Experienced or Senior GRC Analyst
New
H
Hotman GroupCybersecurity GRC Consulting
This is a full-time, remote, contract-to-hire position.ContractSenior
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Required Skills
- HIPAA
Requirements
- Hands-on GRC experience with a track record of owning deliverables.
- Working knowledge of compliance standards: SOC 2, ISO 27001, NIST CSF, HIPAA, and HITRUST.
- Ability to communicate findings and recommendations directly to clients or senior stakeholders.
- Excellent writing skills to produce polished deliverables without heavy editing.
- Strong critical thinking and professional judgment.
- High level of accountability and ownership.
- Ability to work independently in a fully remote environment.
- Strong preference for active certifications: CISA, CISM, CISSP, or CRISC.
- Commitment to pursuing a relevant certification if not currently held.
Responsibilities
- Lead assessments and audits of security and IT control environments.
- Design, implement, and mature cybersecurity and compliance programs.
- Develop risk registers, conduct risk assessments, and track remediation efforts.
- Create and refine policies, standards, and procedures aligned with frameworks like SOC 2, ISO 27001, NIST CSF, HIPAA, HITRUST, and CMMC.
- Prepare clients for internal audits and external assessments.
- Translate technical, regulatory, and business requirements into clear, actionable deliverables.
- Communicate findings, manage client feedback, and drive outcomes.
- Mentor junior analysts and contribute to the growth of the GRC practice.
- Participate in peer review of deliverables.
View Full Description & ApplyYou'll be redirected to the employer's site