Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Contract Information Security GRC Analyst

Chatham Financial

Job Description Overview We don't simply hire employees. We invest in them. When you work at Chatham, we empower you - offering professional development opportunities to help you grow in your career, no matter if you've been here for five months or 15 years. Chatham has worked hard to create a distinct work environment that values people, teamwork, integrity, and client service. You will have immediate opportunities to partner with talented subject matter experts, work on complex projects, and contribute to the value Chatham delivers every day. In this role you will The Information Security GRC Analyst with a Risk and Policy focus is responsible for assisting in the execution of the organization's security risk management program and supporting policy governance. This role takes the lead in conducting the security risk assessments for Chatham systems, vendors and business processes. This role is responsible for maintaining the technology and cybersecurity risks on the operational risk register; tracking issues and risk mitigation activities; and supports policy development. This role is also responsible for translating technical risks into business-relevant recommendations, recommending risk-based decisions, documenting decisions on risk treatment, tracking risk mitigation action plans to completion and reviewing systems/processes for policy compliance. Risk Assessment Execution: Conduct technology and security risk assessments for internal systems, product and technology projects using established frameworks (NIST SP 800-30, ISO 27005, etc.) Technology and Cybersecurity Risk Register Management: Maintain the technology risk register (includes Cybersecurity) documenting threats, vulnerabilities, impacts, likelihood, risk ratings, and treatment decisions; ensure consistent updates with stakeholder input Technology and Cybersecurity Risk Mitigation Tracking: Document risk treatment plans with action items, responsible parties, and target dates; track remediation progress; verify risk reduction upon closure Technology and Cybersecurity Policy Support: Support policy lifecycle activities including drafting, review, and updates; ensure policies align with industry standards such as NIST, ISO 27001, etc., Cybersecurity and Information Security Risk Metrics Development: Develop and report risk metrics and KRIs; analyze trends in risk posture; identify systemic issues requiring management attention Technology and Cybersecurity Risk Reporting/Communication: Translate technical risk findings into business-relevant language; prepare risk summaries for management review and decision-making Stakeholder Engagement: Partner with control owners, system owners, product team, technology team and business stakeholders to identify and assess risks throughout the system lifecycle. Your Impact Success in this role requires strong collaborative relationships across Chatham. The Information Security GRC Analyst partners closely with the Manager of Information Security GRC, and Information Security leadership to align risk priorities with security strategy. The analyst will interact on a regular basis with technology and information security control owners to ensure controls are properly designed, implemented, and monitored. The analyst engages with Operational Risk to integrate technology and cybersecurity risks into the operational risk framework and reporting. Finally, collaboration with external auditors during SOC 2 and regulatory examinations validates that risk management practices meet industry standards and client expectations. Contributors to your success Bachelor's degree, preferably in Information Security, Computer Science, Risk Management, or related experience in the field. 3-5+ years of experience in IT audit, IT risk management, executing security assessments, or experience in a related Technology, IT Audit or Data Governance role. Experience in supporting/coordinating company SOC 2 Trust Services Criteria audits or conducting SOC 2 audits. Experience in conducting technology and security risk assessments using NIST, ISO 27005, or similar methodologies. Strong understanding of Cybersecurity risks and mitigation strategies as well as functional experience with threat modeling, vulnerability analysis, and risk quantification and follow through. Knowledge of security frameworks: NIST CSF, NIST 800-53, ISO 27001, Center of Internet Security (CIS), SOC 2 Trust Services Criteria, Cloud Control Matrix (CCM). Knowledge of third‑party security assessments and/or data protection/impact assessments. Excellent analytical and written communication skills. Certifications preferred: CRISC, CDPSE, CISA, CISSP, ISO 27001 Lead Auditor/Lead Implementer. Other certifications considered: CGEIT, CCSK, CompTIA Security+, CompTIA CySA+, CISSP-Associate, GIA, C/GSEC, PMP/CAPM, AWS Cloud Practitioner, Azure Cloud Practitioner. * This is a contract position working 40 hours a week. #J-18808-Ljbffr Chatham Financial

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Contract Information Security GRC Analyst in Denver, CO vacancy
  • $75.8k - $113.8k

     ...career, and contribute to a secure future for generations. Northrop...  .... As an Industrial Security Analyst – Level 2 located in Aurora,...  ...PHYSEC, COMSEC, PERSEC, OPSEC, Contract Security, Security Education,...  ...submit clearance and access information using the appropriate... 
    Contract work
    For contractors
    Work at office
    Remote work
    Relocation
    Shift work

    Northrop Grumman

    Aurora, CO
    5 days ago
  • $80 per hour

     ...plans an... Show more $21.15 hourly Full-time Covenant Aviation Security (CAS) is seeking professional Security Guards to support...  ...overseeing and managing all aspects of physical, personnel, and information security operations in support of U.Government (USG) Sponsor require... 
    Suggested
    Hourly pay
    Permanent employment
    Full time
    Part time
    Relief
    Remote work
    Work from home
    Worldwide
    Flexible hours

