Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Analyst Information Security

MCPc, Inc.

Title: Information Security Analyst

Department: Information Technology

Position Summary: The Information Security Analyst is responsible for independently executing and supporting key components of MCPC’s security, risk, and compliance program. This role reviews the organization’s systems, facilities, processes, and departments to assess security posture and reduce risk across operations, systems, networks, data, and the endpoint lifecycle supply chain.

This position plays an active role in internal audits, policy development, risk management, access governance, and third-party risk management. The Information Security Analyst partners closely with IT, Operations, and business stakeholders and directly supports MCPC’s commitment to protecting client data and maintaining trust by ensuring the confidentiality, integrity, and availability of information assets and services.

Responsibilities:

  1. Security Operations & Risk Management
  2. Identify, document, and assess security events, risks, and vulnerabilities, including defining remediation recommendations and tracking action plans to closure.
  3. Perform vulnerability and risk assessments and work with IT teams to drive remediation efforts, access reviews, and system hardening activities.
  4. Monitor security alerts and events, contributing to the ongoing tuning and improvement of DLP, SIEM, SOAR, and EDR detections.
  5. Evaluate emerging security threats and vulnerabilities and assess the effectiveness of existing security controls.
  6. Support secure adoption of new technologies, including Artificial Intelligence solutions, by identifying risks and recommending appropriate safeguards.
  7. Audits, Compliance & Policy
  8. Plan and execute internal security audits of MCPC systems, processes, and facilities to identify control gaps, risks, and improvement opportunities.
  9. Draft, review, and maintain information security policies, standards, and procedures aligned with industry best practices and regulatory requirements.
  10. Act as a primary security point of contact for MCPC employees and external parties during audits, assessments, and security reviews.
  11. Monitor and report on compliance with security awareness initiatives, phishing simulations, and related training programs.
  12. Maintain and enhance MCPC’s risk register, including risk analysis, prioritization, mitigation strategies, and progress tracking.
  13. Vendor & Supply Chain Risk Management
  14. Conduct security risk assessments for vendors and partners during onboarding and throughout the vendor lifecycle.
  15. Evaluate third-party security controls, documentation, and attestations to identify and document risk.
  16. Monitor vendors and partners for reported security incidents, events, and supply chain risks.
  17. Support vendor risk management activities related to endpoint lifecycle management, IT asset management (ITAM), and IT asset disposition (ITAD) services.
  18. Incident Response & Resilience
  19. Maintain, document, and participate in testing of Incident Response, Disaster Recovery, and Business Continuity plans.
  20. Participate in security incident response activities, including investigation, coordination, documentation, and post-incident reviews.
  21. Provide recommendations to improve incident response readiness and operational resilience.
  22. Program & Administrative Support
  • Collaborate with internal departments to ensure security requirements are embedded into operational and business processes.
  • Lead or contribute to security working sessions and document meeting agendas, decisions, and action items.
  • Contribute to continuous improvement initiatives across the MCPC Security Program.
  • Other tasks as assigned.

Key Outcomes of this Position

  • The continuous improvement of MCPC’s Security Program.
  • Be a member of a skilled, engaged, and forward-looking security team
  • Reduction in delta between vulnerability discovery and remediation
  • Measurable increase in items analyzed in MCPC’s risk register

Required Qualifications:

  • 2–5 years of experience in Information Security, Risk Management, Compliance, Internal Audit, or Security Operations.
  • Bachelor’s degree in Information Security, Information Technology, Computer Science, or a related field, or equivalent professional experience.
  • Working knowledge of:
    • Entra ID / Active Directory
    • SCCM / MECM / Intune
    • Patch and endpoint lifecycle management
    • CVSS vulnerability scoring and remediation prioritization
    • Data disposition standards such as NIST 800 88 and NAID AAA
  • Experience working with industry security frameworks such as AICPA SOC 2, ISO 27001, NIST, and CIS.
  • Strong written communication skills for audit reporting, policy drafting, and risk documentation.
  • Ability to communicate security concepts effectively to both technical and non technical audiences.
  • Proven ability to work independently and cross functionally with IT, Operations, and business teams.

