Information Security GRC Analyst

Ascend Technologies • United State
Remote
Apply
AI Summary

Join our growing cybersecurity practice as an Information Security GRC Analyst. Assist clients in building and maturing their governance, risk, and compliance programs. Develop deep expertise across GRC frameworks, security controls, and client advisory work.

Key Highlights
Support clients in building and maturing their governance, risk, and compliance programs
Assist in the development of information security policies, standards, and procedures
Stay current on emerging threats, regulatory changes, and evolving GRC best practices
Key Responsibilities
Assist in the development, implementation, and assessment of information security policies, standards, and procedures
Assist with risk assessments, gap analyses, and control evaluations
Participate in the development of risk registers, risk treatment plans, and remediation roadmaps
Technical Skills Required
NIST CSF ISO 27001 Microsoft Office Suite (Word, Excel, PowerPoint) CompTIA Security+ CISA CRISC GRC Professional Apptega StandardFusion ControlMap AWS Azure GCP KnowBe4 InfoSec IQ
Benefits & Perks
$65,000 per year
Fully remote position
Diversity, equity, and inclusion are fundamental values
Nice to Have
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Business, or a related field
Relevant certifications or progress toward: CompTIA Security+, CISA, CRISC, or GRC Professional

Job Description


This is a fully remote position

PURPOSE

We are looking for a motivated and detail-orientedInformation Security GRCAnalystto join our growing cybersecurity practice. In this role, you will support clients in building and maturing their governance, risk, and compliance programs, helping them navigate complex regulatory landscapes and reduce cyber risk. This is an excellent opportunity for early-career professionals looking to develop deepexpertiseacross GRC frameworks, security controls, and client advisory work.

Responsibilities

  • Assistin the development, implementation, and assessment of information security policies, standards, and procedures aligned to industry frameworksand regulatory compliance(HIPAA, SEC, FTC,NIST CSF, ISO 27001, SOC 2, CMMC, etc.)
  • Assistwithrisk assessments, gap analyses, and control evaluationsacrossmultipleclientengagements simultaneouslyacross various industries
  • Participate in the development of risk registers, risk treatment plans, and remediation roadmaps
  • Assistwith third-party/vendor risk assessments and due diligence activities
  • Document findings, prepare client-facing reports, and contribute to presentations and deliverables
  • Support audit readiness activities andfacilitateevidence collection for audits and assessments
  • Stay current on emerging threats, regulatory changes, and evolving GRC best practices
  • Collaborate withGRCconsultants andvCISOsto deliver engagements on time and within scope
  • Support the configuration, data entry, and maintenance of GRC tooling and platforms used to manage client compliance programs
  • Other responsibilities as assigned by management.

MINIMUM SKILLS, EDUCATION, AND EXPERIENCE

  • 1–2 years of experience in GRC, cybersecurity, IT audit, or a related discipline
  • Foundational knowledge of security frameworks such as NIST CSF, ISO 27001, or CIS Controls
  • Strong written and verbal communication skills, with the ability to convey technical concepts to non-technical audiences
  • Ability to manage multiple tasks and deadlines in a fast-paced, client-driven environment
  • Proficiencyin Microsoft Office Suite (Word, Excel, PowerPoint)
  • Strong analytical skills and attention to detail
  • Strongproblem‑solvingandcritical‑thinkingabilities.
  • Ability to manage multiple engagements and deadlines.
  • Collaborative,customer‑centricmindset.
  • High integrity and commitment to confidentiality.

PREFERRED SKILLS, EDUCATION, AND EXPERIENCE

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Business, or a related field
  • Relevant certifications or progress toward: CompTIA Security+, CISA, CRISC,orGRC Professional
  • Familiarity with GRC platforms such asApptega,StandardFusion, orControlMap
  • Experience with cloud environments (AWS, Azure, GCP) and associated compliance considerations
  • Experience withsecurity awareness training platforms(KnowBe4, InfoSec IQ)

Starting Compensation Range: $65,000 per year

The salary for this position is commensurate with experience, skills, and qualifications. The range is intended to reflect our commitment to attracting top talent, and the final offer will be based on factors including, but not limited to, the candidate's previous experience, expertise in the field, relevant certifications, and the specific requirements of the role. In addition, internal equity, market trends, and geographic location may also influence the final salary.

At Ascend Technologies we firmly believe that diversity, equity, and inclusion are not only fundamental values but also powerful drivers of innovation, growth, and success. We are committed to fostering an environment where every individual feels valued, respected, and empowered.

CORE VALUES

We are seeking highly motivated individuals who have the willingness and ability to demonstrate Ascend core values:

  • Committed to Client Success: Our actions and our words always align with the best interest of the client.
  • One Team: We work collaboratively to overcome challenges with humility and respect and do what it takes to find innovative solutions.
  • Integrity: We are unquestionably committed to doing the right thing even when it is hard.
  • Accountability: We hold ourselves and each other accountable for keeping our commitments to our clients, our communities, and one another.
  • Transparency: We create open lines of communication with each other and our clients, fostering relationships founded on candor and trust.

Physical Demands

Must be able to sit, stand, and bend for the duration of shift. The position is mainly sitting, with occasional lifting up to 50 lbs, such as laptop, server equipment, and, driving to the work site to meet with client(s).

Similar Jobs

Explore other opportunities that match your interests

Data Security Engineer

Cyber Security
•
4h ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Entry level

The Mom Project

United State

Cybersecurity Incident Response Consultant

Cyber Security
•
10h ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Mid-Senior level

Radiant Digital

United State

Staff Security Engineer

Cyber Security
•
13h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

EDB

United State

Subscribe our newsletter

New Things Will Always Update Regularly