Experienced or Senior GRC Analyst

New
H
Hotman GroupCybersecurity GRC Consulting
This is a full-time, remote, contract-to-hire position.ContractSenior
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Required Skills
HIPAA

Requirements

  • Hands-on GRC experience with a track record of owning deliverables.
  • Working knowledge of compliance standards: SOC 2, ISO 27001, NIST CSF, HIPAA, and HITRUST.
  • Ability to communicate findings and recommendations directly to clients or senior stakeholders.
  • Excellent writing skills to produce polished deliverables without heavy editing.
  • Strong critical thinking and professional judgment.
  • High level of accountability and ownership.
  • Ability to work independently in a fully remote environment.
  • Strong preference for active certifications: CISA, CISM, CISSP, or CRISC.
  • Commitment to pursuing a relevant certification if not currently held.

Responsibilities

  • Lead assessments and audits of security and IT control environments.
  • Design, implement, and mature cybersecurity and compliance programs.
  • Develop risk registers, conduct risk assessments, and track remediation efforts.
  • Create and refine policies, standards, and procedures aligned with frameworks like SOC 2, ISO 27001, NIST CSF, HIPAA, HITRUST, and CMMC.
  • Prepare clients for internal audits and external assessments.
  • Translate technical, regulatory, and business requirements into clear, actionable deliverables.
  • Communicate findings, manage client feedback, and drive outcomes.
  • Mentor junior analysts and contribute to the growth of the GRC practice.
  • Participate in peer review of deliverables.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now