Governance, Risk & Compliance (GRC) Analyst

4 hours, 20 minutes ago
Contract
Senior
Cybersecurity
Skyepoint Decisions

Skyepoint Decisions

Skyepoint Decisions specializes in providing comprehensive IT solutions for the federal government, focusing on cybersecurity architecture, critical infrastructure operations, and applications development and maintenance to support a secure and mobile ...

Internet Software & Services
51-250
Founded 2009

Description

  • Support governance and compliance activities within GRC platforms.
  • Maintain compliance records, risks, findings, and corrective action tracking.
  • Ensure data accuracy and completeness within governance systems.
  • Assist users with governance workflows and compliance processes.
  • Generate reports and metrics from GRC tools and repositories.
  • Support development, maintenance, and implementation of cybersecurity policies, procedures, standards, and guidelines.
  • Assist in mapping organizational controls to Federal cybersecurity requirements and frameworks.
  • Maintain governance documentation and standards repositories.
  • Support policy reviews, updates, and compliance assessments.
  • Maintain and update cybersecurity risk registers.
  • Perform risk identification, analysis, and tracking activities.
  • Support risk assessments and risk mitigation planning.
  • Monitor remediation activities for identified risks and control deficiencies.
  • Develop and maintain cybersecurity compliance metrics and reporting.
  • Support creation of executive dashboards and compliance scorecards.
  • Analyze program performance indicators and identify trends.

Requirements

  • Bachelor's degree in Cybersecurity, Information Systems, Information Assurance, Business Administration, or a related field.
  • Minimum 5 years of experience in cybersecurity governance, risk management, compliance, audit support, or information assurance.
  • Experience supporting Federal cybersecurity programs.
  • Knowledge of NIST Cybersecurity Framework (CSF), NIST Risk Management Framework (RMF), NIST SP 800-53 Rev. 5, FISMA, and Federal cybersecurity compliance requirements.
  • Experience conducting compliance reviews, risk assessments, or audit preparation activities.
  • Strong analytical, organizational, and written communication skills.
  • U.S. Citizenship required.
  • Ability to obtain and maintain a Public Trust.
  • One or more certifications preferred: CGRC (formerly CAP), CRISC, CISA, CISSP, CISM, Security+, or Certified in Governance, Risk and Compliance (GRC).
  • Experience supporting NIH, HHS, or other Federal civilian agencies.
  • Experience with governance and compliance platforms such as ServiceNow GRC, Archer, eMASS, or Xacta.
  • Experience supporting FISMA audits and OIG assessments.
  • Knowledge of Zero Trust Architecture and Federal cybersecurity modernization initiatives.
  • Experience developing executive-level cybersecurity reporting and dashboards.
  • Familiarity with privacy compliance requirements, including PTAs and PIAs.

Benefits

  • Salary range of $80,000 to $100,000.
  • Certification incentive program.
  • Flexible remote work environment.
  • PTO and floating federal holiday options.
  • Medical insurance options including HMO and High Deductible plans with HSA and FSA options.
  • Dental, vision, short-term disability, long-term disability, and life insurance.
  • 401(k) with company match.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Threat Investigator

Discord 1K-5K Internet Software & Services

Discord is hiring a Threat Investigator on its Violent Actors Team to lead investigations into violent and extremist networks and strengthen detection and enforcement within Trust & Safety.

Machine Learning
4 hours, 20 minutes ago

Asset Protection Officer

RIDE 51-250 Automotive

Asset Protection Officer at RIDE Coach and Bus responsible for protecting company premises, staff, and visitors through surveillance, access control, and incident response.

4 hours, 34 minutes ago

Principal Counsel, Africa Legal

Skyline Eco-Adventures 11-50 Hotels, Restaurants & Leisure

Zipline is hiring a senior lawyer to lead Africa-wide legal and compliance operations supporting its autonomous delivery business across multiple countries.

4 hours, 34 minutes ago

Principal Counsel, Africa Legal

Skyline Eco-Adventures 11-50 Hotels, Restaurants & Leisure

Zipline is seeking a Senior Legal and Compliance leader to oversee and scale legal operations across its Africa markets as the company expands its autonomous logistics business in complex regulatory environments.

4 hours, 34 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers