Cyber GRC Analyst
Core
Support enterprise-wide governance, risk, and compliance activities to strengthen the organization's cyber security posture and ensure alignment with regulatory standards.
Role type
Cyber GRC Analyst
Builds
Cyber security posture, compliance alignment, and risk mitigation strategies
Domain
Cybersecurity, Governance, Risk, and Compliance (GRC)
Deliverable
dashboards & analysis
Required skills
Cyber risk assessment, security control testing, regulatory compliance, third-party risk management, audit support, risk metrics tracking, policy lifecycle management
Preferred skills
Regulated industry experience, secure-by-design principles, resilience frameworks, GRC platforms, Power BI
Technologies
NIST, ISO 27001, CIS, GDPR, SureCloud, Archer, ServiceNow GRC, Power BI
Responsibilities
Perform cyber risk assessments across systems, projects, and third-party suppliers; Conduct structured security control testing and assurance; Monitor compliance with policies and regulations (NIS2, GDPR, NIST CSF, ISO 27001); Support internal and external audits; Track remediation activities and risk metrics; Collaborate with stakeholders to identify and mitigate risks; Support lifecycle management of security policies.
Seniority
Mid-Senior, hands-on IC
