Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance, Risk & Compliance (GRC) Analyst

$80k - $100k
Full-time

SkyePoint Decisions

SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results.

This is a contingent position based on contract win.

SkyePoint Decisions is seeking a Governance, Risk & Compliance (GRC) Analyst to support a cybersecurity program and compliance initiatives by managing governance processes, risk management activities, policy compliance efforts, and audit readiness programs. The GRC Analyst serves as a key contributor to ensuring information systems and cybersecurity operations comply with Federal regulations, NIST standards and HHS policies.

The position supports an integrated cybersecurity risk and compliance program by linking risks, POA&Ms, vulnerabilities, audit findings, incidents, corrective actions, and governance reporting to support executive decision-making and authorization activities. Collaborates with cybersecurity teams, system owners, ISSOs, auditors, and leadership to identify risks, monitor compliance, maintain governance documentation, and support continuous improvement of the organization's cybersecurity posture.

This position is fully remote.

Responsibilities:

  • Support governance and compliance activities within GRC platforms.
  • Maintain compliance records, risks, findings, and corrective action tracking.
  • Ensure data accuracy and completeness within governance systems.
  • Assist users with governance workflows and compliance processes.
  • Generate reports and metrics from GRC tools and repositories.
  • Support development, maintenance, and implementation of cybersecurity policies, procedures, standards, and guidelines.
  • Assist in mapping organizational controls to Federal cybersecurity requirements and frameworks.
  • Maintain governance documentation and standards repositories.
  • Ensure policies and procedures remain aligned with Federal requirements.
  • Support policy reviews, updates, and compliance assessments.
  • Maintain and update cybersecurity risk registers.
  • Perform risk identification, analysis, and tracking activities.
  • Support risk assessments and risk mitigation planning.
  • Monitor remediation activities for identified risks and control deficiencies.
  • Develop and maintain cybersecurity compliance metrics and reporting.
  • Support creation of executive dashboards and compliance scorecards.
  • Analyze program performance indicators and identify trends.

Required Qualifications:

  • Bachelor's degree in Cybersecurity, Information Systems, Information Assurance, Business Administration, or a related field.
  • Minimum 5 years of experience in cybersecurity governance, risk management, compliance, audit support, or information assurance.
  • Experience supporting Federal cybersecurity programs.
  • Knowledge of:
    • NIST Cybersecurity Framework (CSF)
    • NIST Risk Management Framework (RMF)
    • NIST SP 800-53 Rev. 5
    • FISMA
    • Federal cybersecurity compliance requirements
  • Experience conducting compliance reviews, risk assessments, or audit preparation activities.
  • Strong analytical, organizational, and written communication skills.
  • U.S. Citizenship required.
  • Ability to obtain and maintain a Public Trust.

Preferred Qualifications:

  • One or more of the following certifications:
    • CGRC (formerly CAP)
    • CRISC
    • CISA
    • CISSP
    • CISM
    • Security+
    • Certified in Governance, Risk and Compliance (GRC)
  • Experience supporting NIH, HHS, or other Federal civilian agencies.
  • Experience with governance and compliance platforms such as:
    • ServiceNow GRC
    • Archer
    • eMASS
    • Xacta
  • Experience supporting FISMA audits and OIG assessments.
  • Knowledge of Zero Trust Architecture and Federal cybersecurity modernization initiatives.
  • Experience developing executive-level cybersecurity reporting and dashboards.
  • Familiarity with privacy compliance requirements, including PTAs and PIAs.

Compensation:

Salary Range: $80,000 - $100,00

The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package.

Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate’s combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations.

In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched.

What We Can Offer You:

  • At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day.
  • Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched
  • Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs.
  • Flexible Work Environment

SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives.

SkyePoint Decisions is a participating E-Verify Employer.

U.S. Citizenship is required for most positions.

Equal Opportunity Employer/Veterans/Disabled.

