GRC Analyst Job at OSTechnical, Irvine, CA

ektuM1ljUUh6Q0NxZjdENUhjNmtxTjUvVlE9PQ==
  • OSTechnical
  • Irvine, CA

Job Description

The Sr. Analyst will oversee and coordinate internal risk assessments, focusing on IT systems, applications, and infrastructure, ensuring they meet security standards and compliance requirements. This role requires a primary focus of internal risk evaluation and some third-party risk management, with an emphasis on synthesizing information into actionable insights. The individual will generate comprehensive reports (using tools like TrustCloud or ArmorCode) to quantify risk, determine potential losses, and provide recommendations to senior management.

Key Responsibilities:

  • Internal Risk Assessments: Evaluate IT systems, applications, and vendor interactions, ensuring they meet security requirements. Assess risks using methodologies such as FAIR (Factor Analysis of Information Risk).
  • Third-Party Risk Management: While third-party risk management is largely outsourced, you will assess when internal decisions are needed and make recommendations regarding potential risk exposures from external vendors.
  • Reporting & Decision Support: Synthesize data from risk assessments to generate PowerPoint reports that quantify risks, potential losses, and provide actionable recommendations for mitigation.
  • Collaboration: Work with business units to ensure risk management processes are integrated into new project implementations and promptly raise awareness of any high-level risks to senior management.
  • Continuous Improvement: Drive improvements in risk management practices using key metrics and risk indicators.

Required Experience & Skills:

  • 6+ years in Governance, Risk, and Compliance (GRC), with a focus on internal risk evaluation and IT system security.
  • Experience conducting internal IT risk assessments, including compliance with regulations such as HIPAA, PCI, and ISO frameworks.
  • Strong understanding of risk quantification methodologies like FAIR, and the ability to synthesize complex information into clear, actionable reports.
  • Proficiency in risk management tools like TrustCloud or ArmorCode for reporting and analysis.
  • Experience working with third-party vendors, but a focus on internal risk assessment rather than purely third-party management.
  • Excellent communication skills with the ability to prepare executive-level risk reports and provide clear recommendations.

Qualifications:

  • Bachelor’s degree or 5+ years of relevant experience.
  • Certifications such as CRISC, CISA, CISSP, or FAIR are a plus.
  • Strong proficiency in Microsoft Office Suite (Word, Excel, PowerPoint) for report generation and data analysis.

Additional Requirements:

  • Ability to work independently, manage multiple tasks, and collaborate effectively with cross-functional teams.

This is an excellent contract to hire position converting to a direct hire with-in 3 to 6 months.

Apply Now.

Job Tags

Contract work,

Similar Jobs

EVONA

Billing Specialist Job at EVONA

Billing Specialist &##128205; Location: Huntsville, AL &##128176; Salary: $73k $97k Are you an experienced Billing Specialist with a strong background in government contracts? A leading aerospace and defense company is seeking a meticulous and detail-oriented...

Farm Job Search

Organic Hemp Farm Harvest Hands Job at Farm Job Search

 ...Organic Hemp Farm Harvest Hands (6325) Location: West Paris, Maine JobNumber: 6325 We are a 7-acre organic hemp farm currently growing 5,000 plants. We farm completely by hand and harvest in the same way. One of the processes we feel contributes to our high-quality... 

Scott+Scott

Financial Assistant Job at Scott+Scott

 ...To learn more about Scott+Scott, our attorneys, or complex case resolution, please visit . The Firm is seeking a Finance Assistant to support the financial and administrative needs of our growing Finance Department. The Assistant will provide finance support to... 

Arctic Wolf

Audio/video editor Job at Arctic Wolf

 ...mission is simple: End Cyber Risk. Were looking for a/an Audio/Video Editor to be part of making this happen. The Audio/Video...  ...field preferred ~3+ years of experience in audio and visual editing preferred ~ Working knowledge of all studio positions and studio... 

Veterans Affairs, Veterans Health Administration

Physician - Orthopedic Surgeon Job at Veterans Affairs, Veterans Health Administration

 ...appointed as PRPs ~ Proficiency in spoken and written English ~ Additional Requirement: Must be board-certified or board eligible in orthopedic surgery (Board Certification is preferred)~ Fellowship Trained in Shoulder Replacement Surgery ~ Preferred Experience: Board...