Information Security GRC Analyst
University of Kentucky
Beyond Blue Job Posting Title:
Information Security GRC Analyst Requisition Number:
R-000003023 Department Name:
Executive Director, Governance, Risk, and Compliance Work Location:
Remote-KY Grade Level:
10 Type of Position:
Regular Position Time Status:
Full time Equivalency Link Shift:
Days (United States of America) Job Description:
Job Summary Responsible for supporting IT governance, risk management, and compliance (GRC) activities across the organization. Provides monitoring, documentation, and reporting to ensure alignment with policies, regulatory requirements, and industry standards. Assists in risk assessments, compliance reviews, and audit preparation. Coordinates with IT teams, business stakeholders, and vendors to support security control implementation. Contributes to process improvements and helps maintain the organization's overall security posture. Essential Functions • Supports governance activities by documenting IT policies, procedures, and compliance evidence. • Assists in conducting risk assessments and compliance reviews for systems, applications, and vendors. • Monitors security and compliance metrics, reporting findings to senior analysts or management. • Tracks remediation of identified risks and follows up with stakeholders to ensure timely resolution. • Prepares materials for internal and external audits, supporting audit readiness and evidence collection. • Collaborates with IT and business teams to ensure adherence to regulatory requirements (HIPAA, SOX, PCI-DSS, GDPR, etc.). • Assists in evaluating third-party vendor contracts for security and compliance requirements. • Contributes to security awareness and compliance training efforts for employees and staff. • Participates in continuous improvement of GRC processes and documentation practices. • Performs other duties as assigned. Education Requirement: Bachelor's degree in cybersecurity, computer science, or a related field Experience Requirement: 2+ years of experience in cybersecurity, computer science, or a relevant area An equivalent combination of education and experience may be considered. All experience must be paid and in the same related field. Part-time and PRN experience will be prorated based on hours worked per week. Volunteer work and internships for academic credit are not counted. Certifications & Licensures: N/A Working Conditions A. Lifting, pushing, and/or pulling objects up to 50lbs: 2. Occasional (< 10% of the time) B. Lifting, pushing, and/or pulling objects over 50lbs: 1. Never C. Standing or walking with objects up to 10lbs: 2. Occasional (< 10% of the time) D. Standing or walking with objects up to 25lbs: 1. Never E. Sitting at computer workstation for extended periods: 4. Regular (> 50% of the time) F. Risk of back injury from moving, lifting or positioning patients, equipment, or materials: 1. Never G. Repetitive motion: 3. Intermittent (10% - 50% of the time) H. Working at heights above 4 feet: 1. Never I. Working in confined spaces: 1. Never J. Risk of injuries from use of equipment on the job: 1. Never K. Job-related travel: 2. Occasional (< 10% of the time) L. Loud noises: 1. Never M. Temperature extremes: 1. Never N. Hazardous chemicals and fumes including waste: 1. Never O. Radiation: 1. Never P. Burns: 1. Never Q. Cuts/Punctures: 1. Never R. Bloodborne/airborne pathogens: 1. Never S. Recombinant DNA or viral vectors: 1. Never T. Combative/violent people: 1. Never U. Animal handling (including carcasses): 1. Never V. Please specify other(s) and amount of exposure (i.e. Occasional, Intermittent or Regular): N/A Physical Demands This position requires regular sitting at a computer workstation for extended periods of time; performing tasks with intermittent repetitive motion (such as typing); and occasionally standing or walking with objects weighing up to 10 pounds, as well as lifting, pushing, and/or pulling objects weighing up to 50 pounds. Our University Community We value the well-being of each of our employees and are dedicated to creating a healthy place for everyone to work, learn and live. In the interest of maintaining a safe and healthy environment for our students, employees, patients and visitors, the University of Kentucky is a Tobacco & Drug Free campus. The University follows both the federal and state Constitutions as well as all applicable federal and state laws on nondiscrimination. The University provides equal opportunities for qualified persons in all aspects of institutional operations and does not discriminate on the basis of race, color, national origin, ethnic origin, religion, creed, age, physical or mental disability, veteran status, uniformed service, political belief, sex, sexual orientation, gender identity, gender expression, pregnancy, marital status, genetic information or social or economic status. Any candidate offered a position may be required to pass pre-employment screenings as mandated by University of Kentucky Human Resources. These screenings may include a national background check and/or drug screen.
