IT GRC Analyst
$55 - $80 per hourMedasource
IT GRC Analyst Remote, USA Compensation: $55 - $80 per hour Contract Length: 6-month Contract to Hire Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under heavy audit or incident response activity. Start Date: ASAP ABOUT THE ROLE Our client is a healthcare organization providing primary and post-acute care services to seniors across assisted living, life plan communities, independent living, skilled nursing, and long-term care settings nationwide. The organization is value-driven, offering competitive pay, comprehensive benefits, and flexible scheduling, with a mission to improve the health, happiness, and dignity of the seniors it serves. We are seeking an IT GRC Analyst to join the IT Security and Governance team on a 6-month contract-to-hire basis, working remotely within the USA. The IT GRC Analyst will play a key role in supporting the organization's IT Governance, Risk, and Compliance (GRC) program, focusing on security governance, regulatory compliance, risk management, audit readiness, policy administration, and control monitoring. This position collaborates with IT, Security, Privacy, Compliance, Legal, and business stakeholders to enhance the organization's security posture and ensure compliance with healthcare regulations such as HIPAA, SOC 2, and NIST. The role also contributes to business continuity, disaster recovery, and AI governance initiatives. Up to 10% travel may be required. WHAT YOU'LL DO
- Perform information security risk assessments and document identified risks, control gaps, and remediation recommendations
- Support administration and maintenance of the organization's IT Governance, Risk, and Compliance (GRC) program
- Assist with development, review, maintenance, and periodic evaluation of security policies, standards, procedures, and guidelines
- Coordinate evidence collection, control validation, documentation activities, and remediation tracking for internal and external audits and assessments
- Maintain and map security controls against applicable regulatory, contractual, and industry frameworks (e.g., HIPAA, SOC 2, NIST, CMS, URAC)
- Assist with security exception review processes and document risk acceptance decisions
- Maintain compliance metrics, risk registers, issue logs, corrective action plans, and other governance documentation
- Collaborate with technology teams to identify and remediate security vulnerabilities, control deficiencies, and compliance gaps
- Analyze emerging cybersecurity, privacy, and regulatory requirements and provide recommendations for program improvements
- Support security awareness, compliance training, and organizational education initiatives
- Support security governance forums, risk committees, and related working groups through agenda preparation, risk presentation, meeting facilitation, and documentation of decisions and action items
- Facilitate risk intake, scoring, prioritization, escalation, and ongoing monitoring activities in accordance with organizational risk management procedures
- Support administration, data quality, workflow management, reporting, and continuous improvement of GRC tooling and platforms
- Participate in security and compliance reviews for new technologies, systems, projects, AI initiatives, and significant change requests to identify regulatory and security requirements early in the lifecycle
- Support business continuity, disaster recovery, resilience planning, testing, and associated governance activities
- Support AI governance, risk assessments, control validation, and compliance reviews for approved AI technologies and use cases
- Develop and maintain key risk indicators (KRIs), key performance indicators (KPIs), and executive reporting packages supporting leadership and governance oversight
- Perform other related duties as assigned to support departmental and organizational objectives
- 3-5 years of experience in information security, risk management, compliance, audit, or GRC functions
- Healthcare industry experience required
- Strong understanding of information security governance, risk management, compliance, and control frameworks
- Knowledge of healthcare regulatory requirements, including HIPAA Privacy and Security Rules
- Familiarity with industry frameworks and standards such as NIST CSF, SOC 2, HIPAA, and CIS
- Experience conducting risk assessments, compliance reviews, and control evaluations
- Understanding of third-party risk management and vendor security review processes
- Ability to interpret laws, regulations, contractual requirements, and industry standards
- Strong analytical, organizational, and problem-solving skills with exceptional attention to detail and critical thinking
- Experience preparing audit-ready documentation and maintaining evidence repositories
- Excellent written and verbal communication skills, including executive-level reporting and presentations
- Ability to prioritize multiple assignments and manage deadlines in a dynamic healthcare environment
- Proficiency with Microsoft Office applications, governance tools, and compliance management platforms
- Bachelor's degree in Information Security, Information Technology, Cybersecurity, Computer Science, Healthcare Informatics, or a related field (or equivalent experience)
- Experience supporting HIPAA, SOC 2, CIS, NIST Cybersecurity Framework, or similar regulatory and security frameworks
- Experience participating in audits, risk assessments, control testing, or compliance monitoring activities
- Competitive pay and comprehensive benefits
- Flexible scheduling and remote work
- Opportunity to contribute to a mission-driven organization improving the lives of seniors
- Professional growth in a dynamic healthcare environment
- Potential for contract-to-hire conversion
#LI-CM1 Disclaimer: Brooksource, Medasource, and Calculated Hire are part of the Eight Eleven Group family of companies and operate under Eight Eleven Group, LLC. All employees receive the same benefits, policies, and terms of employment.
