GRC Analyst
Job Description
Job Description
About the Role
Merci Technologies is seeking a GRC Analyst to support the governance, risk, and compliance program for one of our enterprise clients. This role sits at the intersection of security, audit, and business operations, translating complex regulatory and framework requirements into practical controls that teams can actually implement and sustain. You will be the person who knows where the control gaps are, what the auditors are going to ask for, and how to keep the organization audit-ready year round rather than scrambling at assessment time.
The work is varied and visible. In a given month you might run a control assessment against NIST CSF, prepare evidence for a SOC 2 examination, complete a vendor risk review for a new SaaS purchase, and brief stakeholders on the status of open findings. You will maintain the policy library, track risk to closure, and act as a trusted advisor to engineering and business teams who need to understand what compliance requires of them. This is a strong fit for someone who is organized, detail-driven, and comfortable holding teams accountable to commitments. This is a fully remote position open to Contract or Full-Time candidates.
Key Responsibilities
- Conduct control assessments and gap analyses against frameworks including NIST CSF, NIST 800-53, ISO 27001, SOC 2, and CMMC
- Plan and support internal and third-party audits, including scoping, evidence collection, and walkthroughs
- Track audit and assessment findings to remediation and closure, escalating risks where needed
- Develop, maintain, and version-control security policies, standards, and procedures
- Perform vendor and third-party risk assessments and document risk acceptance decisions
- Build and maintain the risk register and report risk posture to leadership and stakeholders
- Support regulatory, customer, and compliance reporting requests
- Help operationalize new framework or regulatory requirements as they emerge
Required Qualifications
- 3 to 5 years of experience in governance, risk, and compliance, IT audit, or information security
- Working knowledge of one or more frameworks: NIST CSF, NIST 800-53, ISO 27001, SOC 2, or CMMC
- Demonstrated experience supporting audit cycles and risk assessments end to end
- Ability to read a control requirement and translate it into clear, actionable guidance
- Strong documentation, organization, and stakeholder communication skills
Preferred Qualifications
- CISA, CRISC, ISO 27001 Lead Auditor, or CISSP certification
- Hands-on experience with GRC platforms such as Archer, ServiceNow GRC, or OneTrust
- Familiarity with defense, healthcare, or financial-services compliance requirements
- Experience with CMMC readiness and assessment preparation
What You Will Bring
You are the kind of person who reads the fine print and keeps the spreadsheet honest. You can push a remediation owner for an update without burning the relationship, and you can explain to a busy engineer why a control matters in language they care about. You treat compliance as a way to make the organization genuinely more secure, not just to pass an audit.
Recommended Jobs
Principal Security Practice Architect
Job ID: 27-0094 Come Join Our Passionate Team! At Barracuda, we make the world a safer place. We believe every business deserves access to cloud-enabled, enterprise-grade security solutions that a…
Superintendent - Industrial - Atlanta, GA
Job Description Job Description What We’re About At Reeves Young, everything we do – from 30 feet below the ground to 30 floors above – is about people. The culture we cultivate spreads thro…
Customer Success Manager
Description Customer Success Manager - First Customer Success Hire | Software Startup $70,000 - $95,000/year + Bonus Hybrid in Atlanta | Full-time HR Tech | SaaS | Customer Success Abou…
Foreclosure Specialist
Job Description Job Description Aldridge Pite, LLP is a multi-state law firm that focuses heavily on the utilization of technology to create work flow synergies with its clients and business part…
International Tax Senior / Manager - Miami, FL (Remote working available)
We are working with a leading Miami / Fort Lauderdale based CPA firm who seek a number of international corporate tax seniors and managers. This 500 staff firm have built a reputation for offering th…
Mortgage Account Executive (Urdu/English Bilingual) - Atlanta, GA
Mortgage Account Executive (Urdu/English Bilingual) - Atlanta, GA Department: Georgia Location: Atlanta, GA At Guidance Residential, we help families achieve homeownership while staying …
Curriculum Coordinator / Assistant Director
Job Description Job Description Benefits: Competitive salary Dental insurance Employee discounts Health insurance Opportunity for advancement Paid time off Vision insurance …
Graphic Designer - Buford
Job Description Job Description About Getfastshirt.com Getfastshirt.com is a fast-growing leader in the custom apparel and commercial printing industry, proudly delivering high-quality, versat…
Chief Estimator (Atlanta)
Job Description Job Description Salary: Summary/Objective Develops, manages, and/or executes all estimating activities for one or more of the large, complex and demanding projects. This…
Information Technology / Information Assurance (IT/IA) Specialist III
Public Trust: None Requisition Type: Regular Your Impact Own your opportunity to support our nation's defense. Make an impact by connecting and securing critical operations across the glob…