CCPA Disclosure Notice Here

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Governance, Risk & Compliance (GRC) Analyst in Remote vacancy
  •  ...Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This...  ...policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. What... 
    Suggested
    Contract work
    Work at office
    Remote work
    Visa sponsorship
    Relocation package
    Flexible hours

    IVO Inc

    San Francisco, CA
    3 days ago
  •  ...GRC Analyst Join our team as a GRC Analyst and play a key role in regulatory compliance, IT risk management, security. You'll assess risks, support audits, and develop policies...  ...team. • Assist in the maintenance, governance, and execution of Threat and Vulnerability... 
    Suggested
    Casual work
    Work at office
    Work from home
    Home office
    Night shift
    Weekend work

    Delta Dental of Missouri

    Saint Louis, MO
    1 day ago
  •  ...We are seeking a highly skilled and motivated Senior GRC Analyst to join our Security and Privacy team. In this role, you will own and grow RainFocus's governance, risk, and compliance program — maintaining our control framework, leading risk assessments, supporting... 
    Suggested
    Full time

    Rainfocus

    Remote
    5 days ago
  •  ...Job Description Job Description Governance, Risk & Compliance (GRC) Analyst – State Agency – $40-46/hr W2 – Phoenix Hybrid – Contract-to-Hire SunSoftOnline is hiring a GRC / Information Security Analyst for an Arizona state agency's technology division, a 4-month... 
    Suggested
    Permanent employment
    Full time
    Contract work
    Remote work
    Visa sponsorship
    Monday to Friday

    SunSoft Online

    Phoenix, AZ
    3 days ago
  •  ...Governance, Risk & Compliance (GrC) Analyst We're partnering with the world's leading AI research labs to build smarter, more trustworthy AI — and we need practitioners who know how GRC actually works in the real world. Your expertise in security policies, compliance... 
    Suggested
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    United States
    2 days ago
  • $150k - $200k

     ...global economy. Join us! Overview We're hiring a GRC Senior Analyst to help build the compliance foundation powering the future of global crypto...  ...recovery runbooks. Conduct vendor and third-party risk assessments as we expand our global network of partners... 
    Full time
    Work at office
    Remote work
    2 days per week

    Mesh

    San Francisco, CA
    4 days ago
  • Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the complex landscape of cybersecurity compliance and risk management. You will work directly with clients to assess their... 
    Full time
    Remote work

    Districttechgroup

    Washington DC
    1 day ago
  • Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential. With our award-winning Oura Ring and app, we help over 2.5 million people turn insights about sleep, activity, and... 
    Work at office
    Local area
    Remote work
    Flexible hours

    Itlearn360

    New York, NY
    12 hours ago
  • Overview The IT GRC Analyst operates within the enterprise Cybersecurity Operations function and supports the Information Technology...  ...under the Chief Information Officer. This role executes governance, risk, and compliance activities aligned with regulatory frameworks and... 
    Work at office
    Remote work

    Trustmark

    Ridgeland, MS
    4 days ago
  •  ...Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This...  ...policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. What... 
    Contract work
    Work at office
    Remote work
    Visa sponsorship
    Relocation package
    Flexible hours

    Ivo

    San Francisco, CA
    2 days ago
  •  ...RoleAs a member of the Information Security team, the IS GRC Senior Analyst - Risk & Compliance will be responsible for understanding the firm’s...  ...analysis and monitor controls.The Information Security Governance, Risk & Compliance Senior Analyst (Risk & Compliance) is... 
    Full time
    Contract work
    Work experience placement
    H1b
    Remote work
    Visa sponsorship
    Relocation package
    Monday to Friday

    AlixPartners

    Detroit, MI
    4 days ago
  • Description The Senior IT GRC Analyst leads policy development and audit execution within CMG's IT Governance, Risk, and Compliance program, with particular emphasis on CMG's upcoming SOC 2 readiness effort. This role works closely with the GRC team and the broader IT... 
    Work at office
    Remote work

    CMG Financial

    United States
    21 days ago
  •  ...Description Zywave's security and regulatory excellence depends on strong governance, risk, and compliance practices and this role sits at the center of that work. As a GRC Analyst, you will manage compliance frameworks, assess organizational risk, and help Zywave... 
    Remote work

    Zywave

    United States
    2 days ago
  • $99k - $225k

    Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    3 days ago
  • $108k - $130k

     ...beyond symptoms that increase a person’s risk of heart attacks. At Cleerly, we...  ...manages risks, ensuring ongoing compliance throughout the entire software lifecycle...  ...we have an immediate opening for a GRC and IT Compliance Analyst to help support and execute Cleerly’... 
    Full time
    Immediate start
    Remote work

    Cleerly

    Remote
    4 days ago
  •  ...can contribute to the excellence of our academic community. Description JOB DESCRIPTION: The Senior IT GRC (Governance, Risk, and Compliance) Analyst oversees technical design, implementation, maintenance, and responsibilities for multiple information security... 
    Work experience placement
    Remote work
    Work from home
    Flexible hours

