4 security grc analyst jobs at 4 companies in Boston, MA

3d
Save
Mark Applied
Hide
GRC Analyst
Boston, Massachusetts, United States
$83k-$105k/yr HybridFull Time
American Tower
American TowerNYSE: AMT: Leases space on wireless and broadcast towers for communications.
2+ YOERequires 2+ years in GRC or information security, strong project management and communication skills, Microsoft Office and Oracle proficiency, and knowledge of security standards and privacy regulations.
Microsoft Office, Oracle, ISO 27001, ISO 27002, ITIL, Identity and Access Management (IAM)
4w
Save
Mark Applied
Hide
Senior GRC Analyst
Boston, Massachusetts, United States
$130k-$170k/yr OnsiteFull Time
WHOOP
WHOOP: Wearable technology for personalized health and performance tracking.
6+ YOE6+ years in cybersecurity or enterprise risk; experience conducting structured cyber/IT risk assessments, maintaining risk registers, familiarity with security frameworks and AI risk; strong communication and analysis skills.
NIST CSF, ISO 27001, PCI DSS, GDPR, HIPAA, NIST AI RMF, ISO/IEC 42001, FAIR
1w
Save
Mark Applied
Hide
Information Security Risk and Compliance Analyst
Boston, Massachusetts, United States
$84k-$106k/yr HybridFull Time
CarGurus
CarGurusNASDAQ: CARG: Operates an online marketplace for buying and selling vehicles.
Manage third-party risk, customer security assurance, cyber risk, SOX ITGCs and governance; experience with GRC platforms, cloud environments, and security/IT certifications.
Auditboard, SAFE, Loopio
1mo
Save
Mark Applied
Hide
Principal Technology Risk Analyst - Program & Regulatory Assurance
Merrimack or Smithfield or Westlake
OnsiteFull Time
Fidelity Investments
Fidelity Investments: Provides investment management, retirement planning, and brokerage services.
5+ YOERequires 5–7 years in IT risk, controls, or audit; preferred bachelor's degree, risk or cloud certifications, financial services controls experience, cloud security knowledge, and GRC tool experience.
AWS, Azure, SaaS, PaaS, NIST SP 800-53, COBIT, AICPA Trust Principles, ISO27001, SWIFT, HITRUST, SOX404, ISO9001, Archer