Information Security GRC Analyst Requisition Number:
R-000003023 Department Name:
Executive Director, Governance, Risk, and Compliance Work Location:
Remote-KY Grade Level:
10 Type of Position:
Regular Position Time Status:
Full time Equivalency Link Shift:
Days (United States of America) Job Description:
Job Summary Responsible for supporting IT governance, risk management, and compliance (GRC) activities across the organization. Provides monitoring, documentation, and reporting to ensure alignment with policies, regulatory requirements, and industry standards. Assists in risk assessments, compliance reviews, and audit preparation. Coordinates with IT teams, business stakeholders, and vendors to support security control implementation. Contributes to process improvements and helps maintain the organization's overall security posture. Essential Functions • Supports governance activities by documenting IT policies, procedures, and compliance evidence. • Assists in conducting risk assessments and compliance reviews for systems, applications, and vendors. • Monitors security and compliance metrics, reporting findings to senior analysts or management. • Tracks remediation of identified risks and follows up with stakeholders to ensure timely resolution. • Prepares materials for internal and external audits, supporting audit readiness and evidence collection. • Collaborates with IT and business teams to ensure adherence to regulatory requirements (HIPAA, SOX, PCI-DSS, GDPR, etc.). • Assists in evaluating third-party vendor contracts for security and compliance requirements. • Contributes to security awareness and compliance training efforts for employees and staff. • Participates in continuous improvement of GRC processes and documentation practices. • Performs other duties as assigned. Education Requirement: Bachelor's degree in cybersecurity, computer science, or a related field Experience Requirement: 2+ years of experience in cybersecurity, computer science, or a relevant area An equivalent combination of education and experience may be considered. All experience must be paid and in the same related field. Part-time and PRN experience will be prorated based on hours worked per week. Volunteer work and internships for academic credit are not counted. Certifications & Licensures: N/A Working Conditions A. Lifting, pushing, and/or pulling objects up to 50lbs: 2. Occasional (< 10% of the time) B. Lifting, pushing, and/or pulling objects over 50lbs: 1. Never C. Standing or walking with objects up to 10lbs: 2. Occasional (< 10% of the time) D. Standing or walking with objects up to 25lbs: 1. Never E. Sitting at computer workstation for extended periods: 4. Regular (> 50% of the time) F. Risk of back injury from moving, lifting or positioning patients, equipment, or materials: 1. Never G. Repetitive motion: 3. Intermittent (10% - 50% of the time) H. Working at heights above 4 feet: 1. Never I. Working in confined spaces: 1. Never J. Risk of injuries from use of equipment on the job: 1. Never K. Job-related travel: 2. Occasional (< 10% of the time) L. Loud noises: 1. Never M. Temperature extremes: 1. Never N. Hazardous chemicals and fumes including waste: 1. Never O. Radiation: 1. Never P. Burns: 1. Never Q. Cuts/Punctures: 1. Never R. Bloodborne/airborne pathogens: 1. Never S. Recombinant DNA or viral vectors: 1. Never T. Combative/violent people: 1. Never U. Animal handling (including carcasses): 1. Never V. Please specify other(s) and amount of exposure (i.e. Occasional, Intermittent or Regular): N/A Physical Demands This position requires regular sitting at a computer workstation for extended periods of time; performing tasks with intermittent repetitive motion (such as typing); and occasionally standing or walking with objects weighing up to 10 pounds, as well as lifting, pushing, and/or pulling objects weighing up to 50 pounds. Our University Community We value the well-being of each of our employees and are dedicated to creating a healthy place for everyone to work, learn and live. In the interest of maintaining a safe and healthy environment for our students, employees, patients and visitors, the University of Kentucky is a Tobacco & Drug Free campus. The University follows both the federal and state Constitutions as well as all applicable federal and state laws on nondiscrimination. The University provides equal opportunities for qualified persons in all aspects of institutional operations and does not discriminate on the basis of race, color, national origin, ethnic origin, religion, creed, age, physical or mental disability, veteran status, uniformed service, political belief, sex, sexual orientation, gender identity, gender expression, pregnancy, marital status, genetic information or social or economic status. Any candidate offered a position may be required to pass pre-employment screenings as mandated by University of Kentucky Human Resources. These screenings may include a national background check and/or drug screen.