EEO:
We are committed to creating an inclusive environment for all employees and applicants. We do not discriminate on the basis of race, color, religion, creed, sex, sexual orientation, gender identity or expression, national origin, ancestry, age, disability, genetic information, marital status, military or veteran status, citizenship, pregnancy (including childbirth, lactation, and related conditions), or any other protected status in accordance with applicable federal, state, and local laws.
Benefits & Perks:
Eight Eleven Group offers competitive medical, dental, vision, Health Savings Account, Dependent Care FSA, and supplemental coverage with plans that can fit each employee's needs. We offer a 401k plan that includes a company match and is fully vested after you become eligible, paid time off, sick time, and paid company holidays. We also offer an Employee Assistance Program (EAP) that provides services like virtual counseling, financial services, legal services, life coaching, etc.
Pay Disclaimer:
The pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. Share This Job
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the IT GRC Analyst in United States vacancy
$80.05k - $165k
About the Role:Responsible for leading Cybersecurity and IT governance, risk, and compliance efforts, including the establishment and... ...prioritization, assignment, remediation tracking, and closure of GRC-related issues in ServiceNow, ensuring timely resolution, appropriate...SuggestedFull timeWork at office- ...Overview The IT GRC Analyst operates within the enterprise Cybersecurity Operations function and supports the Information Technology, Information Systems, and other technology teams aligned under the Chief Information Officer. This role executes governance, risk, and...SuggestedWork at officeRemote work
- Job Summary:The IT Governance, Risk, and Compliance (GRC) Lead Analyst serves as a subject matter expert responsible for leading the design, implementation, maturity, and continuous improvement of the organization’s IT governance, risk management, and compliance programs...SuggestedFull timeWork at office3 days per week
- ...The GRC Cybersecurity Analyst III is a senior level contributor responsible for leading ICCU’s Governance, Risk, and Compliance (GRC) initiatives within the scope of the IT domain. This role provides strategic oversight of cyber and IT operational risk assessments, regulatory...SuggestedFull timeWork experience placementWork at office
- ...TXEmployment Type: Full TimeIndustry: Computer SoftwareClient: WiproContact: Meghana GorusuCompany: SRI Tech SolutionsJob Title: Technical GRC Analyst with SQL DBDuration: Full timeLocation: Austin TX - Locals onlyJob Description:Skills: Technical GRC Analyst and SQL DBStrong...SuggestedLocal area
- ...Insurance, Vision Insurance, Employee Assistance Program, Comprehensive and Interactive Wellness Program Job Summary: The IT GRC Analyst is responsible for supporting Globalstar's information security governance, risk, and compliance programs. This role executes...Temporary workWork experience placementWork at office
- ...The Cybersecurity Vulnerability Governance Analyst is responsible for governing and... ...serves as the bridge between Cybersecurity, IT Operations, Infrastructure, Cloud, Application... ...vulnerability management programs. Experience with GRC platforms such as Archer, ServiceNow,...Full timeImmediate startFlexible hours
$99k - $225k
Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical...Full timeContract workPart timeWork at officeLocal areaRemote work- ...equivalent relevant experience may be considered.5+ years of progressive experience in cybersecurity governance, risk, compliance (GRC), IT audit, risk management, control assurance, or related disciplines.Experience assessing control design, operating effectiveness,...Permanent employmentFor contractors
- Description The Senior IT GRC Analyst leads policy development and audit execution within CMG's IT Governance, Risk, and Compliance program, with particular emphasis on CMG's upcoming SOC 2 readiness effort. This role works closely with the GRC team and the broader...Work at officeRemote work
- Holland & Knight in Tampa, FL seeks an IT Enterprise Risk Analyst to manage the firm's GRC and IT risk programs with a focus on information security. The candidate will support policy development, conduct risk assessments, and manage third-party security due diligence....
- Trustmark in Ridgeland, MS is seeking an IT GRC Analyst to oversee governance, risk, and compliance activities. The role includes coordinating compliance efforts, executing IT assessments, and developing policies. The ideal candidate will hold a Bachelor's in information...Remote job
$55 - $60 per hour
...Type: 1099, C2CIndustry: Computer SoftwareClient: WiproContact: Meghana GorusuCompany: SRI Tech SolutionsTitle: SaaS Engineer ( GRC Analyst with IAM )Location: Phoenix AZ onsite onlyDuration: ContractKey ResponsibilitiesPerform security assessments of SaaS and third‑party...Hourly pay$55 - $80 per hour
IT GRC Analyst Remote, USA Compensation: $55 - $80 per hour Contract Length: 6-month Contract to Hire Hours: Standard full-time schedule, 8 hours/day, 5 days/week; potential for extended hours under heavy audit or incident response activity. Start Date: ASAP ABOUT...Hourly payFull timeContract workWork at officeImmediate startRemote workFlexible hours- ...controls programs within the Financial Services unit. The role emphasizes incident resolution, controls documentation, and coordinating IT infrastructure projects across teams. The ideal candidate collaborates with stakeholders to drive process improvements, ensure...
