Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Analyst

NetCov

GRC Analyst

Network Coverage is seeking talented and experienced Analysts to join our growing GRC Team. Candidates will primarily work from home, however occasional dispatch may be required for client-facing meetings, presentations, and consultations and/or training.

Applicants must have 2-4 years of experience in an Information Security role for this position. It is essential to demonstrate a strong working knowledge of Information Security and regulatory standards, especially focusing on CMMC (800-171 rev2) and the CMMC ecosystem. Effective communication with clients and team members, as well as the efficient resolution of time-sensitive issues, are mandatory skills.

A GRC Analyst working within the Network Coverage Governance, Risk and Compliance Team will be expected to work within deadlines and will adjust to ever-changing client needs and scenarios within a fast-paced environment.

Level: Mid-Level

Reports To: GRC Team Lead

Basic Scope and Function:

As a GRC Analyst at Network Coverage, you will be part of the GRC Team, and your expertise will be an integral part of our all-encompassing V-CISO deliverable with a strong focus on CMMC implementation (NIST 800-171 rev2). You be working closely with team members and clients in various locations across the US and overseas and will fulfill the role of subject matter expert, advising upon the on the most effective approach to security, regulatory compliance and continuously developing and helping to implement Network Coverage's targeted approach. As a GRC Analyst, you will be responsible for Security Auditing, Readiness Assessment, Policy Writing, Risk Assessment, client onboarding and coordination of implementation treatment resulting from GAP assessment. As a technical solution provider, you will function as the subject matter expert and deliver a highly comprehensive Plan of Action and Milestones and may be expected to report on a scheduled cadence in a client facing capacity, under the guidance of the GRC Team Leadership.

Due to the nature of the work, flexible work hours may also be required if requested for client onsite or after-hours support of accounts in differing regions.

Primary/Essential Duties and Key Responsibilities:

  • Interface with client points of contact as required for onboarding/post sales activity and/or recurring check ins and inquiries.
  • Continuously monitor and triage requests flowing through an inbound ticket queue.
  • Participate in the design and execution of risk assessments and security audits.
  • Participate in the management of employee awareness campaigns for both staff and clients, including phishing simulations and awareness training.
  • Perform CMMC Readiness assessment against 110 controls, delivering a comprehensive SSP and POAM with assisted attestation and SPRS reporting.
  • Assist clients with their assessments with C3PAOs and 3PAOs.
  • Create and Maintain network and data flow diagrams
  • Maintain up-to-date detailed knowledge of the IT security industry including awareness of new or revised security solutions, regulatory requirements, improved security processes, and the development of new attacks and threat vectors.
  • Document best practices and user guides using available collaboration tools and workspaces.
  • Develop and maintain both internal and client-facing documentation, policy libraries and delivery metrics for end-to-end client security and compliance.
  • Provide timely, detailed, and complete reports on vulnerabilities, security events and incidents in a client facing setting.
  • Triage internal security and permissions requests from staff, including but not limited to systems access and employee terminations.
  • Oversee upkeep of internal SOP, ensuring adjustments to protocol are made as tools and methods evolve.
  • Perform QA workflow as necessary to improve upon consistency of product and client experience.
  • Coordinate resources and/or route audit requests appropriately for high volume or regulated client points of contact.
  • Ability to manage a changing and evolving workload and function as decision-maker where needed.
  • Provide after-business hours support if requested and as applicable to geographically distributed client base.
  • Perform other duties and tasks as assigned.

