Contract Information Security GRC Analyst
Chatham Financial
Job Description Overview We don't simply hire employees. We invest in them. When you work at Chatham, we empower you - offering professional development opportunities to help you grow in your career, no matter if you've been here for five months or 15 years. Chatham has worked hard to create a distinct work environment that values people, teamwork, integrity, and client service. You will have immediate opportunities to partner with talented subject matter experts, work on complex projects, and contribute to the value Chatham delivers every day. In this role you will The Information Security GRC Analyst with a Risk and Policy focus is responsible for assisting in the execution of the organization's security risk management program and supporting policy governance. This role takes the lead in conducting the security risk assessments for Chatham systems, vendors and business processes. This role is responsible for maintaining the technology and cybersecurity risks on the operational risk register; tracking issues and risk mitigation activities; and supports policy development. This role is also responsible for translating technical risks into business-relevant recommendations, recommending risk-based decisions, documenting decisions on risk treatment, tracking risk mitigation action plans to completion and reviewing systems/processes for policy compliance. Risk Assessment Execution: Conduct technology and security risk assessments for internal systems, product and technology projects using established frameworks (NIST SP 800-30, ISO 27005, etc.) Technology and Cybersecurity Risk Register Management: Maintain the technology risk register (includes Cybersecurity) documenting threats, vulnerabilities, impacts, likelihood, risk ratings, and treatment decisions; ensure consistent updates with stakeholder input Technology and Cybersecurity Risk Mitigation Tracking: Document risk treatment plans with action items, responsible parties, and target dates; track remediation progress; verify risk reduction upon closure Technology and Cybersecurity Policy Support: Support policy lifecycle activities including drafting, review, and updates; ensure policies align with industry standards such as NIST, ISO 27001, etc., Cybersecurity and Information Security Risk Metrics Development: Develop and report risk metrics and KRIs; analyze trends in risk posture; identify systemic issues requiring management attention Technology and Cybersecurity Risk Reporting/Communication: Translate technical risk findings into business-relevant language; prepare risk summaries for management review and decision-making Stakeholder Engagement: Partner with control owners, system owners, product team, technology team and business stakeholders to identify and assess risks throughout the system lifecycle. Your Impact Success in this role requires strong collaborative relationships across Chatham. The Information Security GRC Analyst partners closely with the Manager of Information Security GRC, and Information Security leadership to align risk priorities with security strategy. The analyst will interact on a regular basis with technology and information security control owners to ensure controls are properly designed, implemented, and monitored. The analyst engages with Operational Risk to integrate technology and cybersecurity risks into the operational risk framework and reporting. Finally, collaboration with external auditors during SOC 2 and regulatory examinations validates that risk management practices meet industry standards and client expectations. Contributors to your success Bachelor's degree, preferably in Information Security, Computer Science, Risk Management, or related experience in the field. 3-5+ years of experience in IT audit, IT risk management, executing security assessments, or experience in a related Technology, IT Audit or Data Governance role. Experience in supporting/coordinating company SOC 2 Trust Services Criteria audits or conducting SOC 2 audits. Experience in conducting technology and security risk assessments using NIST, ISO 27005, or similar methodologies. Strong understanding of Cybersecurity risks and mitigation strategies as well as functional experience with threat modeling, vulnerability analysis, and risk quantification and follow through. Knowledge of security frameworks: NIST CSF, NIST 800-53, ISO 27001, Center of Internet Security (CIS), SOC 2 Trust Services Criteria, Cloud Control Matrix (CCM). Knowledge of third‑party security assessments and/or data protection/impact assessments. Excellent analytical and written communication skills. Certifications preferred: CRISC, CDPSE, CISA, CISSP, ISO 27001 Lead Auditor/Lead Implementer. Other certifications considered: CGEIT, CCSK, CompTIA Security+, CompTIA CySA+, CISSP-Associate, GIA, C/GSEC, PMP/CAPM, AWS Cloud Practitioner, Azure Cloud Practitioner. * This is a contract position working 40 hours a week. #J-18808-Ljbffr Chatham Financial
$75.8k - $113.8k