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Information Security GRC Analyst in United States vacancy
$114k - $139k
Reno, NV / Remote - USAdministration - Enterprise Information Security /Full-Time /RemoteAs a GRC Security Analyst, you will serve as a fully qualified, experienced professional responsible for ensuring Clear Capital adheres to all relevant security standards, regulations...SuggestedFull timeTemporary workWork experience placementRemote work- ...Title: Information Security GRC Analyst Location: Remote, EST Time Duration: 7+ Months JOB DESCRIPTION Responsibilities: Support the development and implementation of an enterprise-wide business continuity program. Execute tasks associated...SuggestedRemote work
- Senior GRC Information Security Systems Analyst Location: Minneapolis, MN (Preferred) or one of the following office locations: Anchorage, AK Boise, ID Chicago, IL Costa Mesa, CA Dallas, TX Denver, CO Des Moines, IA Minneapolis, MN Missoula, MT New York, NY Palo Alto...SuggestedFull timeContract workWork at office
- Mercury is seeking an Information Security GRC Analyst to mature security, risk, and compliance programs and build guardrails for business continuity and resilience. You will lead risk assessments, partner with cross‑functional teams, and drive audit readiness across SOC...Suggested
- Old Republic, based in Chicago, is seeking a Security Analyst to support the Business Information Security Officer program across operating centers. The role emphasizes... ...assist in risk assessments, control evaluations, and GRC activities, helping maintain security controls and...Suggested
- Ultra Clean Technology in Austin, TX is seeking an Analyst III for IT Information Security. This role involves enhancing the company's security posture through various compliance, risk management, and governance tasks. The ideal candidate will have a strong background in...
$117.2k - $176.7k
...Salesforce.The ExperienceLocation: San Francisco, CAThe Senior Security GRC Analyst role is part of our Assurance team, sitting at the... ...external auditors, scheduling walkthroughs, responding to information requests, and coordinating responses to findings.You're Our...Full timeWork at office$209.25k - $271.71k
...shared experiences for everyone.As a member of the Roblox Security Governance, Risk, and Compliance (GRC) team, you will play a key role in supporting the... ...organization — empowering every builder to make risk-informed decisions by establishing a portfolio of governing...Full timeWork experience placementH1bWork at officeLocal areaVisa sponsorshipMonday to Friday- ...Reedsburg Area Medical Center is looking for an IT Security Analyst to help safeguard our technology, support innovative security solutions, and play a key role in protecting the information that keeps our organization running. This position will be 100% onsite in...Full time
- ...The Sr. Information Security Analyst is responsible for assessing information risk and facilitates remediation of identified vulnerabilities for IT security and IT risk across the enterprise. Assesses information risk and facilitates remediation of identified vulnerabilities...Full time
$110k - $130k
...Purpose Responsible for performing risk assessment, security analysis, and developing remediation plans Essential Duties... ...needed Preferred Skills Minimum 4+ years of experience in information technology security or equivalent combination of education and...Full timeRemote workFlexible hours- ...IT Security Analyst needs 3+ years of experience in IT or IS or Compliance, health sector IT Security Analyst requires: SOC 1-2,... ...financial services organization or organizations with similar information security needs and requirements Certified Information...Full time
$80k - $100k
...Blackstone. Learn more at . Mission Statement The IT Security Analyst supports the organization’s cybersecurity operations by... ...endpoint, identity, and cloud security tools such as security information and event management (SIEM), email security platforms, endpoint...Hourly payFull timeWork at office$95k - $105k
...support, and application engineering expertise. For more information on Dexter Magnetic Technologies, please visit: . Basic Purpose... ...the Position: We are seeking a skilled Information Security Analyst to identify, investigate, and mitigate potential security...Permanent employmentFull timeTemporary workWork experience placementFlexible hours$29.94 - $32.04 per hour
...The IT Security Analyst will assist the Enterprise IT Security Risk Management Team in monitoring, analyzing, and responding to security... ...those who are served in person and speak clearly to communicate information to end-users and colleagues. Must be able to have vision...Full timeWork at officeMonday to Friday$90k - $115k