Knowledge, Skills and Abilities (KSAs) Required:

  • Strong problem-solving, analytical skills and the ability to work autonomous.
  • Excellent customer service skills, including understanding how to de-escalate, how to soothe and how to deliver the most efficient solution.
  • Strong communication skills, both verbal and written.
  • Familiarity with regulatory frameworks such as NIST/CMMC, ISO 27001, HIPAA/Hitech, GDPR are a big plus.
  • Strong organizational, operational, and inter-personal skills
  • Strong familiarity with Windows desktop and server operating systems.
  • Strong familiarity with Microsoft Office 365 and Azure Active Directory support and implementation.
  • Strong understanding of networking concepts, familiarity with routers, firewalls, access points, IDS/IPS and VPN.
  • Familiarity with Email threat protection tools and concepts.
  • Familiarity with RMM and asset management tools are a big plus.
  • Understanding of tools and processes used in security monitoring and incident response
  • Experience with Endpoint Detection & Response (EDR) tools
  • Ability to understand vulnerabilities at a technical level and capable of recommending and effectively communicating mitigation strategy
  • Ability to communicate and write in English professionally
  • Reliable personal transportation for use in traveling to clients' offices is essential.

Minimum Experience and Education Required:

  • 2-4 years of experience working in an Information Security capacity.
  • No College Education Required.
  • CompTIA Security+ or similar.
  • High School Diploma or Accredited GED.
  • CMMC RP/RPA/CCP will be considered preferentially.

Supervisory/Managerial Experience and Responsibility:

  • No supervisory or managerial experience required.
  • No supervisory or managerial duties in this role.

Work Environment:

Work is primarily performed in a remote capacity and will require the use of video conferencing software along with a company issued webcam. Work involves operation of computer equipment for 8 hours or more daily.

Network Coverage remote team members must ensure the availability of a stable, reliable, and secure internet connection with adequate bandwidth to support video calls as needed throughout the course of their shift and while performing on-call duties.

Physical Requirements:

  • Sitting
  • Standing
  • Moving of self
  • Moving of equipment
  • Communicating
  • Visual acuity for driving and computer work
  • Kneeling
  • Crawling
  • Reaching
  • Stooping
  • Lifting
  • Pulling

Job Type: Full-time

Vacancy posted 10 hours ago
Similar jobs that could be interesting for youBased on the GRC Analyst in United States vacancy
  • $130k - $216k

     ...listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Sr. ServiceNow GRC Business Analyst based in the United States. This role is a senior-level consulting position focused on leading ServiceNow-driven... 
    Suggested
    Remote job
    Full time
    Temporary work

    jobgether

    United States
    6 days ago
  •  ...Liberty Personnel Services, Inc. is seeking a motivated GRC Analyst in Wilmington, Delaware, to support the modernization of the Governance, Risk, and Compliance program. The ideal candidate will drive migration from the current Archer platform to a new GRC solution, design... 
    Suggested

    Liberty Personnel Services, Inc.

    Wilmington, DE
    1 day ago
  •  ...Gilder Search Group is looking for a Sr. GRC Analyst focusing on Third-Party & Human Risk Management in Atlanta, Georgia. This role involves risk analysis, compliance assessments, vendor management, and developing security awareness training. The ideal candidate has 6-... 
    Suggested

    Gilder Search Group

    Atlanta, GA
    4 days ago
  • BancFirst Corporation is seeking a full-time Risk Management professional in Oklahoma City, OK. The candidate will assist in developing and administering the Risk Management Program, including risk assessments and tracking mitigation plans. The ideal applicant should possess...
    Suggested
    Full time

    BancFirst

    Oklahoma City, OK
    4 days ago
  •  ...A governmental agency in Arizona is seeking a Governance, Risk, and Compliance Analyst. This hybrid position requires strong knowledge in NIST 800-53 and Risk Management Framework (RMF). The ideal candidate will perform risk assessments, manage audit documentation, and... 
    Suggested
    Full time
    Contract work

    SR International

    Phoenix, AZ
    4 days ago
  •  ...Itlearn360 is seeking an experienced Third Party Governance, Risk and Compliance (GRC) Analyst in Los Angeles, CA. The ideal candidate should have at least three years of experience, preferably with Big 4 consulting or in regulated industries. This role involves executing... 

