GRC Analyst
1 week ago
GRC Analyst (Junior)
Job Summary: We are seeking a proactive and detail-oriented GRC Analyst (Junior) to support the development of information systems assurance programs and enhance the organization's governance, risk, and compliance (GRC) processes. Under general supervision, the GRC Analyst will assist in implementing security control guidelines, resolving technical issues, and supporting the development of new dashboards, metrics, and automated functionality. The successful candidate will also contribute to federal compliance initiatives, conduct market research, and help streamline cybersecurity operations through automation and policy adherence.
Key Responsibilities:
- Assist in developing and implementing information systems assurance programs and security control guidelines to ensure compliance with cybersecurity best practices.
- Support the resolution of technical issues, prioritization of tasks, and development of methods to enhance cybersecurity operations.
- Prepare activity and progress reports related to information systems audits, ensuring accurate documentation of cybersecurity efforts.
- Develop new dashboard views to support the Cybersecurity Framework (CSF) and establish performance metrics for improved reporting and decision-making.
- Define processes for leveraging data from the Continuous Diagnostics and Mitigation (CDM) dashboard and provide support for stakeholder training on its usage.
- Assist in the automation of existing processes using Power Apps or similar tools to improve operational efficiency.
- Analyze and review emerging federal information security and privacy policies, directives, and mandates, ensuring timely compliance with specified requirements.
- Track the ownership of policies and procedures, ensuring the associated implementation timelines are adhered to and compliance requirements are met.
- Conduct market research and assist in establishing a roadmap for modernizing the organization's Governance, Risk, and Compliance (GRC) tool, identifying key requirements for improvement.
- Support agency-led High Value Asset (HVA) assessments in compliance with the Cybersecurity and Infrastructure Security Agency (CISA) Assessment Evaluation and Standardization (AES) Program.
- Update and enhance the organization's Entity-Wise Business Impact Analysis (EWBIA) to align with evolving business and cybersecurity needs.
Qualifications:
- Bachelor's degree in Cybersecurity, Information Technology, or a related field.
- Minimum 2 years of experience in cybersecurity or related fields, with exposure to governance, risk, and compliance processes.
- Possesses IAT Level II certification (e.g., CompTIA Security+, GIAC, or equivalent).
- Familiarity with the Cybersecurity Framework (CSF) and Continuous Diagnostics and Mitigation (CDM) dashboard concepts.
- Basic understanding of automation tools like Power Apps and experience with process automation is a plus.
- Knowledge of federal cybersecurity and privacy mandates, with the ability to analyze and assist in the implementation of new policies.
- Strong attention to detail and the ability to manage multiple tasks effectively.
- Excellent communication skills, with the ability to prepare reports and documentation for various audiences.
Preferred Skills:
- Exposure to High Value Asset (HVA) assessments and familiarity with CISA's Assessment Evaluation and Standardization (AES) Program.
- Experience in conducting Entity-Wise Business Impact Analysis (EWBIA) or similar processes.
- Basic understanding of API development to support automation and data integration efforts.
Location: Remote with some need for meeting in person
Company DescriptionPKH Enterprises (PKH) is a small, woman-owned professional services firm dedicated to helping clients address challenging policy and technology issues. The PKH team is comprised of professionals with varied backgrounds combining legal, policy and technical expertise and offers the services and experience of business process engineers, senior subject matter experts and certified project managers. Our diverse capabilities help our clients improve performance and achieve innovative solutions to their most complex business problems. Our clients turn to us as partners and trusted advisors, and depend on our ability to anticipate, recognize and address their specific needs. PKHE has a reputation for excellence and remains dedicated to generating successful results for tasks at all levels of project execution.The information below covers the role requirements, expected candidate experience, and accompanying qualifications.
To all recruitment agencies: PKH Enterprises does not accept unsolicited agency resumes/CVs. PKH Enterprises is not responsible for any fees related to unsolicited resumes/CVs.
