWork at officeLocal areaRemote workMonday to FridayShift work3 days per week- Healthcare Fraud Investigator Employment Type: Full-Time, Mid-Level Department: Litigation Support CGS is seeking a Healthcare Fraud Investigator to provide Legal Support for a large Government Project in Nashville, TN. The candidate must take the initiative to ask questions...Full timeWork experience placementWork at officeLocal area
- Husch Blackwell in Dallas, TX is seeking a Conflicts Counsel responsible for identifying and resolving conflicts of interest for new and existing business. The ideal candidate will have a Juris Doctor, be experienced in conflicts at a large law firm, and proficient in ...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!