    Itlearn360

    Los Angeles, CA
    2 days ago
  •  ...Join to apply for the Junior GRC Risk Analyst role at Jobright.ai . Jobright is an AI-powered career platform that helps job seekers discover top opportunities in the US. We are NOT a staffing agency. Jobright does not hire directly for these positions; we connect you... 
    Full time

    jobright.com

    Durham, NC
    4 days ago
  •  ...Gilder Search Group is looking for a Sr. GRC Analyst to manage Third-Party & Human Risk while ensuring risks are identified and treated satisfactorily. The role requires 6-8 years in risk assessment, with a bachelor's degree and required certifications expected. You'll... 
    Flexible hours

    Gilder Search Group

    Phoenix, AZ
    10 hours ago
  • 6AM City, LLC is seeking a Policy Assessor (GRC Analyst / Third Party Risk Management) to work in Atlanta, GA, on a hybrid basis. The role involves reviewing regulatory requirements and assessing compliance documents, requiring a strong background in information security... 

    6AM City

    New York, NY
    2 days ago
  •  ...Sky Mavis seeks a Sr. GRC Analyst in Phoenix, AZ, to manage Third-Party and Human Risk Management. This analytical role involves vendor risk assessment, security awareness training, and compliance evaluation, ensuring holistic risk management. Candidates should have significant... 

    Sky Mavis

    Phoenix, AZ
    4 days ago
  • $80 - $82 per hour

     ...Itlearn360 is seeking a Sr GRC Analyst in Santa Clara, CA, responsible for vendor risk assessments across various security domains and supporting customer audit requests. The perfect candidate will have a Bachelor's Degree in Technology or Risk Management and relevant... 
    Hourly pay

    Itlearn360

    Santa Clara, CA
    4 days ago
  •  ...Radar Senior GRC Analyst Radar is the global leader in geolocation, with geofencing SDKs, maps APIs, and AI-enabled solutions for marketing, fraud, and operations teams. Despite our growth and scale, we're still just getting started. That's where you come in.... 
    Work at office
    Remote work

    RADAR

    New York, NY
    10 hours ago
  •  ...environment, demand excellence, and want to help build the future of finance, we invite you to join us. The Role Rogo is hiring a GRC Analyst to support our customer trust, security assurance, and compliance programs as we scale globally. This role plays a critical part... 

    Rogo

    New York, NY
    3 days ago
  • $60k - $75k

     ...managing compliance, and helping keep cybersecurity and government contract requirements on track? Qualified Staffing is seeking a GRC Analyst for our client in Macon, GA. This position will support cybersecurity compliance, risk management, audit readiness, and... 
    Contract work
    Relocation
    Relocation package
    Monday to Thursday

    Qualified Staffing

    Macon, GA
    4 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst We're looking for experienced GRC professionals to help build and evaluate AI systems that reason about security, risk, and compliance. At Alignerr, we partner with the world's leading AI research labs — and your real-world... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    United States
    2 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst Location: Middleton, Wisconsin Hybrid: Travel to client office might be required on case basis. Client is seeking a GRC Analyst to lead our governance, risk, and compliance initiatives. This role will be instrumental... 
    Work at office

    Group Nine LLC

    Middleton, WI
    10 hours ago
  •  ...Governance, Risk & Compliance (GRC) Analyst We're partnering with the world's leading AI research labs to build smarter, safer AI — and we need practitioners who know how compliance and risk management actually work inside real organizations. As a GRC Analyst, your... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Worldwide
    Flexible hours

    Alignerr

    United States
    2 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst We're looking for experienced GRC professionals to help train and evaluate cutting-edge AI systems. At Alignerr, we partner with the world's leading AI research labs — and we need practitioners who understand how security... 
    Ongoing contract
    Freelance
    Remote work
    Flexible hours

    Alignerr

    United States
    3 days ago
  •  ...A leading financial services firm in Jacksonville is seeking a TPDD Analyst for Information Security GRC. The role involves producing security metrics, maintaining policies, and assisting with regulatory inquiries. A degree in Information Security or related field is... 

