Governance, Risk & Compliance (GRC) Analyst
$80k - $100kSkyePoint Decisions
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results.
This is a contingent position based on contract win.
SkyePoint Decisions is seeking a Governance, Risk & Compliance (GRC) Analyst to support a cybersecurity program and compliance initiatives by managing governance processes, risk management activities, policy compliance efforts, and audit readiness programs. The GRC Analyst serves as a key contributor to ensuring information systems and cybersecurity operations comply with Federal regulations, NIST standards and HHS policies.
The position supports an integrated cybersecurity risk and compliance program by linking risks, POA&Ms, vulnerabilities, audit findings, incidents, corrective actions, and governance reporting to support executive decision-making and authorization activities. Collaborates with cybersecurity teams, system owners, ISSOs, auditors, and leadership to identify risks, monitor compliance, maintain governance documentation, and support continuous improvement of the organization's cybersecurity posture.
This position is fully remote.
Responsibilities:
- Support governance and compliance activities within GRC platforms.
- Maintain compliance records, risks, findings, and corrective action tracking.
- Ensure data accuracy and completeness within governance systems.
- Assist users with governance workflows and compliance processes.
- Generate reports and metrics from GRC tools and repositories.
- Support development, maintenance, and implementation of cybersecurity policies, procedures, standards, and guidelines.
- Assist in mapping organizational controls to Federal cybersecurity requirements and frameworks.
- Maintain governance documentation and standards repositories.
- Ensure policies and procedures remain aligned with Federal requirements.
- Support policy reviews, updates, and compliance assessments.
- Maintain and update cybersecurity risk registers.
- Perform risk identification, analysis, and tracking activities.
- Support risk assessments and risk mitigation planning.
- Monitor remediation activities for identified risks and control deficiencies.
- Develop and maintain cybersecurity compliance metrics and reporting.
- Support creation of executive dashboards and compliance scorecards.
- Analyze program performance indicators and identify trends.
Required Qualifications:
- Bachelor's degree in Cybersecurity, Information Systems, Information Assurance, Business Administration, or a related field.
- Minimum 5 years of experience in cybersecurity governance, risk management, compliance, audit support, or information assurance.
- Experience supporting Federal cybersecurity programs.
- Knowledge of:
- NIST Cybersecurity Framework (CSF)
- NIST Risk Management Framework (RMF)
- NIST SP 800-53 Rev. 5
- FISMA
- Federal cybersecurity compliance requirements
- Experience conducting compliance reviews, risk assessments, or audit preparation activities.
- Strong analytical, organizational, and written communication skills.
- U.S. Citizenship required.
- Ability to obtain and maintain a Public Trust.
Preferred Qualifications:
- One or more of the following certifications:
- CGRC (formerly CAP)
- CRISC
- CISA
- CISSP
- CISM
- Security+
- Certified in Governance, Risk and Compliance (GRC)
- Experience supporting NIH, HHS, or other Federal civilian agencies.
- Experience with governance and compliance platforms such as:
- ServiceNow GRC
- Archer
- eMASS
- Xacta
- Experience supporting FISMA audits and OIG assessments.
- Knowledge of Zero Trust Architecture and Federal cybersecurity modernization initiatives.
- Experience developing executive-level cybersecurity reporting and dashboards.
- Familiarity with privacy compliance requirements, including PTAs and PIAs.
Compensation:
Salary Range: $80,000 - $100,00
The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package.
Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate’s combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations.
In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched.
What We Can Offer You:
- At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day.
- Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched
- Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs.
- Flexible Work Environment
SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives.
SkyePoint Decisions is a participating E-Verify Employer.
U.S. Citizenship is required for most positions.
Equal Opportunity Employer/Veterans/Disabled.
CCPA Disclosure Notice Here
- ...Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This... ...policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. What...SuggestedContract workWork at officeRemote workVisa sponsorshipRelocation packageFlexible hours
- ...GRC Analyst Join our team as a GRC Analyst and play a key role in regulatory compliance, IT risk management, security. You'll assess risks, support audits, and develop policies... ...team. • Assist in the maintenance, governance, and execution of Threat and Vulnerability...SuggestedCasual workWork at officeWork from homeHome officeNight shiftWeekend work
- ...We are seeking a highly skilled and motivated Senior GRC Analyst to join our Security and Privacy team. In this role, you will own and grow RainFocus's governance, risk, and compliance program — maintaining our control framework, leading risk assessments, supporting...SuggestedFull time
- ...Job Description Job Description Governance, Risk & Compliance (GRC) Analyst – State Agency – $40-46/hr W2 – Phoenix Hybrid – Contract-to-Hire SunSoftOnline is hiring a GRC / Information Security Analyst for an Arizona state agency's technology division, a 4-month...SuggestedPermanent employmentFull timeContract workRemote workVisa sponsorshipMonday to Friday
- ...Governance, Risk & Compliance (GrC) Analyst We're partnering with the world's leading AI research labs to build smarter, more trustworthy AI — and we need practitioners who know how GRC actually works in the real world. Your expertise in security policies, compliance...SuggestedHourly payOngoing contractContract workFreelanceRemote workFlexible hours
$150k - $200k
...global economy. Join us! Overview We're hiring a GRC Senior Analyst to help build the compliance foundation powering the future of global crypto... ...recovery runbooks. Conduct vendor and third-party risk assessments as we expand our global network of partners...Full timeWork at officeRemote work2 days per week- Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the complex landscape of cybersecurity compliance and risk management. You will work directly with clients to assess their...Full timeRemote work
- Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential. With our award-winning Oura Ring and app, we help over 2.5 million people turn insights about sleep, activity, and...Work at officeLocal areaRemote workFlexible hours
- Overview The IT GRC Analyst operates within the enterprise Cybersecurity Operations function and supports the Information Technology... ...under the Chief Information Officer. This role executes governance, risk, and compliance activities aligned with regulatory frameworks and...Work at officeRemote work
- ...Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This... ...policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. What...Contract workWork at officeRemote workVisa sponsorshipRelocation packageFlexible hours
- ...RoleAs a member of the Information Security team, the IS GRC Senior Analyst - Risk & Compliance will be responsible for understanding the firm’s... ...analysis and monitor controls.The Information Security Governance, Risk & Compliance Senior Analyst (Risk & Compliance) is...Full timeContract workWork experience placementH1bRemote workVisa sponsorshipRelocation packageMonday to Friday
- Description The Senior IT GRC Analyst leads policy development and audit execution within CMG's IT Governance, Risk, and Compliance program, with particular emphasis on CMG's upcoming SOC 2 readiness effort. This role works closely with the GRC team and the broader IT...Work at officeRemote work
- ...Description Zywave's security and regulatory excellence depends on strong governance, risk, and compliance practices and this role sits at the center of that work. As a GRC Analyst, you will manage compliance frameworks, assess organizational risk, and help Zywave...Remote work
$99k - $225k
Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical...Full timeContract workPart timeWork at officeLocal areaRemote work$108k - $130k
...beyond symptoms that increase a person’s risk of heart attacks. At Cleerly, we... ...manages risks, ensuring ongoing compliance throughout the entire software lifecycle... ...we have an immediate opening for a GRC and IT Compliance Analyst to help support and execute Cleerly’...Full timeImmediate startRemote work- ...can contribute to the excellence of our academic community. Description JOB DESCRIPTION: The Senior IT GRC (Governance, Risk, and Compliance) Analyst oversees technical design, implementation, maintenance, and responsibilities for multiple information security...Work experience placementRemote workWork from homeFlexible hours
- Wiz is seeking a Remote Senior Governance, Risk, and Compliance Analyst - Governance to join our team. You will report to the Manager, Governance, Risk, & Compliance and collaborate with a cross-disciplinary Wizards group to align governance with business needs and enhance...Remote job
$65k - $80k
...Individual Medical, and Financial Services. Job Title: GRC Analyst Division: Infrastructure/ IT Location: Columbia, SC... ...Analyst, you will play a key role in advancing our governance, risk management, and compliance initiatives. This position works closely with the IT...Full timeRemote workFlexible hours- Ruleset Security is offering an exciting internship opportunity for a Governance, Risk, and Compliance (GRC) Analyst. This role is perfect for students or recent graduates looking to gain hands‑on experience in cybersecurity, compliance, and risk management. The internship...Remote jobFull timeInternship
- Glocomms, in partnership with a leading IT and Cloud Computing firm, is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support security governance, risk management, and regulatory compliance. You will conduct risk assessments, manage third...Remote work
$90k - $120k
Third Party GRC Analyst job at Gulf Coast Automation Group. Los Angeles, CA. Job Title: Third Party GRC Analyst Primary Location... ...is partnered with our client to find a Third Party Governance, Risk, and Compliance (GRC) Analyst! This position is a key role within the...Remote workVisa sponsorship- Bloomin' Brands, Inc. is seeking a Sr. GRC Analyst in Tampa, FL to support governance, risk, and compliance efforts across the organization. The role combines onsite and remote work in a hybrid schedule at the Tampa Restaurant Support Center. You will develop policies,...Remote work
- Medasource is seeking an IT GRC Analyst to join the IT Security and Governance team on a 6-month contract-to-hire basis, remote within the USA. The role focuses on governance, risk, and compliance across HIPAA, SOC 2, and NIST, collaborating with IT, Security, Privacy,...Remote jobContract work
- Trustmark in Ridgeland, MS is seeking an IT GRC Analyst to oversee governance, risk, and compliance activities. The role includes coordinating compliance efforts, executing IT assessments, and developing policies. The ideal candidate will hold a Bachelor's in information...Remote job
- Medasource is seeking an IT GRC Analyst to join our IT Security and Governance team on a 6-month contract-to-hire basis, working remotely within the USA... ...role focuses on security governance, regulatory compliance, risk management, audit readiness, policy administration...Remote jobContract work
- ...Company data and information technology assets by supporting governance, risk, and compliance activities, including security policy and standards... ...and information security products and technologies such as GRC platforms, central logging systems, file integrity monitoring...Full timeWork at officeLocal areaRemote workMonday to Friday
- ...Cybersecurity Governance, Risk & Compliance (GRC) Analyst We're looking for a Cybersecurity Governance, Risk & Compliance (GRC) analyst who will be responsible for maintaining policies, assessing risks, supporting audits, regulatory requirements, third-party reviews...Remote work
$95k - $105k
...Description Job Description Sr. GRC Analyst About Subsplash Subsplash... ...to advance security and risk operations. In this role,... ...We are building an AI-first compliance function, and this role is expected... ...cadence. 2. Access Governance & Identity Management User...Temporary workCurrently hiringRemote workRelocation- United States Digital Space LLC is seeking a Senior InfoSec GRC Analyst for a fully remote, international role. You will own governance, risk, and compliance across the ISMS, drive ISO 27001 and SOC 2 audits, and review customer security requirements to enable safe production...Remote job
- Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience...Remote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!