PKH Enterprises is an Equal OCompany DescriptionPKH Enterprises (PKH) is a small, woman-owned professional services firm dedicated to helping clients address challenging policy and technology issues. The PKH team is comprised of professionals with varied backgrounds combining legal, policy and technical expertise and offers the services and experience of business process engineers, senior subject matter experts and certified project managers. Our diverse capabilities help our clients improve performance and achieve innovative solutions to their most complex business problems. Our clients turn to us as partners and trusted advisors, and depend on our ability to anticipate, recognize and address their specific needs. PKHE has a reputation for excellence and remains dedicated to generating successful results for tasks at all levels of project execution. \r
\r
To all recruitment agencies: PKH Enterprises does not accept unsolicited agency resumes/CVs. PKH Enterprises is not responsible for any fees related to unsolicited resumes/CVs.\r
\r
PKH Enterprises is an Equal O
-
GRC Analyst
7 days ago
Washington, Washington, D.C., United States PKH Enterprises Full timeJob DescriptionJob Description GRC Analyst This opportunity is remote, but may require occasional meetings onsite. Only candidates in the National Capitol Region. Job Summary: We are seeking a proactive and detail-oriented Cybersecurity Information Assurance Engineer (Junior) / GRC Analyst (Junior) to support the development of information systems...
-
GRC Analyst
1 week ago
Washington, Washington, D.C., United States PKH Enterprises Full timeJob DescriptionJob DescriptionGRC Analyst This opportunity is remote, but may require occasional meetings onsite. Only candidates in the National Capitol Region.Job Summary: We are seeking a proactive and detail-oriented Cybersecurity Information Assurance Engineer (Junior) / GRC Analyst (Junior) to support the development of information systems assurance...
-
GRC Analyst
8 hours ago
Washington, Washington, D.C., United States PKH Enterprises Full timeJob Description Job Description GRC Analyst (Junior)Job Summary: We are seeking a proactive and detail-oriented GRC Analyst (Junior) to support the development of information systems assurance programs and enhance the organization's governance, risk, and compliance (GRC) processes. Under general supervision, the GRC Analyst will assist in implementing...
-
GRC Senior Analyst
6 days ago
Washington, Washington, D.C., United States TikTok Full timeJob DescriptionWe're seeking a talented Governance, Risk, & Compliance (GRC) Compliance Assurance Senior Analyst to join our team! As a key member of our Global Security Organization, you'll be responsible for managing security risks and ensuring compliance with industry standards and regulations.You'll work closely with cross-functional partners to develop...
-
GRC Senior Analyst
5 days ago
Washington, Washington, D.C., United States TikTok Full timeTikTok is committed to providing reasonable accommodations in our recruitment processes for candidates with disabilities, pregnancy, sincerely held religious beliefs, or other reasons protected by applicable laws. If you need assistance or a reasonable accommodation, please reach out to us.About the JobWe are seeking a Governance, Risk, & Compliance (GRC)...
-
GRC Compliance Officer
7 days ago
Washington, Washington, D.C., United States PKH Enterprises Full time**Job Overview**PKH Enterprises is seeking a highly skilled GRC Analyst to join our team. As a GRC Analyst, you will play a critical role in supporting the development of information systems assurance programs and enhancing the organization's governance, risk, and compliance processes.You will work under general supervision to implement security control...
-
BCT Partners – Senior IT GRC Analyst
4 weeks ago
Washington, Washington, D.C., United States Jobleads-US Full timeBCT Partners is excited to collaborate with Lynx Technology Partners on an upcoming federal Governance, Risk and Compliance project. Both BCT and Lynx have multiple job openings in anticipation of this new body of work and encourage you to check out their career sites to see all available...
-
Washington, Washington, D.C., United States Next Step Systems Full timeSenior Analyst, Cybersecurity Governance, Risk and Compliance, Washington, DCThe Senior Analyst, Cybersecurity Governance Risk & Compliance will administer the completion of compliance-related client requests to assess security policies and procedures. The Senior Analyst will respond to inquiries on the security controls policy, processes, and procedures...
-
Sr. Security Analyst
4 weeks ago
Washington, Washington, D.C., United States Jobleads-US Full timeNumber of Vacancies: 1Area of Consideration: Open To The PublicPosition Status: Full-Time, RegularPay Plan, Series & Grade: DS0058/2BSalary Range: $111,593- $125,494Closing Date: Open Until FilledLocation: 4200 Connecticut Ave NW, Washington, DC 20008Brief Description of DutiesThe Senior Security Analyst and Team Lead is a crucial role within the Information...
