IT Risk and Compliance Analyst
$90k - $115kBrg Corp
Job Summary IT Risk and Compliance Analyst position is a highly visible, client‑facing role that works closely with Legal and Business Unit stakeholders and reports to the IT Risk and Compliance Manager. This role is responsible for evaluating, assessing, and monitoring the firm’s risk and compliance with applicable information security standards and frameworks, industry best practices, and applicable laws and regulations. It also coordinates and maintains the Information Security Management Program and implements security policy objectives aligned with business objectives. Reporting Relationships IT Risk and Compliance Manager Key Contacts Works closely with the Legal and Business Unit stakeholders. Works with clients in response to security assessments and due diligence questionnaires covering Healthcare, Financial Services, Construction, Government Contracts, Insurance, Real Estate, and more. Works in conjunction with the IT Security and Infrastructure Team. Major Responsibilities Provide IT security, risk, and compliance advice to business units on an ongoing basis. Analyze and address gaps in operations to ensure integrity of processes, controls, and policies. Assist in maintaining and updating Information Security Program policies and procedures, including yearly reviews to ensure documentation is current. Provide governance for participation in the information security incident response process by ensuring it is followed and documented. Respond to escalated security events and drive the security incident response process. Participate in the evaluation, development and implementation of security standards, procedures and guidelines for multiple platforms and diverse system environments. Work with internal and external auditors to demonstrate and provide evidence for controls that are in place; may conduct additional testing to validate remediation. Complete client security questionnaires and work with business units to assist with RFI responses related to IT security. Assist in vendor vetting to ensure vendors, business partners or suppliers use the same or higher security practices. Assist in conducting risk assessments and annual reviews for any new or current vendors, partners, or suppliers. Assist with complex security assessments that require analytical and technical skills across a broad range of IT topics (Identity and Access Management, Security Architecture, Physical and Environmental, etc.). Assist with evaluating, testing, documenting, and maintaining the firmwide DR and BCP policies, processes, and standards. Assist with Security Awareness Training program initiatives related to phishing campaigns and coordinate with HR to deliver ongoing employee training. Requirements Associate Degree or equivalent work experience. 3 years of experience in two or more major information technology functions (infrastructure, operations, datacenter, application support, etc.). 3 years of IT security, IT compliance, or IT risk management experience desired. 3 years of experience involving ISO27001 annual surveillance audits and full recertification audits. Familiarity with industry frameworks and standards such as SOC2, HIPAA, HITRUST is a plus. Familiarity with GDPR and CCPA. Familiarity using GRC tools. Knowledge of application and network security, information security risk, and industry best practice on managing risk. Experience with building, executing, and maintaining DR and BCP program. Ability to effectively prioritize and execute tasks in a high‑pressure environment. Excellent written and verbal communication skills and time‑management skills. Strong troubleshooting, problem‑solving and analytical skills. Position may require traveling for short periods (up to 5 working days, on rare occasions beyond 5 days); all travel expenses will be reimbursed. Compensation Salary Range: $90,000 – $115,000 Additional Information Candidate must be able to submit verification of legal right to work in the U.S. without company sponsorship. Equal Opportunity Employer BRG is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, religion, color, sex, gender, national origin, age, United States military veteran status, ancestry, sexual orientation, marital status, family structure, medical condition, veteran status, or mental or physical disability, so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. #J-18808-Ljbffr
- The SCA and DBA Compliance Analyst will support the company’s compliance with Service Contract Act (SCA) and Davis-Bacon Act (DBA) requirements... ...departments to promote organizational integrity, mitigate risks and ensure adherence to the Code of Conduct. The position is...SuggestedHourly payContract workWork experience placementFor subcontractorWork at officeLocal areaRemote work
