23 cyber grc analyst jobs at 19 companies in United States

1mo
Save
Mark Applied
Hide
Cyber GRC Analyst
Austin, Texas, United States
$80k-$110k/yr HybridFull Time
News Corp
News CorpNASDAQ: NWSA: Provides global news, information, and digital media services.
3+ YOE3+ years in cyber security/GRC, experience with PCI DSS, NIST CSF, ISO 27001, AWS; supports audits, risk assessments, and third‑party security reviews; professional security certifications preferred.
PCI DSS, NIST CSF, ISO 27001, AWS, SOX
3w
Save
Mark Applied
Hide
Cyber Security GRC Analyst (82464)
Bethpage, New York, United States
$94k-$148k/yr HybridFull Time
PSEG
PSEGNYSE: PEG: Investor-owned electric and gas utility.
4+ YOEBachelor's in related field or 8+ years' equivalent; 4+ years cybersecurity GRC/IT audit experience; proficiency with Cyber GRC tools; experience with risk and control assessments, audit coordination, and remediation tracking; DOE 10 CFR 810 eligibility.
ServiceNow, Archer, RSAM
1mo
Save
Mark Applied
Hide
Senior Analyst, GRC
Overland Park or Cary
HybridFull Time
Black & Veatch
Black & Veatch: Provides engineering, procurement, and construction services for global infrastructure.
2+ YOEBachelor's in IT/CS or equivalent experience; 2+ years in GRC; experience with risk assessment frameworks (NIST CSF, ISO 27001, SOC), ServiceNow Risk Management, and enterprise cyber/compliance risk practices; CRISC/CISSP preferred.
ServiceNow Risk Management, GenAI, NIST CSF, ISO 27001, AICPA SOC, FAR, DFARS, CMMC
3mo
Save
Mark Applied
Hide
Cyber Risk Analyst
Austin or Temple
HybridFull Time
McLane
McLaneNYSE: BRK.B: Wholesale distribution and supply chain services for retailers.
Bachelor’s degree in cybersecurity or related field; experience in cyber risk management, GRC, and security awareness programs.
NIST CSF, ISO 27001, GRC, Phishing simulation tools
1w
Save
Mark Applied
Hide
Senior GRC Analyst
Boston, Massachusetts, United States
$130k-$170k/yr OnsiteFull Time
WHOOP
WHOOP: Wearable technology for personalized health and performance tracking.
6+ YOE6+ years in cybersecurity or enterprise risk; experience conducting structured cyber/IT risk assessments, maintaining risk registers, familiarity with security frameworks and AI risk; strong communication and analysis skills.
NIST CSF, ISO 27001, PCI DSS, GDPR, HIPAA, NIST AI RMF, ISO/IEC 42001, FAIR
1w
Save
Mark Applied
Hide
Senior GRC Analyst
Boston, Massachusetts, United States
$130k-$170k/yr OnsiteFull Time
WHOOP
WHOOP: Providing wearable health trackers and physiological performance analytics.
6+ YOE6+ years in cybersecurity or enterprise risk management, experience conducting structured cyber/IT and AI risk assessments, maintaining risk registers, familiarity with NIST/ISO/PCI/GDPR/HIPAA, and strong communication skills.
NIST CSF, ISO 27001, PCI DSS, GDPR, HIPAA, NIST AI RMF, ISO/IEC 42001, FAIR
1mo
Save
Mark Applied
Hide
Classified Cyber Assurance Analyst
Hawthorne, California, United States
$85k-$135k/yr OnsiteFull Time
SpaceX
SpaceX: Designs and launches advanced rockets and satellite internet constellations.
1+ YOEBachelor's degree or 3+ years managing cyber assurance for classified systems; 1+ years cyber assurance; RMF A&A lifecycle experience; familiarity with Nessus, Splunk, Security Center, ServiceNow, eMASS, and GRC tools; active TS/SCI clearance and CI polygraph or ability to obtain.