    Preferred Qualifications :

  • Experience leading or independently executing internal security audits or assessments.
  • Hands-on experience with third-party risk management programs.
  • Professional certifications such as Security+, Azure Fundamentals, CRISC, CISA, or similar.

Physical Requirements:

  • The physical requirements of this job include frequent sitting, occasionally walking around, carrying light objects, grasping, and reaching for things, rare stooping/crouching, clarity of vision, speaking and listening ability with or without reasonable accommodation.
  • Ability to occasionally drive or travel to MCPC’s satellite offices in the Greater Cleveland Area, Grand Rapids Michigan, Erie PA, and Kansans City MO, and any other facility.

    Who We Are: At MCPC, we pride ourselves on being Outcome Engineers, delivering end-to-end solutions and expertise that empower businesses to thrive in the digital age. We combine top-tier services and cutting-edge technology solutions to solve complex business challenges, ensuring data security, cost efficiency, and seamless digital transformation. Our commitment to our clients requires providing quality people that allow us to excel at exceeding our clients’ expectations. The MCPC employee experience is built on a foundation of collaboration, innovation, and growth. We offer the balance of a close-knit workforce and pathways for professional growth. Our team members are encouraged to bring their unique perspectives and ideas to the table. Join us and be part of a principled, quality-driven, respectful, and innovative team that values continuous improvement and community commitment. Together, we tackle today’s challenges and pioneer solutions for tomorrow.

    Where We Are/Who We Serve: MCPC is a global organization, but we are headquartered in Cleveland, OH, with regional offices in Grand Rapids, MI and Erie, PA, which is a source of pride for everyone here at MCPC. MCPC has a longstanding culture of unwavering commitment to giving back to the communities we serve. (link to our blog)

    What We Do: Endpoint Lifecycle Management

    Advisory Services – MCPC is the go-to resource for all our client’s end user device procurement and service needs. We help address tactical pain points that allow our clients’ workforce to have a seamless and secure environment.

    Configuration and Integration – Custom solutions that fit within a client’s endpoint environment. Ensuring new devices meet the requirements of the client and are ready to be deployed on day 1.

    IT Supply Chain – MCPC offers expert level supply chain services to help clients in the process of assembling, securing, managing, and delivering desk-ready IT inventory.

    Managed Deployment – Coordination of experienced IT technicians ensuring clients’ devices, servers, data, and more are securely delivered, protected, and supported.

    Secure Technology Asset Disposition \- Allows clients to remove old or outdated devices from their environment. Our facility will erase all data to Department of Defense standards and provide reverse logistics to the client as to whether their devices can be repurposed, recycled, or disposed of properly.

    Benefits & Appreciation:

  • 401k matching and ROTH option.
  • Company sponsored events (picnics, cookouts, and volunteering opportunities).
  • Competitive Medical, Dental and Vision package.
  • Company paid Holidays and Paid Time Off.
  • Career paths and advancement.

This job description in no way states or implies that these are the only duties to be performed by the employee occupying this position. Employees will be required to follow any other job-related instructions and to perform other job-related duties requested by their supervisor.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the GRC Analyst Information Security in Brook Park, OH vacancy
  • Gilder Search Group is seeking an Information Security Analyst in Cleveland, Ohio. This role is responsible for executing and supporting security, risk, and compliance initiatives. Key responsibilities include conducting internal audits, managing vendor risk, and monitoring... 
    Suggested

    Gilder Search Group

    Cleveland, OH
    2 days ago
  • Gilder Search Group is seeking an Information Security Analyst in Cleveland, Ohio. The role is responsible for supporting MCPC’s security, risk, and compliance program by assessing systems and processes, executing audits, and enhancing security policies. Candidates should... 
    Suggested

    Gilder Search Group

    Cleveland, OH
    4 days ago
  • $96k - $181k

     ...into Key's broader Cyber Defense function within Corporate Information Security. Cyber Defense's mission is simple: We aim to Deter, Detect,...  ...centric defense. The Senior Insider Threat and Threat Hunting Analyst is a key member of the Cyber Threat Management (CTM) team.... 
    Suggested
    Work at office
    Remote work
    Flexible hours

