Locke and McCloud · 1 month ago
Information Security Governance, Risk & Compliance Analyst
Locke and McCloud is partnered with a leading healthcare organization seeking a GRC Analyst with a strong focus on automation and tooling. This role is ideal for someone who enjoys streamlining workflows, building automated reporting, and enhancing enterprise GRC processes through data-driven insights and technical solutions.
Responsibilities
Build, automate, and optimize GRC workflows using tools such as Excel (advanced), Power BI, and O365
Develop automated dashboards, reports, and metrics to provide real-time visibility into risk, compliance, and policy performance
Maintain and improve the organization’s GRC platform, driving efficiency through automation and SLA-based task management
Create scalable processes for policy management, regulatory tracking, and compliance mapping
Identify opportunities to enhance GRC operations using data, templates, macros, scripts, and system integrations
Conduct and automate third-party/vendor risk assessments and maintain a structured risk register
Oversee security exception workflows and ensure consistent documentation and approval processes
Support audits and internal reviews by producing accurate, automated reports and evidence packages
Collaborate with IT and business stakeholders to promote streamlined and efficient security practices
Qualification
Required
10+ years of IT experience, including 5+ in Information Security or GRC
Strong background in building automated reports, dashboards, and workflows (Power BI, advanced Excel, O365)
Experience enhancing or administering GRC platforms and integrating data sources
Deep understanding of HIPAA, HITECH, NIST, ISO 27001, and risk management methodologies
Excellent analytical and communication skills; able to translate data into actionable insights
Preferred
3+ certifications preferred: Security+, CCSP, CISA, CISM, CRISC, CISSP, GIAC, Network+, ITIL, Project+
Company
Locke and McCloud
Locke & McCloud is a staffing and recruitment company.
Funding
Current Stage
Early StageCompany data provided by crunchbase