
Overview:
District Tech Group Incorporated is seeking a Governance, Risk, & Compliance (GRC) Analyst to ensure compliance with security frameworks, mitigate risk, and formalize security policies for clients and internal operations. This role is crucial in maintaining regulatory compliance and improving security governance.
Responsibilities:
Develop and implement security policies, procedures, and compliance frameworks (NIST, ISO 27001, SOC 2, etc.).
Conduct risk assessments and audits to evaluate security posture and identify areas of improvement.
Ensure compliance with regulatory requirements and industry best practices.
Collaborate with technical and business teams to integrate security controls into operations.
Monitor security metrics and generate reports on risk management and compliance.
Assist in third-party risk assessments and vendor security evaluations.
Provide security awareness training to clients and internal teams.
Qualifications:
Experience in governance, risk management, and compliance within cybersecurity or IT.
Knowledge of regulatory requirements such as GDPR, HIPAA, and CMMC.
Familiarity with security frameworks (NIST, CIS, ISO 27001, SOC 2).
Strong analytical and problem-solving skills.
Certifications such as CISA, CISSP, CRISC, or similar are a plus.