$119k - $193k
...Forrester Research, Inc. is seeking a Senior Analyst based in Cambridge, Massachusetts. This role involves delivering strategic advice for risk management leaders and conducting impactful research. The ideal candidate will have 5-7 years of experience in risk management...Suggested$70k - $80k
...As a GRC Cybersecurity Analyst (CA), you will play a pivotal role securing our clients... ...cybersecurity leadership in Governance, Risk, and Compliance (GRC) directly to our clients. You will... ...remediator, technical auditor, IT administrator with security responsibilities...SuggestedFull timeWork at office- Mercor is looking for experienced professionals in regulatory compliance and risk management to improve AI systems. The role involves reviewing AI-generated outputs related to compliance and risk management, annotating data across use cases, and collaborating with research...Suggested
- ...Overview The IT Compliance Analyst will play a critical role in supporting Veson Nautical’s comprehensive compliance program across multiple... ...assist in maintaining compliance certifications, conducting risk assessments, managing audit processes, and ensuring adherence...Suggested
- Amentum is seeking an SCA and DBA Compliance Analyst to ensure the company’s adherence to compliance with the Service Contract Act and Davis-... ...responsibilities include compliance oversight, managing regulatory risks, and conducting audits. Candidates should have at least 5...Remote jobContract work
$130k - $170k
...Senior Risk & Compliance Analyst Lead cyber and technology risk assessments across systems, cloud environments, business processes, and major... ...Collaborate with Security Engineering, Product Security, Legal, IT, and business teams to evaluate new initiatives, technology...Full timeWork at officeRelocation- ...Compliance & Risk Analyst Security Boston, MA Asset Management JO-1804-590 Join a global compliance team for one of Boston's leading... ...Management Firms. This role will report to the Manager of IT Security and is part of the IT Production Control & Risk Management...
$76.34k - $107.82k
Governance, Risk and Compliance Analyst About the Opportunity Job Summary The Governance, Risk, and Compliance (GRC) Analyst supports compliance and governance initiatives for both government and higher education environments. Core responsibilities include implementing...Work experience placementWork at office3 days per week$30 - $37 per hour
Compliance Reporting Analyst We are currently seeking candidates for a Compliance Reporting Analyst opportunity with a highly successful Investment Management firm located in Boston, MA. The Compliance Reporting Analyst will work closely with the Compliance Reporting...Contract workImmediate startRemote work2 days per week- The CIP Group in Cambridge is seeking a Benefit Analyst to manage and analyze employee benefits programs. The ideal candidate will be... ..., data analysis, and communication with employees, ensuring compliance with regulations. This role requires a strong knowledge of employee...
- Optomi, in partnership with a leading provider in the Healthcare industry is seeking an AI Risk & Compliance Analyst to join their team. You will be responsible for performing compliance reviews of AI applications to ensure alignment with internal policies and governance...
- ...resolution. Perform and support third-party risk management activities, including vendor... ...Security, Legal, Privacy, Procurement, IT, Finance, and business owners. Assist... ...activities. Support security compliance monitoring and audit readiness activities...
- ...Phase2 Technology is looking for a Senior Analyst to provide research and strategic advice for risk management teams. The successful candidate will conduct research, create reports, and consult with clients to enhance their risk management capabilities. A background in...
$60k - $90k
...As a GRC Analyst, Operations & Risk, you will support the WHOOP Governance, Risk, and Compliance program by helping manage GRC intake, coordinate third-party risk activities,... ...with Security, Legal, Privacy, Procurement, IT, Finance, and business owners Assist with risk...Full timeWork at officeRelocation$60.5k - $104.5k
What is the opportunity? As a Senior Marketing Compliance Analyst, you will play a critical role in supporting the firm's Institutional and Retail... ...Director's oversight. Identify and escalation high‑risk or ambiguous compliance matters to the Associate Director for...Flexible hours- ...Northeastern University is hiring a Governance, Risk and Compliance Analyst in Boston. This hybrid role involves supporting compliance initiatives and NIST frameworks in government and higher education environments. The ideal candidate will have a Bachelor's degree, 2-...
