GRC Analyst

3 weeks ago


Dallas, Texas, United States Diverse Lynx Full time

JC# - 40110

GRC Analyst

Full Time

Dallas Tx - Hybrid

FOCUS

• Ensure secure communications systems relied upon for our ANSP Program, with concentrated attention towards risk, governance, vulnerability management, policies, and standards.

RESPONSIBILITIES

• Develop and implement security policies and standards, ensuring compliance with industry regulations and best practices.

• Conduct risk assessments and vulnerability assessments to identify1 and mitigate security risks.

• Manage the vulnerability management program, including vulnerability scanning, penetration testing, and remediation.

• Develop and deliver security awareness training programs.

• Collaborate with stakeholders to integrate security considerations into the design and development of new aviation systems.

• Stay informed about emerging threats and vulnerabilities in the aviation industry.

SKILLS

• Cybersecurity Risk & Governance Expertise: Requires 3-5 years of progressive cybersecurity engineering experience with a deep understanding of risk management frameworks (NIST SP 800-37, ISO 27005), governance principles, vulnerability management, and security policy development.

• Risk Assessment & Mitigation: Proven experience conducting risk assessments (NIST 800-30, NIST CSF), identifying vulnerabilities, analyzing threats, and developing effective mitigation strategies.

• Vulnerability Management Program Expertise: Expertise in vulnerability management tools and processes, including vulnerability scanning, penetration testing coordination, vulnerability prioritization, and remediation tracking.

• Policy & Standard Development & Implementation: Strong ability to develop, document, and implement security policies, standards, and procedures that align with industry best practices, regulatory requirements, and risk tolerance

• Communication & Stakeholder Collaboration: Excellent communication (written and verbal) and interpersonal skills to effectively communicate security risks, governance strategies, and policy recommendations to diverse stakeholders, including technical teams, management, and external partners.

PREFERRED CERTIFICATIONS

• CISSP (Certified Information Systems Security Professional)

• CISM (Certified Information Security Manager)

• CISA (Certified Information Systems Auditor)

• CRISC (Certified in Risk and Information Systems Control)

• CompTIA Security+

TOOLS AND TECHNOLOGIES

• Risk Management Frameworks: (e.g., NIST RMF, NIST CSF, ISO 27005)

• Risk Assessment Methodologies: (e.g., NIST 800-30, Threat Modeling)

• GRC Platforms: (e.g., ServiceNow GRC, RSA Archer)

• Vulnerability Management Tools: (e.g., Tenable Nessus, Tanium)

• Penetration Testing Understanding: (Familiarity with tools & methodologies for report interpretation)

• Policy & Collaboration Tools: (e.g., SharePoint, Microsoft Teams, Policy Management Platforms)

Surrounding team/key projects:

• Develop and implement a Cybersecurity Risk Management Framework for ANSP Ground Systems (Based on NIST RMF or ISO 27005)

• Establish and mature vulnerability management program for aircraft ground infrastructure

• Develop and deploy a suite of Security Policies and Standards for Aviation System Development Lifecycle (SDLC)

• Conduct a comprehensive Cybersecurity Risk Assessment of a Critical Aviation Ground Systems using NIST 800-30

• Develop and deliver targeted Security Awareness Training for Aviation Operations Personnel on a Specific Risk Area

Diverse Lynx LLC is an Equal Employment Opportunity employer. All qualified applicants will receive due consideration for employment without any discrimination. All applicants will be evaluated solely on the basis of their ability, competence and their proven capability to perform the functions outlined in the corresponding role. We promote and support a diverse workforce across all levels in the company.


  • Senior GRC Analyst

    4 weeks ago


    Dallas, Texas, United States Insight Global Full time

    • Insight Global is looking for a Senior GRC Analyst to join one of their utility clients in the DFW area. • • • This individual will be responsible for assisting with the implementation of AuditBoard • Responsibilities will include implementing frameworks and controls within GRC tools, working heavily with policies, processes, procedures and...

  • GRC analyst

    5 days ago


    Dallas, Texas, United States Futran Tech Solutions Pvt. Ltd. Full time

    Job Details Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions that address clients' most complex digital transformation needs. Leveraging our holistic portfolio of capabilities in consulting, design, engineering, and operations, we help clients realize their...

  • GRC Analyst

    1 week ago


    Dallas, Texas, United States Wipro Full time

    Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions that address clients' most complex digital transformation needs. Leveraging our holistic portfolio of capabilities in consulting, design, engineering, and operations, we help clients realize their boldest...


  • Dallas, Texas, United States Futran Tech Solutions Pvt. Ltd. Full time

    **The Ideal Candidate**We are looking for a highly skilled and experienced GRC analyst who can lead our security efforts.The ideal candidate will have strong communication and stakeholder collaboration skills to effectively communicate security risks, governance strategies, and policy recommendations to diverse stakeholders, including technical teams,...

  • IT Security Analyst

    6 days ago


    Dallas, Texas, United States Addison Group Full time

    Job Description Job Description Job Title: IT Security Analyst - GRCSalary Expectations: $ K - 15% target bonus6-month contract to hireLocation: Irving, TX, USMy Notes:We are looking to bring on an IT Security Analyst - GRC who will play a crucial role in developing, implementing, and maintaining a strong IT security governance framework and practices. We...


