Information Security Governance, Risk & Compliance Analyst jobs in United States
info-icon
This job has closed.
company-logo

Locke and McCloud · 1 month ago

Information Security Governance, Risk & Compliance Analyst

Locke and McCloud is partnered with a leading healthcare organization seeking a GRC Analyst with a strong focus on automation and tooling. This role is ideal for someone who enjoys streamlining workflows, building automated reporting, and enhancing enterprise GRC processes through data-driven insights and technical solutions.

Cyber SecurityProfessional ServicesRecruitingStaffing Agency
Hiring Manager
Brendan Maher
linkedin

Responsibilities

Build, automate, and optimize GRC workflows using tools such as Excel (advanced), Power BI, and O365
Develop automated dashboards, reports, and metrics to provide real-time visibility into risk, compliance, and policy performance
Maintain and improve the organization’s GRC platform, driving efficiency through automation and SLA-based task management
Create scalable processes for policy management, regulatory tracking, and compliance mapping
Identify opportunities to enhance GRC operations using data, templates, macros, scripts, and system integrations
Conduct and automate third-party/vendor risk assessments and maintain a structured risk register
Oversee security exception workflows and ensure consistent documentation and approval processes
Support audits and internal reviews by producing accurate, automated reports and evidence packages
Collaborate with IT and business stakeholders to promote streamlined and efficient security practices

Qualification

GRC platformsPower BIAdvanced ExcelRisk managementHIPAANISTISO 27001CertificationsAnalytical skillsCommunication skills

Required

10+ years of IT experience, including 5+ in Information Security or GRC
Strong background in building automated reports, dashboards, and workflows (Power BI, advanced Excel, O365)
Experience enhancing or administering GRC platforms and integrating data sources
Deep understanding of HIPAA, HITECH, NIST, ISO 27001, and risk management methodologies
Excellent analytical and communication skills; able to translate data into actionable insights

Preferred

3+ certifications preferred: Security+, CCSP, CISA, CISM, CRISC, CISSP, GIAC, Network+, ITIL, Project+

Company

Locke and McCloud

twittertwittertwitter
company-logo
Locke & McCloud is a staffing and recruitment company.

Funding

Current Stage
Early Stage
Company data provided by crunchbase