Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Analyst

$74.58k - $120k

Versatrans Division Tyler Tech

GRC Analyst

Apply Online

Tyler Technologies is seeking a Governance, Risk, and Compliance (GRC) Analyst to support our Data & Insights (D&I) solutions within the Security team. This role offers a meaningful opportunity to own and evolve the compliance posture of Tyler's D&I cloud platform, with a primary focus on sustaining and strengthening our FedRAMP Moderate Authorization to Operate (ATO) in an evolving regulatory landscape. In this role, you will serve as a central driver of audit readiness, continuous monitoring, and compliance program execution-partnering closely with Security, Engineering, Infrastructure & Release (TIRE), Legal, Privacy, and external assessors. You will operate in a fast-paced, results-driven environment where strong coordination, documentation quality, and risk-informed decision-making are essential to delivering secure, compliant, and resilient cloud services. The D&I team serves as Tyler Technologies' central hub for data, reporting, analytics, and artificial intelligence capabilities. Our teams build and maintain the foundational services and solutions that enable data-driven innovation across Tyler's product portfolio. We empower teams throughout the organization to incorporate advanced analytics, AI, and data-driven features into their products, ultimately helping government agencies make better decisions and serve their communities more effectively. Team members contribute their expertise to reduce complexity, introduce innovative solutions, and advance Tyler's data-driven future.


Location

Seattle, Washington | Remote

Responsibilities

  • Own FedRAMP Moderate authorization sustainment and audit readiness. Managing continuous monitoring (ConMon), POA&Ms, annual assessments, evidence quality, and overall ATO health.
  • Lead readiness for evolving FedRAMP standards, including FedRAMP 20x. Tracking program changes, identifying compliance gaps, and coordinating documentation and process updates.
  • Serve as the primary compliance program coordinator for the D&I Security team. Partnering across Security, Engineering, Infrastructure & Release (TIRE), Legal, Corporate Security and Privacy, and external assessors to deliver consistent, audit-ready outcomes.
  • Own FedRAMP change management and authorization boundary governance. Managing Security Impact Analyses (SIAs), Significant Change Requests and Notifications (SCRs/SCNs), authorization boundary documentation, and federal / Authorizing Official (AO) communications.
  • Support risk-based decision-making. Documentation of control exceptions, risk acceptances, and compensating controls in alignment with FedRAMP and organizational governance.
  • Coordinate external assurance activities, including SOC 2 Type II assessments. Managing auditor engagement, evidence collection, findings tracking, and alignment with existing FedRAMP/NIST controls.
  • Maintain the system-of-record for compliance documentation and artifacts. Owning the System Security Plan (SSP), ConMon plan, control narratives, diagrams, and appendices to ensure accuracy, traceability, and defensibility.
  • Drive multi-framework compliance alignment across regulated environments. Supporting FedRAMP, CJIS, HIPAA, and GDPR through gap identification, baseline documentation, and evidence reuse.
  • Plan and execute internal compliance assessments. Managing annual OWASP SAMM re-assessments, periodic Cloud Security Assessments (AWS Well-Architected), and internal CJIS audits to measure maturity and prevent compliance drift.
  • Support D&I's cloud security and Tyler's security maturity initiatives. Managing applicable assessments and re-assessments, and aligning outcomes with broader security and compliance goals.
  • Continuously improve compliance processes and maturity. Reducing manual effort, improving evidence quality, and preparing the organization for increased automation and reporting expectations.

