Senior Analyst, Cybersecurity GRC
Next Step Staffing
Senior Analyst, Cybersecurity GRC, New York, NY
The Senior Analyst, Cybersecurity GRC will administer the completion of compliance-related client requests to assess security policies and procedures. The Senior Analyst will respond to inquiries on the security controls policy, processes, and procedures implemented for managed systems and applications, as well as support Third Party Risk Management (TPRM) and Governance and Risk functions in conducting vendor due diligence (initial, reassessments and ongoing monitoring) and supporting broader GRC efforts. This position is 100% Onsite and not open for Remote.
Senior Analyst, Cybersecurity GRC Responsibilities:
- Review and understand current IT Risk Management (ITRM) program framework and associated policies, standards, procedures, and processes.
- Prepare and respond to related compliance requests and web-shares including referencing evidentiary artifacts or other documentation.
- Complete external information security assessments, remediation efforts and support status tracking of assessment queues.
- Coordinate with external assessors and internal subject matter experts to address compliance inquiries and web-shares of security artifacts.
- Assist in further defining the process for completing information security control assessments.
- Support metrics and reporting of the Information Security Program through the collection and analysis of effectiveness security control measures.
- Develop understanding of control structure to support the creating or revising standard narratives/responses for client questionnaires (e.g., SIG).
- Work with the CISO, senior managers, managers and other internal stakeholders to report existing information security programs and ongoing security projects that address information security risks and compliance requirements.
- Manage competing deadlines and multiple external inquiries using effective organizational skills and attention to detail as demonstrated by prior work experience.
- Contribute to the creation of GRC related processes and procedures and relevant documents.
- Collaborate with InfoSec, Privacy and GRC management and internal subject matter experts to support coordination, tracking, and reporting of GRC team strategy and goals; and complete other tasks as assigned.
- Participate in efforts to evolve and streamline GRC solutions, processes and procedures.
- Develop and maintain the status tracking related to findings from information security assessments, Governance, Risk and Compliance, and TPRM due diligence/reassessment assessments and associated remediations.
Senior Analyst, Cybersecurity GRC Qualifications:
- Bachelor's degree (required) and at least 5 years of combined information technology and information security experience.
- Strong understanding of multiple risk management concepts, frameworks, and standards (CSC, NIST, ISO, COBIT).
- Strong understanding of information security concepts and technologies.
- Strong understanding of due diligence and compliance documents (e.g. SOC 2 Type 2, ISO 27001 Certification, SIG Questionnaires, Certificates of Insurance, Pen Test, etc.).
- Strong communication skills with the ability to interact with various teams.
- Demonstrated experience with the NIST Cybersecurity Framework and auditing security controls identified in NIST SP800-171 and NIST SP800-53A.
- Experience in the analysis of IT and Security control requirements and understanding of associated technology processes.
- Experience working with internal and external auditing firms.
- Fundamental knowledge of MS Outlook, Word, Excel, Visio, and PowerPoint.
Benefits include medical insurance, retirement plan, Dental, Vision, PTO, etc.
- A leading utility provider in Pennsylvania seeks a GRC Cybersecurity Senior Analyst to ensure compliance with regulatory obligations. This role involves collaboration with various departments to implement governance and risk management processes. The ideal candidate has...Senior
$119k - $193k
.... About This Role: Forrester is currently looking for a Senior Analyst to conduct research and deliver strategic advice for risk management... ...in compliance management, internal or external audit, and GRC platforms is strongly desired. The successful candidate...SeniorFor contractors- Radar is hiring a Senior GRC Analyst in New York City to enhance security and compliance programs, focusing on third-party risk and SaaS governance. You will work with various teams to evaluate vendors, shape security strategies, and improve workflows, reporting to the...Senior
- ...Radar Senior GRC Analyst Radar is the global leader in geolocation, with geofencing SDKs, maps APIs, and AI-enabled solutions for marketing, fraud, and operations teams. Despite our growth and scale, we're still just getting started. That's where you come in....SeniorWork at officeRemote work
- Neier Inc. is seeking a highly skilled GRC Privacy Senior Analyst to lead privacy initiatives and ensure compliance with global data protection regulations. The role involves conducting Privacy Impact Assessments, developing Records of Processing, and managing Data Subject...SeniorRemote job
- Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience in...SeniorRemote workFlexible hours
$80.5k - $159.3k
...our industry.Job Description:Third Party Senior StaffJob Summary:The position will be... ...Bachelor's DegreeInformation Technology and/or Cybersecurity background and/or experience, including... ..., Process Unity, ServiceNow or other GRC/VRM toolsExperience with security...SeniorRemote jobLocal areaWorldwide- A global consulting firm is seeking a Senior Consultant in Risk Technology to support client engagements in SAP Security and GRC solutions. You'll help design and implement security measures while collaborating in diverse teams to enhance client operations. Candidates...SeniorFlexible hours
$10k
...THAT ARE REACHABLE ON THE CYBER SECURITY ANALYST CIVIL SERVICE LIST ARE ELIGIBLE TO APPLY... ...(IT) Governance, Risk and Compliance (GRC) best practices, methodologies and tools... ...controls. - Assist in the development of cybersecurity audit plans, test plans, system analyses...SeniorPermanent employmentWork at officeWork from home2 days per week- A leading global consulting firm is seeking a Senior Consultant in Risk Technology to support client engagements and implement SAP Security... ...the ideal candidate should have 3-5 years of experience in SAP GRC and a Bachelor's degree in a related field. The role involves...SeniorRemote work
- Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential. With our award-winning Oura Ring and app, we help over 2.5 million people turn insights about sleep, activity, and...SeniorWork at officeLocal areaRemote workFlexible hours
- ...This is a full-time position for a Senior Information Security Analyst ("Security Analyst") within the Information... ...or security discipline (e.g. cybersecurity) or related worked experience ... ...500 regulations Working with GRC applications and toolsets, such as RSA...SeniorFull timeWork experience placementWork at office
- A cybersecurity firm in Kentucky is seeking an experienced L3 Security Analyst to manage advanced threat hunting and incident response within the SOC team. This role requires a Bachelor's degree in Computer Science and expertise in security tools like SIEM and EDR. Responsibilities...Senior
- A leading consulting firm is looking for a Senior Consultant in Risk Technology to implement integrated risk management solutions. This role offers the opportunity to leverage ServiceNow IRM knowledge and collaborate with diverse teams to drive client value. Candidates...Senior
- ...Senior Data Analyst – Cyber Data Operations NTT DATA is a $30 billion trusted global innovator of business and technology services, serving... ...analysis, BI reporting, and working within large-scale or cybersecurity data environments. Core Skill Areas Cyber Data...SeniorRemote workFlexible hours
$95.17k - $156.36k
...Senior Analyst, Cybersecurity/IT Control Design and Monitoring (First Line) Do you want to be part of a collaborative team? Are you a problem solver who enjoys diving into security risk, translating complex technical concepts for business partners, and driving meaningful...SeniorWork at officeFlexible hours3 days per week- ...employee). The Impact You Will Have in This Role The Senior Data Protection Analyst plays a critical role in ensuring the governance,... ...outcomes Qualifications * 5-8+ years of experience in cybersecurity governance, technology risk, compliance, audit support,...SeniorRemote workFlexible hours
- ...The Impact you will have in this role: The Senior Data Protection Analyst plays a critical role in ensuring the governance, measurement... ...Talents Needed for Success: ~5-8+ years of experience in cybersecurity governance, technology risk, compliance, audit support,...SeniorRemote workFlexible hours
$150k - $185k
...A leading cybersecurity insurance firm in New York seeks a Senior Actuary for its Pricing team. The role involves developing pricing models, collaborating cross-functionally, and supporting data-driven decision-making for insurance products. Candidates should have ACAS...Senior$138k - $200k
Google is seeking a Technical Vulnerability Management Analyst for its Public Sector team in New York City. This role involves assessing cybersecurity threats, managing vulnerability programs for municipalities, and presenting findings to stakeholders. Candidates should...Senior$87.8k - $160.9k
...threats. Collaborate with IT and security teams to ensure that cybersecurity policies and procedures are up-to-date and effectively... ...appropriate. Prepare and present risk reports and dashboards to senior management and the board of directors. Ensure compliance...SeniorContract workSummer holidayWork at officeFlexible hours- ...Cybersecurity Senior Risk Analyst 1 Labor Category - Analyst 2 Work Location: Hybrid: Work location (15 MTC, 16th Floor) & Remote Tuesdays & Fridays (3 days in office/2 days remote) Scheduled Work Hours: Normal business hours Monday-Friday 35 hours/week (not including...SeniorWork at officeRemote workMonday to Friday
- Capital One is seeking a Senior Associate - Cyber Risk & Analysis in New York City to join its Tech Audit team. This role will focus on cybersecurity risks and critical technology audits, allowing for personal and professional growth in a collaborative environment. The...Senior
- Flagstar Bank is seeking a Cloud/Cyber Risk Management Analyst Sr in New York, NY. This role involves supporting the Cyber Risk team by managing the Bank’s cybersecurity risk profile and ensuring compliance with established risk appetites. The ideal candidate will have...Senior
$87.8k - $160.9k
...threats. Collaborate with IT and security teams to ensure that cybersecurity policies and procedures are up-to-date and effectively... ...appropriate. Prepare and present risk reports and dashboards to senior management and the board of directors. Ensure compliance with...SeniorContract workSummer holidayWork at officeFlexible hours- ...In Store For You: Engagement: W2 only (no C2C/1099) This is a hybrid opportunity based in Jersey City, NJ, supporting strategic GRC initiatives and ongoing business-as-usual compliance programs. The role offers exposure to enterprise-level compliance technology, risk...SeniorWork at office
$150k - $185k
...industry-leading insurance with world-class cybersecurity technology, At-Bay offers end-to-end... ...join our Actuarial Pricing team: As an Senior Actuary on the Pricing team, you will be... ...growing team of actuaries and actuarial analysts of diverse backgrounds and report to our...Senior$101.9k - $155.35k
...care, intellectual property, litigation & enforcement, privacy & cybersecurity, and business restructuring. Ropes & Gray is an equal opportunity employer. Overview The Senior Market Intelligence Analyst is responsible for maintaining and analyzing internal and external...SeniorWork at office- ...supporting enterprise programs that protect sensitive data and strengthen insider risk governance. This team partners closely with cybersecurity, audit, risk, privacy, legal, data governance, and technology stakeholders to ensure security controls, policies, and reporting...Senior
$157k - $220k
...Development & Integration, SAP Consulting, Insurance/Reinsurance Cybersecurity | Cyber Transformation Remediation, Cyber Defense & Recovery,... ...strategy through hands-on implementation. Advise C-level and senior stakeholders on data strategy, architecture, governance, and...SeniorFull timeWork at officeWorldwideRelocation
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Analyst, Cybersecurity GRC. Be the first to apply!
- analyst asset management New York, NY
- origination analyst New York, NY
- design analyst New York, NY
- category analyst New York, NY
- junior analyst New York, NY
- crime analyst New York, NY
- law enforcement response team analyst New York, NY
- meditech analyst New York, NY
- facility analyst New York, NY
- proposal analyst New York, NY


