Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

IT Risk and Compliance Analyst

$90k - $115k

Brg Corp

Job Summary IT Risk and Compliance Analyst position is a highly visible, client‑facing role that works closely with Legal and Business Unit stakeholders and reports to the IT Risk and Compliance Manager. This role is responsible for evaluating, assessing, and monitoring the firm’s risk and compliance with applicable information security standards and frameworks, industry best practices, and applicable laws and regulations. It also coordinates and maintains the Information Security Management Program and implements security policy objectives aligned with business objectives. Reporting Relationships IT Risk and Compliance Manager Key Contacts Works closely with the Legal and Business Unit stakeholders. Works with clients in response to security assessments and due diligence questionnaires covering Healthcare, Financial Services, Construction, Government Contracts, Insurance, Real Estate, and more. Works in conjunction with the IT Security and Infrastructure Team. Major Responsibilities Provide IT security, risk, and compliance advice to business units on an ongoing basis. Analyze and address gaps in operations to ensure integrity of processes, controls, and policies. Assist in maintaining and updating Information Security Program policies and procedures, including yearly reviews to ensure documentation is current. Provide governance for participation in the information security incident response process by ensuring it is followed and documented. Respond to escalated security events and drive the security incident response process. Participate in the evaluation, development and implementation of security standards, procedures and guidelines for multiple platforms and diverse system environments. Work with internal and external auditors to demonstrate and provide evidence for controls that are in place; may conduct additional testing to validate remediation. Complete client security questionnaires and work with business units to assist with RFI responses related to IT security. Assist in vendor vetting to ensure vendors, business partners or suppliers use the same or higher security practices. Assist in conducting risk assessments and annual reviews for any new or current vendors, partners, or suppliers. Assist with complex security assessments that require analytical and technical skills across a broad range of IT topics (Identity and Access Management, Security Architecture, Physical and Environmental, etc.). Assist with evaluating, testing, documenting, and maintaining the firmwide DR and BCP policies, processes, and standards. Assist with Security Awareness Training program initiatives related to phishing campaigns and coordinate with HR to deliver ongoing employee training. Requirements Associate Degree or equivalent work experience. 3 years of experience in two or more major information technology functions (infrastructure, operations, datacenter, application support, etc.). 3 years of IT security, IT compliance, or IT risk management experience desired. 3 years of experience involving ISO27001 annual surveillance audits and full recertification audits. Familiarity with industry frameworks and standards such as SOC2, HIPAA, HITRUST is a plus. Familiarity with GDPR and CCPA. Familiarity using GRC tools. Knowledge of application and network security, information security risk, and industry best practice on managing risk. Experience with building, executing, and maintaining DR and BCP program. Ability to effectively prioritize and execute tasks in a high‑pressure environment. Excellent written and verbal communication skills and time‑management skills. Strong troubleshooting, problem‑solving and analytical skills. Position may require traveling for short periods (up to 5 working days, on rare occasions beyond 5 days); all travel expenses will be reimbursed. Compensation Salary Range: $90,000 – $115,000 Additional Information Candidate must be able to submit verification of legal right to work in the U.S. without company sponsorship. Equal Opportunity Employer BRG is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, religion, color, sex, gender, national origin, age, United States military veteran status, ancestry, sexual orientation, marital status, family structure, medical condition, veteran status, or mental or physical disability, so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. #J-18808-Ljbffr

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the IT Risk and Compliance Analyst in Boston, MA vacancy
  • The SCA and DBA Compliance Analyst will support the company’s compliance with Service Contract Act (SCA) and Davis-Bacon Act (DBA) requirements...  ...departments to promote organizational integrity, mitigate risks and ensure adherence to the Code of Conduct. The position is... 
    Suggested
    Hourly pay
    Contract work
    Work experience placement
    For subcontractor
    Work at office
    Local area
    Remote work

    Amentum

    Boston, MA
    1 day ago
  • $119k - $193k

     ...Forrester Research, Inc. is seeking a Senior Analyst based in Cambridge, Massachusetts. This role involves delivering strategic advice for risk management leaders and conducting impactful research. The ideal candidate will have 5-7 years of experience in risk management... 
    Suggested

    Forrester

    Cambridge, MA
    1 day ago
  • $70k - $80k

     ...As a GRC Cybersecurity Analyst (CA), you will play a pivotal role securing our clients...  ...cybersecurity leadership in Governance, Risk, and Compliance (GRC) directly to our clients. You will...  ...remediator, technical auditor, IT administrator with security responsibilities... 
    Suggested
    Full time
    Work at office

