Security GRC Analyst II
Core
Executes governance, risk, compliance, and security assurance activities to support organizational objectives, including risk assessments, policy governance, audit coordination, and data protection oversight.
Role type
Mid-level GRC Analyst (Cybersecurity)
Builds
Governance frameworks, risk registers, compliance documentation, and security awareness programs
Domain
Healthcare / Cybersecurity & Regulatory Compliance
Deliverable
dashboards & analysis
Required skills
Risk assessment, compliance framework implementation, audit coordination, data protection controls, regulatory knowledge (HIPAA, GDPR, NIST, ISO 27001), GRC platform usage
Preferred skills
Third-party risk review, incident investigation support, security metrics reporting, security awareness campaign leadership
Technologies
GRC platforms, Security Training and Phishing Tools
Responsibilities
Develop and maintain policies and control documentation; Conduct risk assessments and control evaluations; Coordinate audit responses and evidence collection; Evaluate effectiveness of security and data protection controls; Lead or support security awareness campaigns; Report on security metrics
Seniority
Mid-level, hands-on IC