  • Dallas, Texas, United States Tephra Inc. Full time

    : Job Description (Please provide summary of the position):• Excellent communication skill with process understanding• hands on experience of GRC access control on version 5.3 and 10.1• Experience in role design and change management process• Good knowledge of security concepts in ECC, SRM, HANA, BW and portal• Expert in SSO setup and...


  • Dallas, Texas, United States TEPHRA Full time

    : Job Description (Please provide summary of the position): • Excellent communication skill with process understanding • hands on experience of GRC access control on version 5.3 and 10.1 • Experience in role design and change management process • Good knowledge of security concepts in ECC, SRM, HANA, BW and portal • Expert in SSO setup and...


  • Dallas, Texas, United States TEPHRA Full time

    :Job Description (Please provide summary of the position):• Excellent communication skill with process understanding• hands on experience of GRC access control on version 5.3 and 10.1• Experience in role design and change management process• Good knowledge of security concepts in ECC, SRM, HANA, BW and portal• Expert in SSO setup and...


  • Dallas, Texas, United States Tephra Inc. Full time

    : Job Description (Please provide summary of the position):• Excellent communication skill with process understanding• hands on experience of GRC access control on version 5.3 and 10.1• Experience in role design and change management process• Good knowledge of security concepts in ECC, SRM, HANA, BW and portal• Expert in SSO setup and...


  • Dallas, Texas, United States StandardAero Full time

    Build an Aviation Career You're Proud Of At StandardAero, we use our ingenuity and know-how to find solutions for the simple to the most complex challenges in aviation. Together, we get the job done and done well. Our stability, resources, and respectful culture supports you in building a solid career with a great team you can count on day in and day out for...

  • Sr GRC Analyst

    4 weeks ago


    Dallas, Texas, United States UT Southwestern Medical Center Full time

    WHY UT SOUTHWESTERN? With over 75 years of excellence in Dallas-Fort Worth, Texas, UT Southwestern is committed to excellence, innovation, teamwork, and compassion. As a world-renowned medical and research center, we strive to provide the best possible care, resources, and benefits for our valued employees. Ranked as the number 1 hospital in Dallas-Fort...


  • Dallas, Texas, United States System One Full time

    We're seeking an experienced Risk Control Analyst to join our team at System One.In this role, you will support and execute technology risk management programs that meet business and regulatory expectations, designing and developing technology controls for specific risk management program components, and reviewing and enhancing current controls to ensure...


  • Dallas, Texas, United States First Horizon National Corporation Full time

    Risk Management RoleFirst Horizon National Corporation is seeking a skilled IT Risk Analyst to join our team. As an IT Risk Analyst, you will be responsible for developing and implementing risk management programs to ensure compliance with regulatory requirements.Key Responsibilities:Perform risk management functions in IT, including facilitating risk...


  • Dallas, Texas, United States System One Full time

    About the Position:System One is looking for a Technology Control Assurance Analyst to join our team. This role involves working with cross-functional teams to identify and address risks associated with technology and operations. You will also be responsible for designing and developing technology controls for specific risk management program components and...


  • Dallas, Texas, United States Tech Mahindra Full time

    Key ResponsibilitiesAs a GRC Consultant, you will play a critical role in assisting in the design, implementation, and documentation of GRC solutions. You will also contribute to process standardization, compliance reporting, and resolving technical issues related to IT compliance.


  • Dallas, Texas, United States Futran Tech Solutions Pvt. Ltd. Full time

    **Key Responsibilities**The GRC analyst will be responsible for:Developing and implementing security policies and standards to ensure compliance with industry regulations and best practices.Conducting risk assessments and vulnerability assessments to identify and mitigate security risks.Managing the vulnerability management program, including vulnerability...


  • Dallas, Texas, United States Aditi Consulting Full time

    We are looking for a seasoned Compliance Risk Analyst II to join our team at Aditi Consulting. As a critical member of our organization, you will be responsible for interpreting standards, regulatory, and business requirements into technical specification documents and IT/security controls.ResponsibilitiesYour key responsibilities will include:Interpreting...

  • Risk Analyst

    3 weeks ago


    Dallas, Texas, United States Dexian Full time

    Role: IT - Risk/ GRC Analyst Locations: Dallas, TX Duration: 6+ Months (Possible Extension) Roles and Responsibilities: Executes the Technology Risk Management program, identifying opportunities for enhancement where applicable. Enables Technology and Line of Business adherence with Technology risk management programs. Supports execution of the...


  • Dallas, Texas, United States AECOM Full time

    Company DescriptionWork with Us. Change the World.At AECOM, we're delivering a better world. Whether improving your commute, keeping the lights on, providing access to clean water, or transforming skylines, our work helps people and communities thrive. We are the world's trusted infrastructure consulting firm, partnering with clients to solve the world's...


  • Dallas, Texas, United States Southern Glazer's Wine & Spirits Full time

    Overview The Principal Information Security Risk Analyst is responsible for assessing IT risk both internally as well as third parties to help secure SGWS data and information. The person in this position will need to have extensive knowledge of information security risk and third-party risk management, as well as the various technologies within the...