- ...Motor Corporation, USA is seeking a Governance and Risk Compliance Analyst in Marietta, GA to partner with privacy and website teams. You... ...cookie consent controls, GPC activities, and broader Cyber GRC initiatives while contributing to information security infrastructure...
- ...Cybersecurity GRC Analyst Cleveland Brothers, the largest Cat® dealer in Pennsylvania, northern West Virginia and western Maryland, has... ...remediation activities, and compliance status. Partner with IT, Cybersecurity, and business teams to facilitate and ensure controls...Temporary workImmediate start
- ...Industries is seeking an experienced Governance, Risk & Compliance (GRC) Analyst to own and mature the cybersecurity GRC program across the... ...broad requirements into actionable controls and work daily with IT, Cybersecurity, Physical Security, and Manufacturing to raise...
- Confiz is hiring a GRC Data Analyst / Program Management professional to advance the privacy program by partnering with business and IT teams, leading privacy-related projects, identifying risks and required controls, ensuring alignment with applicable privacy laws and...Remote workMonday to FridayMonday to Thursday
$57k - $113k
...Dallas, TX Detroit, MI Chicago, IL Charlotte, NC Summary The Sr GRC Programmer/Analyst modifies existing software/application programs, which are... ...on customer service, and the ability to work well with other IT, vendor, and business groups. Microsoft Office experience....Full timeH1bWork at officeRemote workWork from homeFlexible hours- The Sr GRC Programmer/Analyst at Huntington National Bank modifies existing software applications and develops new ones to support governance, risk and compliance needs across the GRC space. This role is onsite at Huntington corporate offices nationwide, with locations...
- ...Technologies in Austin, TX is seeking a Senior Cybersecurity Risk Analyst to join the GRC organization. You will manage technical risk across the... ...assets, collaborating with security, engineering, IT and business teams. The role emphasizes AI-enabled risk assessments...
- Confiz is hiring a GRC Data Analyst / Program Management professional to support privacy assessment and compliance initiatives. This role will... ...advance the privacy program by partnering with business and IT teams, leading privacy-related projects, identifying risks and...Remote workMonday to FridayMonday to Thursday
- Delta-Denta is seeking a Governance, Risk & Compliance Analyst to help ensure client and regulatory requirements are met while identifying and managing IT risks. You will collaborate across Legal, Privacy, and Compliance, support audits, and drive policy development aligned...
- ...Cybersecurity GRC Analyst We are seeking an experienced Cybersecurity GRC Analyst for a 6-month engagement to support our ongoing security compliance and governance initiatives. The ideal candidate will have strong hands-on experience with ISO 27001, including audit...
$119k - $193k
Forrester Research, Inc. is seeking a Senior Analyst based in Cambridge, Massachusetts. This role involves delivering strategic advice for risk management leaders and conducting impactful research. The ideal candidate will have 5-7 years of experience in risk management...- CHAOS Industries, headquartered in Los Angeles, seeks a Governance, Risk & Compliance Analyst to own and mature the GRC program across multiple business units. You will translate broad requirements into actionable controls and manage risk processes, audits, and policy development...
$80k - $100k
...Cybersecurity Compliance Analyst – Orlando, FL Salary: $80,000–$100,000 base + 25% bonus... ...with infrastructure, development, MDR/SOC, IT, leadership, and business teams to... ...6+ years of experience in cybersecurity, GRC, IT compliance, cyber risk, audit, or related...Relocation packageShift work- ...leading recruitment firm is seeking a Governance, Risk & Compliance (GRC) Analyst in Chicago to enhance risk management strategies within the... ...and security policies. Ideal candidates have 2+ years in IT Security and familiarity with cybersecurity frameworks such as...
$115k - $125k
Overview: Sr. Information Security GRC AnalystLocation: Tire Rack - South Bend, IN (On-Site... ...seeking a Senior Information Security GRC Analyst to support and advance our Information... ...this role, you will assess and strengthen IT and security controls across the organization...Weekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT GRC Analyst. Be the first to apply!
Related searches
- grc analyst United States
- IT student United States
- IT professional United States
- information technology consultant United States
- IT infrastructure United States
- director it pmo United States
- information technology infrastructure manager United States
- information technology administrative assistant United States
- IT internship United States
- information technology graduate United States