Qualifications

Soft Skills
  • Strong organization and prioritization skills. Ability to manage continuous monitoring, POA&Ms, evidence collection, change tracking, and audit deliverables across overlapping timelines without losing accuracy.
  • Clear, accurate written and verbal communication. Ability to document controls and evidence clearly and explain compliance requirements, risks, and decisions to engineers, auditors, customers, and non-technical stakeholders.
  • Collaborative, cross-functional working style. Comfort partnering with Security, Engineering, Infrastructure, Legal, Privacy, and external assessors to drive consistent, audit-ready outcomes.
  • Detail-oriented with a systems-level perspective. Ability to track control requirements, dependencies, and boundary impacts while understanding how individual updates affect overall authorization health.
  • Reliability and accountability. Consistently follows through on assigned work, maintains accurate records, meets deadlines, and communicates status, risks, or blockers early.
  • Comfort working within structured frameworks and deadlines. Ability to operate effectively within FedRAMP, NIST, SOC 2, and similar frameworks, including audits, assessments, and recurring reporting cycles.
  • Practical problem-solving mindset. Able to identify gaps, inconsistencies, or risks in documentation or processes and work with others to resolve them pragmatically.
  • Proactive learning and openness to feedback. Willingness to build expertise in FedRAMP, NIST, CJIS, HIPAA, GDPR, and regulatory requirements over time and incorporate feedback into work.
  • Adaptability and resilience. Ability to adjust to changing regulatory guidance, audit findings, and shifting priorities while maintaining quality and professionalism.
  • Stakeholder- and trust-focused mindset. Appreciation for how strong compliance practices support customer trust, audit confidence, and long-term platform credibility.
Tools and Technologies
  • FedRAMP Moderate compliance and authorization tooling, including System Security Plans (SSPs), control narratives, continuous monitoring (ConMon) deliverables, POA&Ms, SARs, and other annual assessment artifacts. Experience working within FedRAMP repositories and maintaining audit-ready system-of-record documentation.
  • NIST-based security frameworks, particularly NIST SP 800-53 Rev. 5, with the ability to map controls to technical and procedural implementations, evaluate control inheritance, and support baseline tailoring across regulated environments.
  • Experience supporting regulated compliance programs, including FedRAMP Moderate, CJIS, SOC 2 Type II, HIPAA, and GDPR, with an emphasis on overlap analysis, evidence reuse, and consistency across frameworks.
  • AWS cloud environments (working knowledge), including IAM, CloudTrail, AWS Config, Security Hub, GuardDuty, and VPC networking concepts, sufficient to assess compliance impact, authorization boundary changes, and shared responsibility considerations (not hands-on infrastructure ownership).
  • Identity and access management concepts, including familiarity with NIST SP 800-63, 800-63A, 800-63B, and 800-63C; identity proofing, authentication assurance levels (IAL/AAL/FAL); federated identity models (SAML, OIDC, OAuth 2.0); and privileged access management fundamentals.
  • Security monitoring and audit evidence sources, including SIEM and centralized logging platforms (e.g., Sumo Logic or equivalent), with experience evaluating alerting, log retention, and evidence quality for continuous monitoring and audit support.
  • Vulnerability management workflows, including familiarity with scanning tools (e.g., Nessus, AquaSec, Invicti, Qualys, or equivalent), risk rating methodologies, remediation tracking, and POA&M lifecycle management in compliance-driven environments.
  • Change management and security impact analysis processes, including Security Impact Analyses (SIAs), Significant Change Requests (SCRs/SCNs), authorization boundary documentation, and coordination of approval workflows with internal and external stakeholders.
  • Secure development lifecycle (SDLC) and configuration management concepts, aligned with NIST SA, CM, and SI control families, with sufficient understanding to evaluate engineering practices, CI/CD security signals, and control effectiveness without acting as a primary implementer.
  • Collaboration and documentation platforms, including Confluence and Jira for compliance tracking, evidence coordination, and audit workflows, and GitHub (or equivalent) for policy versioning, evidence references, and change traceability.
  • Basic automation and reporting skills, i ncluding the use of spreadsheets, lightweight scripting, or GRC platform automation to improve evidence accuracy, reporting consistency, and delivery timelines.
  • Ability to pass a federal background check and obtain and maintain CJIS clearance required
Other
  • Bachelor's degree in Computer Science, Engineering, Mathematics, Information Systems, or a related field preferred
  • Valued Certifications: CISSP, CCSP, CRISC, or CISA. Cloud or identity-focused certifications (e.g., AWS Security Specialty) are a plus. Equivalent experience in regulated, compliance-driven environments is valued over specific credentials.
Candidates with less experience directly applicable to this position will be considered. You belong here! Not everyone checks every single box, and we encourage you to apply.

