Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity GRC Analyst

$15k - $120k

Follett Content Solutions, LLC

Job Description

Job Description

Description:

Follett Content Solutions has been a trusted partner for educators since 1873! We support our educators that touch more than 45 million students worldwide. Follett Content Solutions helps build a diverse collection of print and digital resources to support every student. We are currently hiring for Cybersecurity GRC Analyst.

This position is an exempt full-time position located in McHenry, IL or remote for the right person. The pay for this position is $!15,000-$120,000 annually. We offer a hybrid work schedule with 3 days in the office (Monday, Tuesday & Thursday) and 2 remote days (Wednesday & Friday).

The Cybersecurity GRC Analyst is responsible for strengthening the organization’s governance, risk, and compliance posture by formalizing IT policies, operationalizing Microsoft Purview, and ensuring audit readiness. This individual plays a critical role in aligning security practices with business risk, regulatory requirements, and industry frameworks such as SOC 2, NIST CSF, and PCI DSS. Serves as the primary point of contact for governance initiatives, including evidence collection, control mapping, and coordination with external auditors and consultants.

Develops and maintains policies, standards, and procedures across device management, identity, and data handling. Oversees data classification, DLP, insider risk, and compliance reporting through Microsoft Purview. Partners with the Cybersecurity Specialist and SOC provider to integrate governance with operational telemetry. Tracks remediation activities, supports risk assessments, and ensures timely closure of audit findings.

Maintains documentation for audit readiness and leadership reporting, enabling transparency and accountability across the organization. Leads annual cybersecurity awareness training efforts and promotes a culture of compliance. Monitors emerging regulatory trends and frameworks, recommending updates to policies, tools, and practices to ensure the organization remains resilient and compliant.

Key Responsibilities:

Governance & Policy Development

  • Drafts, maintains, and enforces IT security policies, standards, and procedures across device management, identity, and data handling.
  • Operationalizes Microsoft Purview for data classification, DLP, insider risk, and compliance reporting.
  • Aligns governance practices with organizational risk appetite and regulatory requirements.
  • Ensures policies are auditable, scalable, and communicated effectively across the organization.

Audit Readiness & Compliance

  • Serves as primary point of contact for SOC 2 Type II certification efforts, coordinating evidence collection and control mapping.
  • Supports PCI DSS self-assessment activities and other compliance initiatives.
  • Maintains documentation for audit readiness and leadership reporting.
  • Coordinates with external auditors, consultants, and vendors to ensure successful certification outcomes.
  • Tracks remediation plans and ensures timely closure of audit findings

Risk Assessment & Remediation

  • Assists in internal risk assessments, identifying gaps and recommending remediation strategies.
  • Partners with IT and business stakeholders to translate technical risks into business impact.
  • Monitors compliance telemetry and integrates findings into governance processes.
  • Ensures remediation activities are documented and aligned with organizational priorities.

Project Management & Deployments

  • Identifies and coordinates projects to close security gaps.
  • Works with IT Operations and Cybersecurity teams on tool deployments and implementation/tuning.
  • Works with Application Development teams on defining guardrails for AI initiatives to ensure AI agents are inventoried and managed properly.
  • Works closely with IT Stakeholders on identifying and prioritizing projects based on risk assessment.

Security Awareness & Training

  • Develops and deploys annual cybersecurity awareness training programs.
  • Promotes a culture of compliance and risk awareness across all levels of the organization.
  • Provides guidance and education on governance frameworks (SOC 2, NIST CSF, PCI DSS, CIS Controls).
  • Shares knowledge of emerging regulatory trends and best practices with leadership and staff

Requirements:
  • 7-10 years experience
  • Bachelor’s degree or equivalent in Computer Science, Information Systems, Cybersecurity, or related discipline OR demonstrated ability to meet job requirements through comparable years of applicable work experience.
  • 7+ years related experience in IT, cybersecurity operations, or governance, risk, and compliance.
  • Strong written and oral communication skills with the ability to positively engage with business stakeholders, IT management, and external auditors.
  • Experience with Microsoft Purview, Intune, Defender, SentinelOne, or similar governance/security platforms.
  • Familiarity with compliance frameworks such as SOC 2, PCI DSS, ISO 27001, and NIST CSF.
  • Ability to translate business requirements and risks into actionable governance and compliance controls.
  • Knowledge of risk assessment procedures, policy formation, role-based authorization methodologies, and incident response governance.
  • Solid project management skills, especially in cross-functional environments involving external vendors or auditors.
  • Strong team-oriented interpersonal skills; ability to effectively interface with diverse teams across all levels of the organization.
  • Previous experience coordinating with third-party providers, consultants, or auditors for compliance initiatives.
  • Experience creating leadership ready documentation, dashboards, or reports that communicate compliance posture, risk trends, or remediation progress.
  • Prior involvement in security awareness training programs or organizational compliance initiatives.
  • Experience supporting or implementing role based access controls (RBAC), least privilege models, or identity governance processes.
  • Experience coordinating with external auditors, consultants, or managed service providers for compliance, risk, or governance initiatives.
  • Background working with IT Operations, Infrastructure, or Application Development teams to implement governance controls, close audit gaps, or deploy compliance related tooling.