- ...Forrester Research, based in Cambridge, MA, is seeking a Senior Analyst to deliver strategic advice and conduct research for risk management leaders. The ideal candidate will possess strong knowledge of risk practices, cyber risk quantification, and excellent communication...
- ...Job Summary The GRC Analyst – Third-Party & Client Questionnaire Management is responsible... ...for supporting and managing security, risk, compliance, and due diligence questionnaires received... ...with internal stakeholders, including IT, Security, Compliance, Legal, and Operations...Contract workWork at office
$95k - $110k
...the global leader in third‑party cyber risk intelligence, trusted by more than 3,000... ...translating complex cyber, financial, and compliance signals into clear, actionable risk... ...recognition from customers and industry analysts alike. WHY BLACK KITE We’re a fast‑moving...WorldwideFlexible hours- ...Position: GRC Policy Analyst Location: Boston, MA (Hybrid) Duration: Long term contract Responsibilities Oversee and manage... ...Collaborate within the GRC team on larger GRC projects around risk analysis and compliance requirements Qualifications 3-to-5 years experience...Long term contract
$75 per hour
Insight Global is seeking a ServiceNow GRC Analyst in Boston to join a growing Security team. This role will be responsible for operationalizing security controls in ServiceNow across SaaS applications, working closely with system owners and technical leads. The ideal candidate...- We are seeking a Product Certification / Compliance Specialist to join the Product Compliance team in North Andover, MA. This hybrid role... ...teams on certification pathways, test requirements, regulatory risks, and compliance strategies. Review engineering changes, drawings...For contractorsWork at officeRemote work
- ...GoTo Meeting is seeking a GRC Analyst to manage security and compliance questionnaires from various stakeholders. This role emphasizes automating processes, enhancing GRC platform functionalities, and ensuring accurate responses to compliance inquiries. The ideal candidate...
$75 per hour
...re looking for a hands‑on ServiceNow GRC Analyst to join a growing Security organization and... ...leads to document, validate, and track compliance—while intentionally excluding physical security... ...of regulatory environments or risk frameworks is a plus Prior experience documenting...- ...LIS Solutions is seeking a Junior Compliance Officer to support the Department of Homeland Security, Immigration and Customs Enforcement in Boston. The role involves inputting and evaluating data, performing audits, and conducting research. Candidates must be detail-oriented...Work at office
$93.8k - $106k
Dana-Farber Cancer Institute in Boston, MA is seeking a Billing Compliance Reviewer to manage audits and ensure compliance with billing regulations. The role involves analyzing documentation, educating staff, and collaborating with various teams. Ideal candidates should...Full time$85k - $120k
...applications) 3+ years as a clinical/business analyst or project manager in a healthcare... ...Through analysis and collaboration with IT and operations teams, the Analyst supports... ...efforts needed for successful regulatory compliance at a large academic medical center. Position...Full timeLocal area- ...ITS Regulatory Application Analyst | Location: Remote | Contract Our client is seeking... ...Analyst to support regulatory compliance at a large academic medical center. In this... ...in the Talent War Delphi-US is a national IT Services firm based in Newport, Rhode Island...Contract workRemote work
$80.1k - $108.68k
...Compliance & Risk Analyst job at Norsk Hydro. Des Plaines, IL. Hydro Extrusions is a world-leading aluminium extrusion business counting around 1... ...compliance including internal audit, Information security, IT, insurance and risk. Serving as a subject matter support and...Work at officeLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Risk and Compliance Analyst. Be the first to apply!
- it risk analyst Boston, MA
- risk analyst Boston, MA
- senior quantitative risk analyst Boston, MA
- operational risk consultant Boston, MA
- transaction risk analyst Boston, MA
- risk officer Boston, MA
- operational risk specialist Boston, MA
- information risk analyst Boston, MA
- third party risk analyst Boston, MA
- risk consultant Boston, MA