    ZGF Architects

    Denver, CO
    4 days ago
  •  ...Job Description Job Description Experienced Cyber Security Specialist sought for Canadian services company. You will be supporting...  ..., and oversee remediation of threats. · Develop and enforce information security policies and procedures. · Monitor IT... 
    Suggested
    Live in

    Core Talent

    Centennial, CO
    5 days ago
  • The Security Operations Center (SOC) Analyst II serves as a mid‑level cyber defender responsible for continuous...  ...’s Degree in Computer Science, Information Assurance, Cybersecurity, or a closely...  ..., client requirements, contract-specific affordability, government... 
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Denver, CO
    2 days ago
  • $65k - $75k

     ...Sunflower Bank, N.A . is looking for an energetic, highly motivated individual to fill the position of a full-time Information Security Risk and Compliance Analyst at our Denver, CO location. The salary range for this position is $65,000 to $75,000 depending on... 
    Suggested
    Full time

    Sunflower Bank, N.A.

    Denver, CO
    6 days ago
  • $90.09k - $105.11k

     ...Job Description Job Description ZGF is seeking a motivated and collaborative  Information Security Analyst  to join our Technology team. We are open for this role to be based in one of ZGF’s offices (Portland, Seattle, Vancouver BC, Los Angeles, Denver, New York,... 

    ZGF Architects

    Denver, CO
    9 days ago
  • $78.9k - $123.3k

     ...environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal...  ...dashboards, and governance, risk, and compliance (GRC) platforms. Knowledge of cloud security compliance... 
    Permanent employment
    Full time
    Part time
    Work at office
    Local area
    Remote work

    Noblis

    Denver, CO
    4 days ago
  •  ...so, this opportunity may be the right fit for you! As a Security Operations Analyst I, you'll play a critical role in protecting Modivcare's...  ...2, SOX, and other regulatory requirements. Partner with Information Security, IT Operations, IT Risk, and Governance, Risk &... 
    Full time
    Temporary work
    Flexible hours

    Modivcare

    Denver, CO
    2 days ago
  • System One in Lakewood, CO is seeking a Governance Risk & Compliance Analyst to join their Global Information Security Office. This hybrid role involves supporting security governance, risk management, and compliance programs while contributing to policy development and... 
    Work at office

    System One

    Denver, CO
    5 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the...  ..., risk assessments, or security audits, your expertise is exactly...  ...Type : Hourly Contract Location : Remote Commitment...  ...workflows Background in information security, internal audit, or... 
    Contract work
    Hourly pay
    Ongoing contract
    Freelance
    Remote work
    10 hours per week
    Flexible hours

    Alignerr

    Denver, CO
    2 days ago
  • In 1986, Robert L. Nelson founded the information systems consulting firm of R.L. Nelson and...  ...joining our team as our newest Security Analyst.SUMMARYWe are seeking a dynamic and experienced...  ...Network Detective, Compliance Manager GRC, VulScan.Strong problem-solving, and... 
    Work at office
    Local area
    Flexible hours

    Vertilocity

    Englewood, CO
    2 days ago
  • 19-076 – Security Operations Center (SOC) Analyst II schriever air force base, United States | Posted on 07/16/2026 Sandy Mac Evolution LLC is a Veteran...  ...support for Collateral, Sensitive Compartmented Information, and Special Access Program environments. Key Responsibilities... 
    Full time
    Work at office
    Rotating shift

    SandyMacEvolution

    Denver, CO
    5 days ago
  • $85k - $95k

    IT Security Analyst Requisition ID: 31899 No of Openings: Posted Date: May 29, 2026 Job Function: Information Technology Description: Within our Corporate IT team in Denver, Leprino is seeking an IT Security Analyst to help protect and strengthen the technology that... 
    Work at office
    Local area
    Remote work

    Leprino Foods

    Denver, CO
    13 days ago
  • $40 per hour

    A leading cybersecurity company is seeking experienced professionals to evaluate AI-generated content and solve cybersecurity problems. This remote position allows flexibility in project choice and schedule, with compensation starting at $40 per hour. Candidates should ...
    Remote job
    Hourly pay

    DataAnnotation

    Denver, CO
    5 days ago
  • $56k - $80k

    Job Summary Our client is seeking a Security Analyst to join a security team responsible for maintaining compliance across a lab infrastructure environment. This role focuses on validating security compliance across hardware, software, and networking components used in... 
    Local area

    KellyMitchell Group

    Englewood, CO
    2 days ago
  • $40 per hour

     ...seeking experienced cybersecurity professionals to assist in training AI models. This remote role involves evaluating AI-generated security content and solving technical problems to enhance AI systems' accuracy. Required qualifications include 2+ years in cybersecurity,... 
    Remote job
    Hourly pay
    Flexible hours