...career, and contribute to a secure future for generations. Northrop... .... As an Industrial Security Analyst – Level 2 located in Aurora,... ...PHYSEC, COMSEC, PERSEC, OPSEC, Contract Security, Security Education,... ...submit clearance and access information using the appropriate...Contract workFor contractorsWork at officeRemote workRelocationShift work$80 per hour
...plans an... Show more $21.15 hourly Full-time Covenant Aviation Security (CAS) is seeking professional Security Guards to support... ...overseeing and managing all aspects of physical, personnel, and information security operations in support of U.Government (USG) Sponsor require...SuggestedHourly payPermanent employmentFull timePart timeReliefRemote workWork from homeWorldwideFlexible hours- ...Job Description Job Description Experienced Cyber Security Specialist sought for Canadian services company. You will be supporting... ..., and oversee remediation of threats. · Develop and enforce information security policies and procedures. · Monitor IT...SuggestedLive in
- The Security Operations Center (SOC) Analyst II serves as a mid‑level cyber defender responsible for continuous... ...’s Degree in Computer Science, Information Assurance, Cybersecurity, or a closely... ..., client requirements, contract-specific affordability, government...Contract workWork at office
$65k - $75k
...Sunflower Bank, N.A . is looking for an energetic, highly motivated individual to fill the position of a full-time Information Security Risk and Compliance Analyst at our Denver, CO location. The salary range for this position is $65,000 to $75,000 depending on...SuggestedFull time$90.09k - $105.11k
...Job Description Job Description ZGF is seeking a motivated and collaborative Information Security Analyst to join our Technology team. We are open for this role to be based in one of ZGF’s offices (Portland, Seattle, Vancouver BC, Los Angeles, Denver, New York,...$78.9k - $123.3k
...environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal... ...dashboards, and governance, risk, and compliance (GRC) platforms. Knowledge of cloud security compliance...Permanent employmentFull timePart timeWork at officeLocal areaRemote work- ...so, this opportunity may be the right fit for you! As a Security Operations Analyst I, you'll play a critical role in protecting Modivcare's... ...2, SOX, and other regulatory requirements. Partner with Information Security, IT Operations, IT Risk, and Governance, Risk &...Full timeTemporary workFlexible hours
- System One in Lakewood, CO is seeking a Governance Risk & Compliance Analyst to join their Global Information Security Office. This hybrid role involves supporting security governance, risk management, and compliance programs while contributing to policy development and...Work at office
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the... ..., risk assessments, or security audits, your expertise is exactly... ...Type : Hourly Contract Location : Remote Commitment... ...workflows Background in information security, internal audit, or...Contract workHourly payOngoing contractFreelanceRemote work10 hours per weekFlexible hours
- In 1986, Robert L. Nelson founded the information systems consulting firm of R.L. Nelson and... ...joining our team as our newest Security Analyst.SUMMARYWe are seeking a dynamic and experienced... ...Network Detective, Compliance Manager GRC, VulScan.Strong problem-solving, and...Work at officeLocal areaFlexible hours
- 19-076 – Security Operations Center (SOC) Analyst II schriever air force base, United States | Posted on 07/16/2026 Sandy Mac Evolution LLC is a Veteran... ...support for Collateral, Sensitive Compartmented Information, and Special Access Program environments. Key Responsibilities...Full timeWork at officeRotating shift
$85k - $95k
IT Security Analyst Requisition ID: 31899 No of Openings: Posted Date: May 29, 2026 Job Function: Information Technology Description: Within our Corporate IT team in Denver, Leprino is seeking an IT Security Analyst to help protect and strengthen the technology that...Work at officeLocal areaRemote work$40 per hour
A leading cybersecurity company is seeking experienced professionals to evaluate AI-generated content and solve cybersecurity problems. This remote position allows flexibility in project choice and schedule, with compensation starting at $40 per hour. Candidates should ...Remote jobHourly pay$56k - $80k
Job Summary Our client is seeking a Security Analyst to join a security team responsible for maintaining compliance across a lab infrastructure environment. This role focuses on validating security compliance across hardware, software, and networking components used in...Local area$40 per hour
...seeking experienced cybersecurity professionals to assist in training AI models. This remote role involves evaluating AI-generated security content and solving technical problems to enhance AI systems' accuracy. Required qualifications include 2+ years in cybersecurity,...Remote jobHourly payFlexible hours- Position Details Position Title: Security Operation Center (SOC) Analyst II Location: Schriever SFB, CO US Citizenship required. Security Clearance... ...eligibility. Eligibility for access to Special Access Program Information. Willingness to submit to a Counterintelligence...Work at officeRemote work