State-Specific Salary Range Disclosure Requirements

Salary will generally fall between $74,575 - $120,000 before adjustment for geographic differences. Recruiter can confirm if position is incentive eligible.

Taking Care of You & Your Family

Your health and well-being are important to us. That's why we invest in our team members by offering competitive benefits to support their health and financial wellness. Learn more about how we care for our people.

Tyler is subject to regulations, guidelines, and/or client requirements relating to the qualifications of Tyler personnel performing certain client work. Because of the nature of this position, it is a requirement that the candidate can successfully pass a federal background check at the time an offer is extended and over the course of employment with Tyler.

Apply Online

Requisition Number:2026-8554

#LI-Remote

#LI-SB1

Tyler Technologies is proud to be an equal opportunity employer. All qualified applicants will receive consideration without regard to race, creed, gender, marital status, sexual orientation, citizenship status, color, religion, national origin, age, disability, protected veteran status, or any other status protected under local, state, or federal laws. If you require reasonable accommodation for any part of the application or hiring process due to a disability, please submit your request by emailing View email address on click.appcast.io or by calling View phone number on click.appcast.io. Please keep in mind these methods are reserved for individuals who require accommodation due to a disability.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the GRC Analyst in Yarmouth, ME vacancy
  • Summit Utilities We are pleased to offer an exciting opportunity for a Regulatory Affairs Specialist to work in a hybrid capacity from one of our offices in Arkansas, Maine, Missouri, Oklahoma, or remotely from Texas. Position Summary The Regulatory Affairs Specialist ...
    Suggested
    Work experience placement
    Work at office
    Local area
    Remote work

    Summit Utilities

    Yarmouth, ME
    3 days ago
  • Overview The position of Regulatory Affairs Specialist II is within Abbott's Infectious Disease business unit. In this role you will prepare documentation for EU Technical Files and international product registrations. Responsibilities Responsible for technical writing...
    Suggested
    Work at office

    GForce Life Sciences

    South Portland, ME
    3 days ago
  •  ...Overview We are seeking a full-time Business Analyst at Garmin's location in Yarmouth, ME. This role requires you to currently live in ME. No relocation available. In this role, you will be responsible for gathering, documenting and effectively communicating user... 
    Suggested
    Full time
    Live in
    Relocation

    Garmin International Inc

    Yarmouth, ME
    2 days ago
  •  ...Overview We are seeking a full-time Senior Business Analyst at our Yarmouth, ME location. This role requires you to currently live in ME. No relocation available. In this role, you will be responsible for serving as the bridge between business stakeholders and technical... 
    Suggested
    Full time
    Live in
    Local area
    Remote work
    Relocation

    Garmin

    Yarmouth, ME
    2 days ago
  • $71k - $125k

     ...strong relationships across departments to support compliance initiatives. Leading compliance-related projects and mentoring junior analysts. Applying sound judgment in evaluating complex compliance scenarios. Clearly conveying compliance requirements and findings to... 
    Suggested
    Odd job
    Work experience placement
    Work at office
    Night shift

    KeyCorp

    Portland, ME
    4 days ago
  • $73k - $78k

    A leading housing compliance organization is seeking a Compliance Specialist responsible for ensuring compliance within multi-state affordable housing properties. The ideal candidate will work remotely, conducting site visits as needed, and must have certifications in HUD...
    Full time
    Remote work

    A Hiring Company

    Portland, ME
    3 days ago
  • $90.26k - $125k

     ...Sr. Sales Operations Analyst Apply Online A Sr. Sales Operations Analyst collects, cleans, and interprets complex sales data to identify trends, enhance performance, and drive revenue growth. They create actionable reports, build dashboards, and support forecasting... 
    Work at office
    Local area
    Remote work