    Key Bank

    Brooklyn, OH
    2 days ago
  • A technology solutions company is seeking a Business System Analyst in Cleveland, OH. The role requires expertise in GRC and risk management, along with a solid understanding of Business Analyst and System Analyst responsibilities. Candidates should possess good SQL knowledge... 
    Suggested
    Full time

    E*Pro Inc

    Cleveland, OH
    3 days ago
  • $87.8k - $160.9k

     ...the organization. This role involves working closely with IT, security teams, and business units to ensure that our cyber risk posture...  ...as a fieldwork leader to assist clients in employing proper information systems, resources, and controls to maximize efficiencies and... 
    Suggested
    Contract work
    Summer holiday
    Work at office
    Flexible hours

    Ernst & Young Oman

    Cleveland, OH
    1 day ago
  • $71k - $122k

     ...for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law. Qualified individuals with disabilities or... 
    Work at office
    Flexible hours
    Shift work

    Key Bank

    Brooklyn, OH
    3 days ago
  • $96k - $181k

     ...corresponding Business Risk and Control Analysts. This position is responsible for...  ...of business, as well as technology and information security risk oversight for areas of the enterprise...  ...Foundational knowledge of Archer GRC preferred Project management, Agile... 
    Work at office
    Flexible hours
    Night shift

    Key Bank

    Brooklyn, OH
    1 day ago
  • $69k - $105k

     ...Location: 4900 Tiedeman Road, Brooklyn Ohio The Senior Analyst supports the preparation, analysis, and governance of the FR 20...  ...Qualifications & Skills Bachelor's degree in Finance, Accounting, Information Systems, Data Analytics, or related field Experience... 
    Work at office
    Remote work
    Flexible hours

    Key Bank

    Brooklyn, OH
    3 days ago
  • $116k - $216k

     ...to OCC, Federal Reserve, FDIC, CFPB, FFIEC guidance, GLBA (non-security provisions), UDAAP, E-SIGN, Model Risk Management (SR 11-7),...  ...sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other... 
    Contract work
    Work at office
    Flexible hours

    Key Bank

    Brooklyn, OH
    3 days ago
  •  ...reasoned compliance advice and support in the interpretation of regulations and the Bank's policies and procedures and disseminate information on matters affecting regulatory compliance, including consultation with management and teammates on compliance-related issues.... 

    Macpower Digital Assets Edge

    Brook Park, OH
    23 hours ago
  • $57k - $87k

     ...administrative direction, the Compliance Analyst uses knowledge and skills obtained...  ...regulated environment Basic knowledge of securities industry concepts, compliance practices...  ..., national origin, age, genetic information, pregnancy, disability, veteran status... 
    Work at office
    Flexible hours
    Night shift

    Key Bank

    Brooklyn, OH
    12 hours ago
  • $71k - $125k

     .... Leading compliance-related projects and mentoring junior analysts. Applying sound judgment in evaluating complex compliance scenarios...  ...orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other... 
    Odd job
    Work experience placement
    Work at office
    Flexible hours
    Night shift

    Key Bank

    Brooklyn, OH
    4 days ago
  • $71k - $125k

     ...for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law. Qualified individuals with disabilities or... 
    Work experience placement
    Work at office
    Flexible hours
    Night shift

    Key Bank

    Brooklyn, OH
    2 days ago
  • $31.44 - $43.26 per hour

     ...simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and...  ...This opportunity is for a candidate who is passionate about Information Protection and Compliance and has a deep understanding of how... 
    Flexible hours

    Proofpoint

    Cleveland, OH
    4 days ago
  • $71k - $125k

     ...guidance to less experienced Compliance Analysts. The Compliance Officer supports a...  ...for consistency with current banking and securities regulations. Identify process improvement...  ..., national origin, age, genetic information, pregnancy, disability, veteran status... 
    Work at office
    Flexible hours
    Night shift

    Key Bank

    Brooklyn, OH
    2 days ago
  • $71k - $125k

     ...policies and procedures for consistency with current banking and securities regulations. Educate and provide consultative advice on...  ...orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic... 
    Work at office
    Flexible hours

    Key Bank

    Brooklyn, OH
    4 days ago
  • $71k - $125k

     ...for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law. Qualified individuals with disabilities or... 
    Work experience placement
    Work at office
    Flexible hours