-
Washington, Washington, D.C., United States TikTok Full timeWe are looking for a highly skilled Governance, Risk, & Compliance (GRC) Compliance Assurance Senior Analyst to join our team. As a key member of the GRC team, you will be responsible for managing security risks, ensuring compliance with industry standards and government regulations, and implementing cybersecurity controls.This role involves working closely...
-
Senior Business Analyst/Product Owner
2 days ago
Washington, Washington, D.C., United States RICEFW Technologies, Inc. Full timeWe are currently seeking a highly skilled and experienced Senior Business Analyst/Product Owner to join our dynamic team within the Cybersecurity Cyber Programs department. In this role, you will play a crucial part in defining the vision for innovative products that not only provide value but also challenge competitors and delight our customers through...
-
Cybersecurity Governance Analyst
6 days ago
Washington, Washington, D.C., United States PKH Enterprises Full time**Cybersecurity Governance Role**As a GRC Analyst at PKH Enterprises, you will be responsible for supporting the development of information systems assurance programs and enhancing the organization's governance, risk, and compliance processes.You will work under general supervision to implement security control guidelines, resolve technical issues, and...
-
Information Assurance Professional
6 days ago
Washington, Washington, D.C., United States PKH Enterprises Full timeWe are seeking a highly experienced Risk and Compliance Analyst to support the development of information systems assurance programs and enhance the organization's governance, risk, and compliance (GRC) processes.Key Responsibilities:Develop and implement security control guidelines to ensure compliance with cybersecurity best practices.Support the...
-
Governance, Risk, and Compliance Expert
7 days ago
Washington, Washington, D.C., United States TikTok Full timeThe GRC Compliance Assurance Senior Analyst will be responsible for supporting the scoping and maturity of the cybersecurity compliance management program to ensure readiness and alignment with industry best practices and regulatory requirements. This includes performing control design and operating effectiveness reviews, validating and verifying security...
-
Compliance Analyst
3 days ago
Washington, Washington, D.C., United States TikTok Full timeResponsibilitiesTikTok is seeking a Compliance Analyst to be part of the USDS Security Risk and Compliance team. The role will have a significant impact on mitigating security and compliance risk, and maturing USDS operations to meet its compliance objectives. Responsibilities include but are not limited to:- Compliance - Understand USDS compliance...
-
Washington, Washington, D.C., United States TikTok Full timeWe are seeking a Governance, Risk, & Compliance (GRC) Compliance Assurance Senior Analyst to perform various tasks within controls, issues, and certifications management. This role involves evaluating risks and controls, developing mitigation strategies, providing ongoing compliance control support, supporting security audits, and leading compliance...
-
Risk Management Specialist
7 days ago
Washington, Washington, D.C., United States PKH Enterprises Full time**About PKH Enterprises**PKH Enterprises is a small, woman-owned professional services firm dedicated to helping clients address challenging policy and technology issues.The team is comprised of professionals with varied backgrounds combining legal, policy, and technical expertise. They offer services and experience in business process engineers, senior...
-
Cyber Security Analyst
5 days ago
Washington, Washington, D.C., United States MKS2 Technologies Full timeJob Description Job Description MKS2 Technologies, LLC, an award-winning high growth small business, creates innovative and customer-centric technology solutions in the areas of Cyber Security, Instructional Design and Training, Software Engineering and IT Support Services to improve the security and well-being of our clients. Our commitment to excellence...
-
Risk and Compliance Analyst
6 days ago
Washington, Washington, D.C., United States PKH Enterprises Full timePKH Enterprises is an Equal Opportunity Employer and welcomes applications from qualified candidates. We offer a competitive salary and benefits package to successful applicants.Job Description:The GRC Operations Expert will be responsible for assisting in the implementation of security control guidelines, resolving technical issues, and supporting the...
-
IT Assurance Professional
6 days ago
Washington, Washington, D.C., United States PKH Enterprises Full time**IT Assurance Career**We are seeking a talented GRC Analyst to join our team at PKH Enterprises. As a GRC Analyst, you will support the development of information systems assurance programs and enhance the organization's governance, risk, and compliance processes.You will work under general supervision to implement security control guidelines, resolve...