    Tyler Technologies

    Yarmouth, ME
    4 days ago
  • Overview Signature is looking to add a Field Consultant for Coastal Maine. Get in Front of Our Recruiter Faster! To ensure your application is reviewed quickly, apply directly on our careers page: Career Site For over 30 years, Signature Companies has been an industry ...
    Extra income
    For contractors
    Local area

    Signature Companies

    Portland, ME
    2 days ago
  •  ...accuracy of previously collected data, and identifies use of building and building special features. Governance, Risk, and Compliance (GRC) Analyst Tyler Technologies is seeking a GRC Analyst to support our Data & Insights solutions within the Security team. This role offers... 
    Contract work
    Temporary work
    Summer work
    Internship
    Work at office
    Local area

    Tyler Technologies

    Yarmouth, ME
    3 days ago
  • $60k

     ...Compliance Analyst - Supervision This position uses independent judgement and discretion to ensure all Registered Representatives adhere...  ...: ACA Group is the leading governance, risk, and compliance (GRC) advisor in financial services. We empower our clients to... 
    Work experience placement
    Summer work
    Work at office
    Flexible hours

    ACA Group

    Portland, ME
    8 hours ago
  • A leading pharmaceutical company is seeking a Regulatory Affairs Specialist II to prepare documentation for EU Technical Files and international product registrations. Applicants should possess a Bachelor's degree in a related technical field and have over 4 years of experience...

    Planet Pharma

    South Portland, ME
    2 days ago
  • Commercial and personal line insurance carriers rely on EXL as a key business partner through our Castle High Value and EXL Risk Control service offerings. We offer a variety of field inspections and risk control services to support our clients’ underwriting processes....
    For contractors
    Work at office
    Local area
    Work from home

    EXL

    Portland, ME
    3 days ago
  •  ...Quality Assurance Analyst Apply Online The QA Analyst will build and demonstrate product expertise as well as a broader knowledge of QA practices, testing methodologies and multiple modules. The QA Analyst is responsible for using this knowledge to perform daily... 
    Work experience placement
    Work at office
    Local area

    Tyler Technologies

    Yarmouth, ME
    1 day ago
  •  ...Overview Tyler Technologies is looking for a Marketing Data & Reporting Analyst to support the development of scalable data pipelines and reporting solutions that enable data‑driven marketing operations. This role is focused on data integration, transformation, and dashboard... 
    Work experience placement
    Local area

    Tyler Technologies

    Yarmouth, ME
    2 days ago
  • $89.83k - $170.21k

     ...Actuarial Analyst III Location: This role requires associates to be in-office 1-2 days per week, fostering collaboration and connectivity, while providing flexibility to support productivity and work-life balance. This approach combines structured office engagement... 
    Temporary work
    Traineeship
    Work experience placement
    Work at office
    Local area
    2 days per week
    1 day per week

    Elevance Health

    South Portland, ME
    2 days ago
  • $60.9k - $67.31k

    Description Current staff, faculty/adjunct at Herzing University: l og into UKG and navigate to Menu Myself My Company View Opportunities to apply using the internal application process. The Clinical Placement & Compliance Coordinator (CPCC) supports the execution...
    Work at office

    Herzing University

    Portland, ME
    2 days ago
  •  ...suitability is preferred. Must be a U.S. Citizen without dual citizenship. This role is remote. The Risk, Quality, and Performance Analyst serves as the Risk, Quality, and Performance Analyst supporting an enterprise IT services contract. This role is responsible for... 
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work experience placement
    Remote work

    Maximus

    Portland, ME
    1 day ago
  •  ...Description Professional - Nonclinical Req #: 80910 Summary: The Reimbursement Analyst role is responsible for supporting and assuring accurate preparation and reconciliation of third-party payer logs and all related industry surveys. This position... 
    Immediate start
    Flexible hours

    Maine Medical Center

    Portland, ME
    2 days ago
  • $100k - $115k

     ...Job Description Omdia is looking for a Principal Analyst to join our highly respected advisory team which supports the world's largest Fortune technology companies. In this role you will work in an experienced global team that specializes in the technology partner ecosystem... 
    Work at office
    Local area
    Remote work
    Work from home
    Flexible hours
    3 days per week