    Emory University

    Atlanta, GA
    2 days ago
  • Wiz is seeking a Remote Senior Governance, Risk, and Compliance Analyst - Governance to join our team. You will report to the Manager, Governance, Risk, & Compliance and collaborate with a cross-disciplinary Wizards group to align governance with business needs and enhance... 
    Remote job

    Itlearn360

    New York, NY
    1 day ago
  • $65k - $80k

     ...Individual Medical, and Financial Services. Job Title: GRC Analyst Division: Infrastructure/ IT Location: Columbia, SC...  ...Analyst, you will play a key role in advancing our governance, risk management, and compliance initiatives. This position works closely with the IT... 
    Full time
    Remote work
    Flexible hours

    The Cason Group

    Columbia, SC
    4 days ago
  • Ruleset Security is offering an exciting internship opportunity for a Governance, Risk, and Compliance (GRC) Analyst. This role is perfect for students or recent graduates looking to gain hands‑on experience in cybersecurity, compliance, and risk management. The internship... 
    Remote job
    Full time
    Internship

    Ruleset Security

    Arlington, VA
    3 days ago
  • Glocomms, in partnership with a leading IT and Cloud Computing firm, is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support security governance, risk management, and regulatory compliance. You will conduct risk assessments, manage third... 
    Remote work

    Glocomms

    Dallas, TX
    12 hours ago
  • $90k - $120k

    Third Party GRC Analyst job at Gulf Coast Automation Group. Los Angeles, CA. Job Title: Third Party GRC Analyst Primary Location...  ...is partnered with our client to find a Third Party Governance, Risk, and Compliance (GRC) Analyst! This position is a key role within the... 
    Remote work
    Visa sponsorship

    Itlearn360

    Los Angeles, CA
    1 day ago
  • Bloomin' Brands, Inc. is seeking a Sr. GRC Analyst in Tampa, FL to support governance, risk, and compliance efforts across the organization. The role combines onsite and remote work in a hybrid schedule at the Tampa Restaurant Support Center. You will develop policies,... 
    Remote work

    Bloomin' Brands, Inc.

    Tampa, FL
    4 days ago
  • Medasource is seeking an IT GRC Analyst to join the IT Security and Governance team on a 6-month contract-to-hire basis, remote within the USA. The role focuses on governance, risk, and compliance across HIPAA, SOC 2, and NIST, collaborating with IT, Security, Privacy,... 
    Remote job
    Contract work

    Eightelevengroup

    Brooklyn, NY
    3 days ago
  • Trustmark in Ridgeland, MS is seeking an IT GRC Analyst to oversee governance, risk, and compliance activities. The role includes coordinating compliance efforts, executing IT assessments, and developing policies. The ideal candidate will hold a Bachelor's in information... 
    Remote job

    Trustmark

    Ridgeland, MS
    1 day ago
  • Medasource is seeking an IT GRC Analyst to join our IT Security and Governance team on a 6-month contract-to-hire basis, working remotely within the USA...  ...role focuses on security governance, regulatory compliance, risk management, audit readiness, policy administration... 
    Remote job
    Contract work

    Medasource

    Brooklyn, NY
    3 days ago
  •  ...Company data and information technology assets by supporting governance, risk, and compliance activities, including security policy and standards...  ...and information security products and technologies such as GRC platforms, central logging systems, file integrity monitoring... 
    Full time
    Work at office
    Local area
    Remote work
    Monday to Friday

    Best Western

    Phoenix, AZ
    1 day ago
  •  ...Cybersecurity Governance, Risk & Compliance (GRC) Analyst We're looking for a Cybersecurity Governance, Risk & Compliance (GRC) analyst who will be responsible for maintaining policies, assessing risks, supporting audits, regulatory requirements, third-party reviews... 
    Remote work

    Quidax

    United States
    5 days ago
  • $95k - $105k

     ...Description Job Description Sr. GRC Analyst About Subsplash Subsplash...  ...to advance security and risk operations. In this role,...  ...We are building an AI-first compliance function, and this role is expected...  ...cadence. 2. Access Governance & Identity Management User... 
    Temporary work
    Currently hiring
    Remote work
    Relocation

    Subsplash

    Indianapolis, IN
    5 days ago
  • United States Digital Space LLC is seeking a Senior InfoSec GRC Analyst for a fully remote, international role. You will own governance, risk, and compliance across the ISMS, drive ISO 27001 and SOC 2 audits, and review customer security requirements to enable safe production... 
    Remote job

    United States Digital Space LLC

    New York, NY
    1 day ago
  • Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience... 
    Remote work
    Flexible hours

    Itlearn360

    New York, NY
    12 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!