    Fractional CISO

    Newton, MA
    4 days ago
  • Mercor is looking for experienced professionals in regulatory compliance and risk management to improve AI systems. The role involves reviewing AI-generated outputs related to compliance and risk management, annotating data across use cases, and collaborating with research... 
    Suggested

    Mercor

    Chelsea, MA
    1 day ago
  •  ...Overview The IT Compliance Analyst will play a critical role in supporting Veson Nautical’s comprehensive compliance program across multiple...  ...assist in maintaining compliance certifications, conducting risk assessments, managing audit processes, and ensuring adherence... 
    Suggested

    Veson Nautical

    Boston, MA
    3 days ago
  • Amentum is seeking an SCA and DBA Compliance Analyst to ensure the company’s adherence to compliance with the Service Contract Act and Davis-...  ...responsibilities include compliance oversight, managing regulatory risks, and conducting audits. Candidates should have at least 5... 
    Remote job
    Contract work

    Amentum

    Boston, MA
    1 day ago
  • $130k - $170k

     ...Senior Risk & Compliance Analyst Lead cyber and technology risk assessments across systems, cloud environments, business processes, and major...  ...Collaborate with Security Engineering, Product Security, Legal, IT, and business teams to evaluate new initiatives, technology... 
    Full time
    Work at office
    Relocation

    Venturefizz Product Management Community

    Boston, MA
    1 day ago
  •  ...Compliance & Risk Analyst Security Boston, MA Asset Management JO-1804-590 Join a global compliance team for one of Boston's leading...  ...Management Firms. This role will report to the Manager of IT Security and is part of the IT Production Control & Risk Management... 

    The Ceres Group

    Boston, MA
    4 days ago
  • $76.34k - $107.82k

    Governance, Risk and Compliance Analyst About the Opportunity Job Summary The Governance, Risk, and Compliance (GRC) Analyst supports compliance and governance initiatives for both government and higher education environments. Core responsibilities include implementing... 
    Work experience placement
    Work at office
    3 days per week

    Northeastern University

    Boston, MA
    5 days ago
  • $30 - $37 per hour

    Compliance Reporting Analyst We are currently seeking candidates for a Compliance Reporting Analyst opportunity with a highly successful Investment Management firm located in Boston, MA. The Compliance Reporting Analyst will work closely with the Compliance Reporting... 
    Contract work
    Immediate start
    Remote work
    2 days per week

    Daley And Associates, LLC

    Boston, MA
    2 days ago
  • The CIP Group in Cambridge is seeking a Benefit Analyst to manage and analyze employee benefits programs. The ideal candidate will be...  ..., data analysis, and communication with employees, ensuring compliance with regulations. This role requires a strong knowledge of employee... 

    The CIP Group

    Cambridge, MA
    3 days ago
  • Optomi, in partnership with a leading provider in the Healthcare industry is seeking an AI Risk & Compliance Analyst to join their team. You will be responsible for performing compliance reviews of AI applications to ensure alignment with internal policies and governance... 

    Optomi

    Boston, MA
    4 days ago
  •  ...resolution. Perform and support third-party risk management activities, including vendor...  ...Security, Legal, Privacy, Procurement, IT, Finance, and business owners. Assist...  ...activities. Support security compliance monitoring and audit readiness activities... 

    WHOOP

    Boston, MA
    1 day ago
  •  ...Phase2 Technology is looking for a Senior Analyst to provide research and strategic advice for risk management teams. The successful candidate will conduct research, create reports, and consult with clients to enhance their risk management capabilities. A background in... 

    Phase2 Technology

    Cambridge, MA
    1 day ago
  • $60k - $90k

     ...As a GRC Analyst, Operations & Risk, you will support the WHOOP Governance, Risk, and Compliance program by helping manage GRC intake, coordinate third-party risk activities,...  ...with Security, Legal, Privacy, Procurement, IT, Finance, and business owners Assist with risk... 
    Full time
    Work at office
    Relocation

    WHOOP

    Boston, MA
    4 days ago
  • $60.5k - $104.5k

    What is the opportunity? As a Senior Marketing Compliance Analyst, you will play a critical role in supporting the firm's Institutional and Retail...  ...Director's oversight. Identify and escalation high‑risk or ambiguous compliance matters to the Associate Director for... 
    Flexible hours

    RBC Capital Markets, LLC

    Boston, MA
    2 days ago
  •  ...Northeastern University is hiring a Governance, Risk and Compliance Analyst in Boston. This hybrid role involves supporting compliance initiatives and NIST frameworks in government and higher education environments. The ideal candidate will have a Bachelor's degree, 2-... 