- ...Governance Risk & Compliance Analyst System One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC Analyst is a member of the... ..., Risk & Compliance function within the Global Information Security Office and supports the implementation of company wide...Work at officeLocal area
$105k - $130k
...our mission of creating opportunities for people where they live, learn, and work. CampusGuard, a Nelnet company, provides information security and privacy consulting and compliance services primarily for campus-based organizations including higher education...Temporary workFixed term contractLocal areaRemote workWork from homeHome office$130k - $180k
...closeout while maintaining alignment with project objectives, contract requirements, CRB standards, and client expectations Drive site... ...credentials are preferred but not required Additional Information We are an equal opportunity employer and value diversity. All...Contract workFull timeFor contractorsFor subcontractor$80.2k - $111.3k
...response governance, and influences broader security architecture and operations based on... ...procedural coaching to incident handlers and SOC analysts, elevating investigative techniques,... ..., certifications, client requirements, contract-specific affordability, government...Contract workWork experience placementWork at office- ...transactions, conducting pricing in line with underwriting guidelines, and working closely with clients to create reinsurance treaties and contract documentation. This role demands a professional with a strong technical background, commercial acumen, and the ability to...Contract work
- ...ROLE? We are seeking a Business Finance Analyst (Hybrid Finance & Project Controls) to... ...at the intersection of business finance, contract management, and project controls,... ...into operational insights Additional Information Dexterra is an Equal Opportunity Employer...Contract workFor subcontractor
$2,203 per week
...Lancesoft Inc Pay: $2,203 per week Shift Information: Days - 5 days x 8 hours Contract Duration: 13 Weeks Start Date: 9/7/2026 About... ...job Lancesoft has been chosen by Staffing Industry Analysts as one of the Best Staffing Firms to Work for. LanceSoft...Contract workLong term contractPermanent employmentFull timeTemporary workWork at officeShift work$87.7k - $157.8k
...value across the enterprise Gain broad exposure to vendor contracting, financial performance evaluation, and strategic decision-making... ...based on analysis of statistical data and other pertinent information Research and analyze the impact from legislative changes...Contract workFull timePart timeH1bWork at officeRemote workWork from homeFlexible hours$84.74k - $132.89k
Anticipated End Date: 2026-08-11 Position Title: Actuarial Analyst II Job Description: Actuarial Analyst II Location: This role... ...status, color, creed, disability, ethnicity, genetic information, gender (including gender identity and gender expression), marital...Full timeTemporary workWork experience placementWork at officeLocal area2 days per week1 day per week$50 - $60 per hour
...any currency conversions from USD. Only applicants in the United States will be considered for this role. This is an independent contract position. Referrals increase your chances of interviewing at DataAnnotation by 2x. Get notified about new Chief Actuary jobs in Colorado...Contract workHourly payFull timePart timeRemote work$105k - $155k
...electrical construction projects, strong leadership capabilities, and the ability to navigate complex project environments and government contracting requirements. Candidates with industrial construction experience and a background managing large-scale electrical installations...Contract workFull timeFor contractorsFor subcontractor$113.4k
...responsible for safeguarding Controlled Unclassified Information (CUI), managing defense contract obligations, and maintaining export control compliance... ...Operations, Facilities, and other functions to ensure security, access, and incident reporting controls are effectively...Contract workFor contractorsFor subcontractorWork at office$172k - $258k
...Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved office locations can be found below... ...compliance, and third‑party risk assessments. Experience implementing GRC tooling to support audit and compliance workflows....Work at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Contract Information Security GRC Analyst. Be the first to apply!
- data analyst excel Denver, CO
- data visualization analyst Denver, CO
- entry level information security analyst Denver, CO
- remote data analyst Denver, CO
- report analyst Denver, CO
- data solutions analyst Denver, CO
- entry level data analyst no experience Denver, CO
- remote data analyst part time Denver, CO
- remote data analyst intern Denver, CO
- client data analyst Denver, CO



