GRC Analyst
Founded in 2006, Coretelligent is a provider of comprehensive managed IT solutions, specializing in areas like cybersecurity, private cloud services, IT planning and strategy, and backup and disaster recovery. We cater to industries such as financial services, life sciences, technology, and professional services. The company has been recognized for its achievements, including being named to Inc. magazine’s Power Partner Awards and as AT&T Cybersecurity North American Partner of the Year for 2023. Coretelligent focuses on meeting regulatory requirements and ensuring clients' IT platforms are robust and compliant. We have a significant presence across various U.S. locations and offer co-managed IT solutions as well.
Job Overview
Coretelligent is seeking a diligent GRC Analyst to join our team. This role will serve as a key contributor to Coretelligent 's holistic cybersecurity solutions by managing critical security awareness programs, conducting vendor risk assessments, and maintaining controls frameworks. This position requires both technical proficiency in security platforms and the analytical skills to assess and document client security postures across multiple environments. The successful candidate will work with clients and Coretelligent staff to support governance, risk, and compliance programs and ongoing security awareness initiatives and third-party risk management activities.
Key Responsibilities:
- Assist vCISO staff with client cybersecurity & governance program management
- Update policies to ensure alignment with client practices
- Conduct comprehensive vendor risk assessments and manage vendor risk monitoring programs
- Collaborate with multiple departments to complete security and compliance due diligence questionnaires on behalf of clients, ensuring accurate and timely responses
- Manage and administer security awareness training and phishing simulation campaigns, including content deployment, user enrollment, and progress tracking
- Collect evidence for frameworks and regulations.
- Manage, coordinate, and track client projects and security-related audits
- Prepare detailed reports on security and governance activities, findings, and risk assessments
Required Skills and Qualifications:
- Experience: 3+ years in a GRC role focused on IT or cybersecurity controls, and/or 3+ years in an IT role with cybersecurity focus.
- Excellent analytical, organizational, and problem-solving skills
- Past experience at a Managed Services Provider.
- Strong written and verbal communication skills
- Comfortable working with various technical tools to gather information on systems and settings
- Detail-oriented with a commitment to accuracy and meeting deadlines
- Ability to manage multiple projects simultaneously while maintaining quality standards
- High personal and professional ethical standards
Preferred Skills:
- Cybersecurity / Compliance certifications (CompTIA Security+, CGRC, CRISC, CISSP, CISA, etc.)
- Hands-on experience with GRC platforms, security awareness training tools, and phishing simulation platforms.
- Familiarity with regulations pertaining to the financial services or biotech verticals, including SEC, SOX, and HIPAA.
- Experience with vendor management platforms and third-party risk assessment methodologies.
Salary Range for this position (depending upon experience):
$70,000-88,000
This range reflects the minimum and maximum targets for new hires across all US locations (with the exception of MA, NY, and CA). Within the range, individual pay is determined by job-related skills, experience, work location, and relevant education or training.
What you’ll love about Coretelligent :
We take Coretelligent culture very seriously! As a company, we constantly think of ways to give back to our valued employees through company engagement. We offer a competitive salary, amazing benefits, a great vacation package, a healthy work-life balance, and opportunities to grow your career fr