...of Defense restrictions. Our Senior Security Policy Analyst is responsible for developing,... ...experience in governance, risk, and compliance (GRC) operations, and excels at clear... ...support AI governance awareness programs to inform employees about responsible AI use, ethical...Full timeContract workFor contractorsWork at officeLocal areaImmediate startRemote work3 days per week- ...Summary of Purpose: The Senior IT Security Analyst serves as INPO's primary cybersecurity risk... ...risks into executive-level insights that inform prioritization, investment and strategic... ...) and Governance, Risk and Compliance (GRC) platforms (e.g. ServiceNow GRC, X-Analytics...Full timeWork experience placement
- ...in the development and implementation of security policies and standards for IT related... ...e.g., Internal Revenue Service, Federal Information Processing (FIPS), National Institute of... ...Officer, Security Consultant, or Security Analyst for a state or federal agency or large corporation...Contract workLocal area
$95k - $115k
...technologies to make this possible, with the ultimate goal of enabling human life on Mars.SECURITY ANALYST (SOC)As a Security Analyst at SpaceX, you are on the frontline of our information security operations. You will be responsible for analyzing and responding to threats...Permanent employmentTemporary workRemote workWeekend work- ...passion for excellence and genuine care for the people making it possible.As a member of the Engagement Solutions Business Information Security Team, Analysts are responsible for partnering with business and technology teams to identify, assess, and mitigate information...Full timeInternshipFlexible hours
- ...motivated candidate to join our talented Team. Job Title: IT Security Analyst Senior. Location: Atlanta, GA. About the Role:We are... ...summary:Performs all procedures necessary to ensure the safety of information systems assets and to protect systems from intentional or...For contractorsWork experience placement
- ...deliver vital public benefits efficiently, securely, and at scale. At Vimo, we... ...About The Role: As a Security Analyst, you will be a crucial member of our Security... ...colleagues, with respect for each other. Information Security & Data Protection: This...
- ...IT Governance/Risk/Compliance Analyst position offers a dynamic... ...compliance, and enhancing our security posture through robust frameworks... ...Work From Day One:The IT GRC Analyst plays a critical role... ...within a related area of study. Information security related training or...Full time
- Summary/ObjectiveThe Information Security GRC Analyst, will report to the Director, IT Compliance. This role will interact with multiple departments, manage compliance readiness, provide support for our central GRC repository, and conduct risk/gap assessments based on...Full timeCasual workWork at officeLocal areaMonday to FridayAfternoon shift
$134.16k - $213.6k
...Washington D.C., London and Amsterdam.About the Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization,... ...focused on enabling the business by proactively managing information security risks and maintaining effective controls....Contract workWork experience placementWork at officeLocal area- POSITION SUMMARYThe Sr. Analyst - IT Security designs, implements, and supports enterprise security technologies and processes that protect information assets in hybrid (cloud + on-premises) environments. Primary duties include engineering and hardening security platforms...Full time
- ...Job Description Job Summary: This position is a lead security analyst within IT Security Governance and IT Security Operations.IT... ...requests • Monitor the effectiveness of the Enterprise wide information security program • Provide data for audit indicating changes...Full timeWork experience placement
$145k - $200k
Washington, D.C.Information Security /Full-time /On-siteA World-Changing CompanyPalantir builds the world’s leading software for data-driven... ...missing children, and more.The RoleAs a Defensive Security Analyst, you are responsible for the security of Palantir’s people and...Full timeWork experience placementWork at officeRemote workWork from homeRelocation package$100k - $105k
...Job Title: Information Security Analyst (SOC) Primary Location: Remote Position Type: Direct Hire Overview TalentFish is casting a line for an Information Security Analyst. This is a Direct Hire role, fully remote. This position exists to strengthen a growing...Full timeWork experience placementRemote workVisa sponsorship- ...Job Description SUMMARY : Design, installand manage security mechanisms that protect the computer network andinformation systems... ...ensure proper functionality Research, develop and recommend information security policies, procedures and bestpractices Plan and...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security GRC Analyst. Be the first to apply!
Related searches
- remote data analyst intern United States
- virtual data analyst United States
- compliance data analyst United States
- entry level information security analyst United States
- data analyst excel United States
- lead data analyst United States
- information security analyst United States
- data warehouse analyst United States
- data analyst United States
- data protection analyst United States