    Key Bank

    Brooklyn, OH
    4 days ago
  • $96k - $181k

     ...for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law. Qualified individuals with disabilities or... 
    Work experience placement
    Work at office
    Flexible hours

    Key Bank

    Brooklyn, OH
    12 hours ago
  • $31.44 - $43.26 per hour

     ...The Role This opportunity is for a candidate passionate about Information Protection and Compliance and has a deep understanding of how...  ...working side by side with customers to meet Information Protection security and compliance requirements. Work with internal teams (... 
    Flexible hours

    Proofpoint

    Cleveland, OH
    3 days ago
  • $80k - $150k

     ...Road, Brooklyn Ohio About the Job The Operational Risk Analyst V- Third Party Management resides within Key's Operational...  ...internal/external audits/examinations risk management requests for information, assist in the evaluation of audit/examination findings and... 
    Work at office
    Flexible hours
    Shift work

    Key Bank

    Brooklyn, OH
    1 day ago
  • Affirm is seeking a Compliance Analyst II to support its governance and oversight program. This role involves challenging operations to ensure compliance with federal and state regulations, including managing consumer complaints and supporting process improvement initiatives... 
    Remote job

    Affirm

    Cleveland, OH
    2 days ago
  • First Mutual Holding Company in Lakewood, Ohio, is seeking a Quality Control and Retirement Services Specialist responsible for conducting quality control reviews of retirement accounts to ensure compliance with IRS regulations. This role focuses on accuracy and integrity...
    Work at office

    First Mutual Holding Company

    Lakewood, OH
    3 days ago
  • $96k - $181k

     ...for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law. Qualified individuals with disabilities or disabled... 
    Work experience placement
    Work at office
    Flexible hours
    Night shift
    3 days per week

    Key Bank

    Cleveland, OH
    3 days ago
  • $55k - $141.7k

     ...considerations in all business decisions and able to leverage that information in creating customized customer solutions. Managing Risk -...  ...Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office

    PNC

    Cleveland, OH
    1 day ago
  • $90k

     ...Working closely with insurance carriers, underwriters, and internal producer partners, this individual develops coverage solutions, secures competitive terms, and successfully places business across a broad range of commercial risks. This role is part of the Select... 
    Work at office
    Remote work

    NFP

    Cleveland, OH
    2 days ago
  • $128.1k - $239.6k

     ...Today’s world is fueled by vast amounts of information. Data is more valuable than ever before....  ..., and everyone in EY Information Security has a critical role to play. Join a global...  ...practices. Governance, Risk, and Compliance (GRC) Management: Assist with managing the... 
    Work experience placement
    Summer holiday
    Local area
    Flexible hours

    Ernst & Young Oman

    Cleveland, OH
    4 days ago
  • $165k - $220k

     ...regions. ~ RAPS certification desired Specific Skills: Deep understanding of regulatory authority policies, processes, and information systems, with the ability to apply them to product development, labeling, and pre and postmarket submissions. Strong... 
    Temporary work
    Work visa

    Bausch + Lomb

    Cleveland, OH
    3 days ago
  • $170k - $200k

     ...remember and apply oral and/or written instructions or other information, understand complex problems and collaborate/explore alternative...  ...candidates for this position may be required to undergo a security screening, including a criminal records check. To learn... 
    Full time
    Temporary work
    Work at office
    Local area
    Immediate start

    Enbridge

    Cleveland, OH
    1 day ago
  • Kurv is looking for a Compliance Specialist to be based in Cleveland, Ohio. This role entails ensuring compliance with card network rules and regulatory requirements within a payment processing environment. The ideal candidate will have 2-5 years of experience in payments...

    Kurv

    Cleveland, OH
    2 days ago
  • Manager, Healthcare Compliance & Accreditation At The Centers, meaningful work is grounded in a culture where people feel valued. As a 2026 USA TODAY Top Workplaces winner, the organization is nationally recognized, based entirely on employee feedback, for trust, purpose...
    Casual work
    Work at office

    The Centers

    Cleveland, OH
    6 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Analyst Information Security. Be the first to apply!