RMF, Nessus, Splunk, Security Center, ServiceNow (SNOW), eMASS, GRC, NRO A&A, JSIG A&A
2d
Save
Mark Applied
Hide
Sr Director Analyst, Cyber GRC Tools and Technology (Remote US)
United States or Texas
$172k-$203k/yr RemoteFull Time
Gartner
GartnerNYSE: IT: Provides research and advisory services for business leaders.
12+ YOE5+ Mgmt12+ years in Cyber GRC/InfoSec/ERM with 5+ years leadership, expertise in Cyber GRC tools, strong research, writing, presentation and client engagement skills; willingness to travel up to 25%.
ServiceNow, Centraleyes, CyberSaint, EGERIE, LogicGate, Vanta
4d
Save
Mark Applied
Hide
Cleared Cyber Analyst
Rome or Chantilly or Charlottesville
$141k-$263k/yr OnsiteFull Time
General Atomics Aeronautical Systems
General Atomics Aeronautical Systems: Designs and manufactures unmanned aircraft and radar systems.
5+ YOEActive Top Secret/SCI clearance, US citizenship, bachelor\u0002s or equivalent, ~5+ years security experience, knowledge of CMMC/DFARS/NIST, RMF/IC directives, security assessments, and strong analytical and communication skills.
SIEM, GRC, vulnerability scanners
2mo
Save
Mark Applied
Hide
Cyber Risk Management Analyst Sr
New York, New York, United States
$91k-$150k/yr OnsiteFull Time
Flagstar
FlagstarNYSE: FLG: Provides personal banking, mortgage lending, and commercial financial services.
6+ YOE Undergraduate degree in Computer Science, Information Technology, Cybersecurity or related field; 6+ years in IT/cyber/risk/compliance; strong risk management and communication skills.
GRC Tool, Excel, PowerPoint, Word, IAM, DLP, Vulnerability management, Cloud technologies
1mo
Save
Mark Applied
Hide
Cyber Security Risk Analyst
Pittsburgh or Bécancour or Montréal or Baie-Comeau or Deschambault
OnsiteFull Time
Alcoa
AlcoaNYSE: AA: Produces aluminum through bauxite mining, refining, and smelting.
6+ YOE6+ years in cybersecurity or IT risk; experience assessing IT and OT risk; knowledge of ISO/NIST/CIS frameworks, GRC activities and tools; strong written/verbal communication and facilitation skills; bachelor's degree or equivalent experience.
Governance, Risk, and Compliance (GRC), SIEM, ISO 27001, NIST CSF, NIST 800-53, CIS Controls, SOX
5d
Save
Mark Applied
Hide
Analyst II, Information & Cyber Security
Chicago, Illinois, United States
$75k-$103k/yr OnsiteFull Time
Invenergy
Invenergy: Develops and operates utility-scale renewable and clean energy projects.
2+ YOEBachelor's in cybersecurity/IT or equivalent,2+ years cybersecurity/GRC experience,knowledge of security frameworks,experience with audits and control assessments,strong analytical and communication skills.
ServiceNow, Archer, Smartsheet, Microsoft 365, Azure
2mo
Save
Mark Applied
Hide
Cyber Analyst Principal - TS/SCI with Polygraph
McLean, Virginia, United States
$124k-$167k/yr OnsiteFull Time
GDIT
GDITNYSE: GD: Delivers IT and mission services to government agencies.
5+ YOETS/SCI with Polygraph clearance, DoW 8140/8570.01-M compliant, BA/BS or equivalent, 5+ years of related experience, onsite in McLean, VA.
NIST SP 800-series, RMF, ISSO/ISSM, SCA, A&A, GRC, Cross Domain Solutions
5d
Save
Mark Applied
Hide
Analyst II, Information & Cyber Security
Chicago, Illinois, United States
$75k-$103k/yr OnsiteFull Time
Invenergy
Invenergy: Develops, builds, and operates large-scale sustainable energy infrastructure projects.