    Informa TechTarget

    Portland, ME
    3 hours ago
  •  ...We aim to bring warmth and energy to everything we do. We are pleased to offer an exciting opportunity for a Regulatory and Rates Analyst to work in a hybrid capacity from one of our offices in Arkansas, Maine, Oklahoma, or remotely from Texas. POSITION SUMMARY Develops... 
    Work experience placement
    Work at office
    Remote work
    Work from home

    Summit Utilities

    Portland, ME
    3 days ago
  •  ...blockers to restore services and maintain operational continuity. - Support incident management activities as a Critical Incident Analyst (Tier 1), assisting with monitoring, ticket updates, and coordination during active incidents. - Generate and distribute... 
    Minimum wage
    Contract work
    Temporary work
    Work experience placement
    Remote work
    Shift work
    Night shift

    MAXIMUS

    Portland, ME
    4 days ago
  •  ...Investigative Analyst These positions are available throughout various USMS Districts in the Continental US (CONUS). The selectee of this position serves as an Investigative Analyst. You will be responsible for collecting and analyzing a variety of intelligence data... 

    US Government Jobs

    Portland, ME
    21 hours ago
  •  ...RxBenefits is hiring! As part of the Revenue Operations organization, the Manager, Strategic Pharmacy Analyst (SPA), will manage a team of diverse and highly skilled analysts who are consultative business partners to our Business Development teams. This role will be... 
    Contract work
    Temporary work
    Local area
    Remote work

    RxBenefits

    Portland, ME
    2 days ago
  • $80k

     ...Senior Business Analyst For Exchange Traded Fund Services The Apex Group was established in Bermuda in 2003 and is now one of the world's largest fund administration and middle office solutions providers. Our business is unique in its ability to reach globally, service... 
    Work at office
    Worldwide

    Apex Group

    Portland, ME
    4 days ago
  •  ...upon successful contract award to Maximus, availability of the position, and receipt of authorization to proceed. The Patching Analyst position provides enterprise-level patch tracking, compliance reporting, and audit support across on‑premises, cloud, and hybrid environments... 
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work experience placement
    Remote work

    Maximus

    South Portland, ME
    4 days ago
  •  ...I have a call with the manager on monday and will have more information on this role. Looking for senior data analyst with systems integration experience for an initial six month contract with possible extensions or conversion to a permanent employee of our client.... 
    Permanent employment
    Contract work
    Immediate start
    Remote work

    E-Solutions

    Freeport, ME
    4 days ago
  •  ...Chubb Benefits is seeking a Product Development Analyst to join our fast-paced, high energy, growing company. We are proud of our tradition of success in the insurance industry of over 100 years. Come join our team of hard-working, talented professionals! Job Summary The... 
    Contract work
    Work at office

    Chubb Benefits

    South Portland, ME
    2 days ago
  • SYNERGISTICIT is aware that the Job Market is Challenging due to almost 600,000 Tech Layoffs within the past 2 years due to which The Job market is flooded with thousands of laid off Techies who are competing with existing Jobseekers. For entry level Job seekers to get ...
    Immediate start
    Remote work

    SynergisticIT

    Portland, ME
    2 days ago
  • About Lantern Lantern is the specialty care platform connecting people with the best care when they need it most. By curating a Network of Excellence comprised of the nation's top specialists for surgery, cancer care, infusions and more, Lantern delivers excellent care...
    Full time

    Lantern

    Portland, ME
    3 days ago
  • $75k - $85k

     ...products that work with how providers run and grow their business.  About the Role We’re looking for a highly motivated and curious Analyst, Strategic Growth to join our team. This role will support critical business initiatives aimed at accelerating growth, improving... 
    Full time
    Work at office
    Local area
    Immediate start
    Remote work
    Flexible hours

    EverCommerce

    Portland, ME
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!

Related searches