    DataAnnotation

    Denver, CO
    5 days ago
  • Position Details Position Title: Security Operation Center (SOC) Analyst II Location: Schriever SFB, CO US Citizenship required. Security Clearance...  ...eligibility. Eligibility for access to Special Access Program Information. Willingness to submit to a Counterintelligence... 
    Work at office
    Remote work

    RedTrace Technologies

    Denver, CO
    3 days ago
  •  ...Governance Risk & Compliance Analyst System One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC Analyst is a member of the...  ..., Risk & Compliance function within the Global Information Security Office and supports the implementation of company wide... 
    Work at office
    Local area

    System One Holdings, LLC

    Denver, CO
    2 days ago
  • $105k - $130k

     ...our mission of creating opportunities for people where they live, learn, and work. CampusGuard, a Nelnet company, provides information security and privacy consulting and compliance services primarily for campus-based organizations including higher education... 
    Temporary work
    Fixed term contract
    Local area
    Remote work
    Work from home
    Home office

    Nelnet

    Denver, CO
    9 days ago
  • $130k - $180k

     ...closeout while maintaining alignment with project objectives, contract requirements, CRB standards, and client expectations Drive site...  ...credentials are preferred but not required Additional Information We are an equal opportunity employer and value diversity. All... 
    Contract work
    Full time
    For contractors
    For subcontractor

    CRB

    Denver, CO
    2 days ago
  • $80.2k - $111.3k

     ...response governance, and influences broader security architecture and operations based on...  ...procedural coaching to incident handlers and SOC analysts, elevating investigative techniques,...  ..., certifications, client requirements, contract-specific affordability, government... 
    Contract work
    Work experience placement
    Work at office

    ASM Research, An Accenture Federal Services Company

    Denver, CO
    5 days ago
  •  ...transactions, conducting pricing in line with underwriting guidelines, and working closely with clients to create reinsurance treaties and contract documentation. This role demands a professional with a strong technical background, commercial acumen, and the ability to... 
    Contract work

    Confidential

    Denver, CO
    5 days ago
  •  ...ROLE? We are seeking a Business Finance Analyst (Hybrid Finance & Project Controls) to...  ...at the intersection of business finance, contract management, and project controls,...  ...into operational insights Additional Information Dexterra is an Equal Opportunity Employer... 
    Contract work
    For subcontractor

    Jobr

    Denver, CO
    1 day ago
  • $2,203 per week

     ...Lancesoft Inc Pay: $2,203 per week Shift Information: Days - 5 days x 8 hours Contract Duration: 13 Weeks Start Date: 9/7/2026 About...  ...job Lancesoft has been chosen by Staffing Industry Analysts as one of the Best Staffing Firms to Work for. LanceSoft... 
    Contract work
    Long term contract
    Permanent employment
    Full time
    Temporary work
    Work at office
    Shift work

    TravelNurseSource

    Thornton, CO
    1 day ago
  • $87.7k - $157.8k

     ...value across the enterprise Gain broad exposure to vendor contracting, financial performance evaluation, and strategic decision-making...  ...based on analysis of statistical data and other pertinent information Research and analyze the impact from legislative changes... 
    Contract work
    Full time
    Part time
    H1b
    Work at office
    Remote work
    Work from home
    Flexible hours

    Centene Corporation

    Denver, CO
    3 days ago
  • $84.74k - $132.89k

    Anticipated End Date: 2026-08-11 Position Title: Actuarial Analyst II Job Description: Actuarial Analyst II Location: This role...  ...status, color, creed, disability, ethnicity, genetic information, gender (including gender identity and gender expression), marital... 
    Full time
    Temporary work
    Work experience placement
    Work at office
    Local area
    2 days per week
    1 day per week

    Elevance Health

    Denver, CO
    2 days ago
  • $50 - $60 per hour

     ...any currency conversions from USD. Only applicants in the United States will be considered for this role. This is an independent contract position. Referrals increase your chances of interviewing at DataAnnotation by 2x. Get notified about new Chief Actuary jobs in Colorado... 
    Contract work
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Denver, CO
    4 days ago
  • $105k - $155k

     ...electrical construction projects, strong leadership capabilities, and the ability to navigate complex project environments and government contracting requirements. Candidates with industrial construction experience and a background managing large-scale electrical installations... 
    Contract work
    Full time
    For contractors
    For subcontractor

    Kimmel & Associates

    Denver, CO
    2 days ago
  • $113.4k

     ...responsible for safeguarding Controlled Unclassified Information (CUI), managing defense contract obligations, and maintaining export control compliance...  ...Operations, Facilities, and other functions to ensure security, access, and incident reporting controls are effectively... 
    Contract work
    For contractors
    For subcontractor
    Work at office

    Air Methods

    Englewood, CO
    3 days ago
  • $172k - $258k

     ...Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved office locations can be found below...  ...compliance, and third‑party risk assessments. Experience implementing GRC tooling to support audit and compliance workflows.... 
    Work at office
    Local area

    Grant Thornton

    Denver, CO
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Contract Information Security GRC Analyst. Be the first to apply!