    Northeastern University

    Boston, MA
    3 days ago
  •  ...Forrester Research, based in Cambridge, MA, is seeking a Senior Analyst to deliver strategic advice and conduct research for risk management leaders. The ideal candidate will possess strong knowledge of risk practices, cyber risk quantification, and excellent communication... 

    Forrester

    Cambridge, MA
    22 hours ago
  •  ...Job Summary The GRC Analyst – Third-Party & Client Questionnaire Management is responsible...  ...for supporting and managing security, risk, compliance, and due diligence questionnaires received...  ...with internal stakeholders, including IT, Security, Compliance, Legal, and Operations... 
    Contract work
    Work at office

    GoToMeeting

    Boston, MA
    3 days ago
  • $95k - $110k

     ...the global leader in third‑party cyber risk intelligence, trusted by more than 3,000...  ...translating complex cyber, financial, and compliance signals into clear, actionable risk...  ...recognition from customers and industry analysts alike. WHY BLACK KITE We’re a fast‑moving... 
    Worldwide
    Flexible hours

    Blackkite

    Boston, MA
    3 days ago
  •  ...Position: GRC Policy Analyst Location: Boston, MA (Hybrid) Duration: Long term contract Responsibilities Oversee and manage...  ...Collaborate within the GRC team on larger GRC projects around risk analysis and compliance requirements Qualifications 3-to-5 years experience... 
    Long term contract

    Tech Mirrors

    Boston, MA
    3 days ago
  • $75 per hour

    Insight Global is seeking a ServiceNow GRC Analyst in Boston to join a growing Security team. This role will be responsible for operationalizing security controls in ServiceNow across SaaS applications, working closely with system owners and technical leads. The ideal candidate... 

    Insight Global

    Boston, MA
    1 day ago
  • We are seeking a Product Certification / Compliance Specialist to join the Product Compliance team in North Andover, MA. This hybrid role...  ...teams on certification pathways, test requirements, regulatory risks, and compliance strategies. Review engineering changes, drawings... 
    For contractors
    Work at office
    Remote work

    BrightHire Search Partners

    Boston, MA
    1 day ago
  •  ...GoTo Meeting is seeking a GRC Analyst to manage security and compliance questionnaires from various stakeholders. This role emphasizes automating processes, enhancing GRC platform functionalities, and ensuring accurate responses to compliance inquiries. The ideal candidate... 

    GoToMeeting

    Boston, MA
    3 days ago
  • $75 per hour

     ...re looking for a hands‑on ServiceNow GRC Analyst to join a growing Security organization and...  ...leads to document, validate, and track compliance—while intentionally excluding physical security...  ...of regulatory environments or risk frameworks is a plus Prior experience documenting... 

    Insight Global

    Boston, MA
    1 day ago
  •  ...LIS Solutions is seeking a Junior Compliance Officer to support the Department of Homeland Security, Immigration and Customs Enforcement in Boston. The role involves inputting and evaluating data, performing audits, and conducting research. Candidates must be detail-oriented... 
    Work at office

    LIS Solutions

    Boston, MA
    3 days ago
  • $93.8k - $106k

    Dana-Farber Cancer Institute in Boston, MA is seeking a Billing Compliance Reviewer to manage audits and ensure compliance with billing regulations. The role involves analyzing documentation, educating staff, and collaborating with various teams. Ideal candidates should... 
    Full time

    Ambanet

    Boston, MA
    4 days ago
  • $85k - $120k

     ...applications) 3+ years as a clinical/business analyst or project manager in a healthcare...  ...Through analysis and collaboration with IT and operations teams, the Analyst supports...  ...efforts needed for successful regulatory compliance at a large academic medical center. Position... 
    Full time
    Local area

    TIUM Technology

    Boston, MA
    2 days ago
  •  ...ITS Regulatory Application Analyst | Location: Remote | Contract Our client is seeking...  ...Analyst to support regulatory compliance at a large academic medical center. In this...  ...in the Talent War Delphi-US is a national IT Services firm based in Newport, Rhode Island... 
    Contract work
    Remote work

    Delphi-US

    Boston, MA
    2 days ago
  • $80.1k - $108.68k

     ...Compliance & Risk Analyst job at Norsk Hydro. Des Plaines, IL. Hydro Extrusions is a world-leading aluminium extrusion business counting around 1...  ...compliance including internal audit, Information security, IT, insurance and risk. Serving as a subject matter support and... 
    Work at office
    Local area
    Flexible hours

    Itlearn360

    Canton, MA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to IT Risk and Compliance Analyst. Be the first to apply!