    Intercontinental Exchange Holdings, Inc.

    Jacksonville, FL
    10 hours ago
  • $94k - $123.9k

     ...secure, compliant, and scalable SAP environment. Perform security and compliance assessments and support the ongoing evolution of the SAP GRC (Governance Risk Compliance) environment, ensuring risks are accurately identified, assessed, and mitigated. Ruleset Governance &... 
    Temporary work

    Lennox

    Richardson, TX
    10 hours ago
  •  ...seeking an Information Security Governance Risk and Compliance Analyst for a hybrid position in Okemos, MI. The role involves conducting...  ...security standards like GDPR and HIPAA, and overseeing the enterprise GRC platform. Candidates should have a bachelor's degree in IT or... 

    Deltadentalin

    Okemos, MI
    10 hours ago
  •  ...GRC Analyst HYDAC is a family-owned and operated business with a vibrant and rewarding working environment for our employees across the country. Our goal is to provide quality products, components and services that meet our customer expectations while being committed... 
    Temporary work
    Work at office
    Local area
    Worldwide
    Relocation

    Hydac International GmbH

    Freemansburg, PA
    2 days ago
  • $130k

     ...SAP GRC Analyst / SAP Security Analyst - 1796 Location: Monday - Friday - Onsite in Richardson, TX Employment Type: Direct Hire - Full-Time Employment Salary Range: $130K + Bonus Residency Requirements: US Citizens and all other parties authorized to work in the US are... 
    Full time
    Monday to Friday

    PlacingIT

    Richardson, TX
    4 days ago
  •  ...Trustmark in Ridgeland, MS is seeking an IT GRC Analyst to oversee governance, risk, and compliance activities. The role includes coordinating compliance efforts, executing IT assessments, and developing policies. The ideal candidate will hold a Bachelor's in information... 
    Remote work

    Trustmark

    Ridgeland, MS
    1 day ago
  •  ...MVA Brand, located in Huntersville, NC, is seeking a detail-oriented Compliance Analyst I to join their Governance, Risk, and Compliance team. This entry-level role focuses on supporting compliance initiatives aligned with CMMC, NIST 800-171, and ISO 27001 frameworks.... 
    Temporary work

    MVA Brand

    Charlotte, NC
    10 hours ago
  • $130k - $180k

     ...is building a cutting‑edge security compliance program aligned with FedRAMP, SOC2, PCI, HIPAA, GDPR, and other frameworks. As a GRC Analyst you’ll help manage these initiatives using tools such as Kubernetes, GCP, AWS, Terraform, and others. Responsibilities Lead compliance... 
    Local area
    Flexible hours

    Neier Inc

    Washington DC
    4 days ago
  • $135k - $165k

     ...platform and customer relationships. As we continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and risk management programs. Role Overview Ivo is seeking a detail-oriented and... 
    Contract work
    Flexible hours

    Icehouseventures

    San Francisco, CA
    4 hours ago
  •  ...Job Title: GRC (3rd Party Risk) Analyst Duration: 12 - 24 Month Project Engagement Role Summary: The GRC Analyst is responsible for managing Client's governance, risk, and compliance functions, with a specific focus on third-party risk management. This role ensures... 
    Remote work

    Datamtx LLC

    United States
    3 days ago
  • $189k - $225k

     ...About the Role The GRC Analyst, Federal & Customer Programs is responsible for the hands‑on analysis, documentation, and operational execution of the company's security governance, risk, and compliance obligations. This role sits at the intersection of customer contracts... 
    Ongoing contract
    Contract work
    For subcontractor
    Work at office
    3 days per week

    GoToMeeting

    Washington DC
    4 days ago
  •  ...Forrester Research, based in Cambridge, MA, is seeking a Senior Analyst to deliver strategic advice and conduct research for risk management leaders. The ideal candidate will possess strong knowledge of risk practices, cyber risk quantification, and excellent communication... 

    Forrester

    Cambridge, MA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!