*As an Equal Opportunity Employer, we are committed to providing reasonable accommodations to job applicants with disabilities. If you are interested in applying for employment and need assistance or an accommodation in the application process due to a disability, please contact us by email or phone. Email: Send request to View email address on ziprecruiter.com Phone: Request assistance by calling View phone number on ziprecruiter.com. When contacting us, please provide your contact information, the job position or title, and state the nature of your accessibility issue.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Cybersecurity GRC Analyst in Mchenry, IL vacancy
  • $165k - $185k

    Do you want to join a team where the mission is meaningful, the challenges are complex, and you can directly see the results of your hard work? Lundbeck is a global biopharmaceutical company focusing exclusively on brain health. With more than 70 years of experience in...
    Suggested
    Work at office
    Remote work
    Flexible hours

    Lundbeck

    Island Lake, IL
    3 days ago
  • Responsibilities: The Regulatory Manager (RM) provides regulatory strategy and development guidance for optimal conduct of clinical trials, regulatory agency meetings, orphan designations, paediatric planning, and accelerated procedures, ensuring timely preparation...
    Suggested
    Flexible hours
    Night shift

    Katalyst Healthcares and Life Sciences

    Richmond, IL
    2 days ago
  • Responsibilities The Regulatory Affairs Level III (Senior Specialist) position is responsible for global product registrations and ensuring regulatory compliance in the design, manufacturing, and sales of medical devices (including Class I and II devices, software as a...
    Suggested
    Contract work

    Katalyst CRO

    Richmond, IL
    1 day ago
  • $100k - $120k

    Are you a hands‑on international trade compliance expert who has owned import and trade strategy in a manufacturing environment? We’re looking for a seasoned professional to step into a critical, highly visible role supporting global operations. This is not a coordinator...
    Suggested
    Local area
    Work from home

    LHH

    Algonquin, IL
    5 days ago
  • $42k - $55k

    Job Description Job Description Hiring: Insurance Compliance Auditor Company: Information Providers, Inc. Location: McHenry, IL At Information Providers Inc. (IPI), we believe great work starts with great people. Since 1996, we've established ourselves...
    Suggested
    Full time
    Temporary work
    Work at office
    Remote work
    Monday to Friday
    Flexible hours

    Information Providers, Inc

    Mchenry, IL
    6 days ago
  • SA Technologies Inc. ( is a market leader and one of the fastest growing IT consulting firms with operations in US, Canada, Mexico & India. SAT is an Oracle Gold Partner, SAP Services Partner & IBM Certified enterprise. We guarantee you the best rate for your skills and...
    Remote work

    SA Technologies Inc

    Round Lake, IL
    4 days ago
  • A consulting firm is looking for an individual contributor with expertise in document management and technical writing. The role requires excellent communication skills, analytical problem-solving abilities, and a proactive approach. The ideal candidate will have knowledge...

    Matlen Silver

    Cary, IL
    4 days ago
  • A technology consulting firm is seeking a Senior Agile Scrum Master to work on-site in Bloomington, IL. This role involves coordinating agile work efforts, facilitating team productivity, and leveraging Agile methodologies like Scrum and Kanban. Candidates should have ...

    USM

    Round Lake, IL
    2 days ago
  • $95k - $125k

     ...A multi-national manufacturing company seeks an experienced Salesforce Solution Analyst in Crystal Lake, IL to manage Salesforce systems and develop data analytics solutions. The ideal candidate will have at least 5 years of Salesforce administration and strong knowledge... 
    Full time

    General Kinematics

    Crystal Lake, IL
    6 hours ago
  • Job Posting Pay monthly commissions (utilizing SFDC reporting and Excel-based models) for our Bardy sales team consisting of 3 different compensation plans. Will transition this process from existing finance team and own creation of documentation and SOPs of their payment...

    Samprasoft

    Round Lake, IL
    20 hours ago
  •  ...Food and Beverage Analyst Corporate Headquarters 12575 Uline Drive, Pleasant Prairie, WI 53158 Help fuel our team! Join Uline as a Food and Beverage Analyst to support the smooth, cost-effective operation of the on-site cafés at our growing corporate headquarters... 

    Uline, Inc.

    Fox Lake, IL
    5 hours ago
  • $58 - $64 per hour

    Job Description Job Description Job Title: Senior Regulatory Affairs Specialist Location: Cary, Illinois Type: Contract Compensation: $58- $64/hr Work Model: Onsite Overview Join a leading medical device organization as a Regulatory Affairs professional supporting...
    Contract work
    Local area

    System One

    Cary, IL
    14 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity GRC Analyst. Be the first to apply!