2+ YOEBachelor's in cybersecurity/IT or equivalent,2+ years cybersecurity/GRC experience,knowledge of security frameworks,audit/compliance experience,strong analytical and communication skills.
ServiceNow, Archer, Smartsheet, Microsoft 365, Azure
1d
Save
Mark Applied
Hide
Governance, Risk, and Compliance (GRC) Analyst
Columbus, Nebraska, United States
$6k-$12k/mo OnsiteFull Time
Nebraska Public Power District
Nebraska Public Power District: Generates and delivers electric power across Nebraska.
4+ YOEEvaluate software and vendor security, perform detailed application assessments, manage third‑party cyber risk reviews, document risks and recommendations, and collaborate with technical teams.
SAP, Microsoft
2d
Save
Mark Applied
Hide
10874 - Sr. Risk Operation Analyst - Integrated Risk Management "IRM"
Irvine, California, United States
$120k-$170k/yr OnsiteFull Time
Hyundai AutoEver America
Hyundai AutoEver AmericaKorea Exchange: 307950: Provides automotive software and IT services for mobility systems.
7+ YOE7+ years in technology/cyber/GRC risk with experience running risk assessments, issue/exception management, control libraries, GRC tooling, and executive reporting; Bachelor’s in related field required.
GRC, NIST CSF/800-53, ISO 27001, CIS
1w
Save
Mark Applied
Hide
SENIOR RISK ASSESSMENT ANALYST
Oakland, California, United States
$160k-$184k/yr RemoteFull Time
University of California, Davis
University of California, Davis: A public research university providing higher education and healthcare.
8+ YOE8+ years of relevant experience overseeing enterprise cyber risk assessments; knowledge of NIST, ISO, HIPAA, PCI-DSS; GRC platform familiarity; strong communication, presentation, and project management skills.
ServiceNow, Archer
3mo
Save
Mark Applied
Hide
Analyst, Cybersecurity Threats & Risks
Houston, Texas, United States
OnsiteFull Time
Enterprise Products Partners
Enterprise Products PartnersNYSE: EPD: Provides midstream energy services for natural gas and crude oil.
2+ YOEAnalyzes cyber risks and threats; supports risk assessments, threat monitoring, vulnerability analysis; collaborates with IT security teams; 2–5 years in cyber security; familiar with SIEM, vulnerability scanners, threat intel; knowledge of NIST/MITRE; college degree preferred.
SIEM, vulnerability scanners, threat intelligence platforms, GRC tools
1mo
Save
Mark Applied
Hide
Enterprise Cybersecurity AI Risk Analyst
McLean, Virginia, United States
$99k-$225k/yr HybridFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
5+ YOE5+ years supporting cyber/technology/enterprise risk, experience with GRC practices, knowledge of AI concepts and industry risk frameworks, HS diploma/GED, strong writing and cross-team collaboration skills.
NIST CSF, NIST AI RMF, NIST SP 800-53, NIST SP 800-171, ISO 27001, ISO 42001, MITRE ATLAS, CMMC, ServiceNow, Archer, Smartsheet, Jira
1mo
Save
Mark Applied
Hide
Analyst, Security Inquiry Response Center (SIRC) (Canada)
Canada or United States or Hermitage or Nashville or Tampa or Saint John or Halifax or Toronto
OnsiteFull Time
Deloitte
Deloitte: Global provider of audit, consulting, tax, and advisory services.
3+ YOEBachelor's degree or equivalent experience; 3+ years information security experience; knowledge of information systems security, cyber security, IT audit, IT risk, compliance and vendor security risk; working knowledge of ISO, NIST, COBIT, SOC2; familiarity with GRC tools (e.g., ServiceNow); strong analytical skills.
ServiceNow, ISO 27017, NIST, COBIT, SOC2