GRC Analyst India

Remote • Posted 1 hour ago • Updated 1 hour ago
Contract Corp To Corp
Contract W2
6 Months
Remote
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • GRC
  • GOVERNANCE
  • RISK MANAGEMENT
  • COMPLIANCE
  • SECURITY AWARENESS
  • DATA GOVERNANCE
  • DILIGENT ONE
  • UPGUARD
  • TENABLE
  • SERVICENOW

Summary

HonorVet Technologies is a Service Disable Veteran-Owned IT staffing firm, ISO 9001 and ISO 27001 certified, working with federal agencies, state governments, and Fortune 500 enterprise clients across the US. What makes us different isn't a tagline; it's the way we work. We don't forward resumes and hope for the best. We take the time to understand where a professional like you is headed and only reach out when we genuinely believe there's a fit worth exploring. 

Title: Security GRC Support Analyst
Location: India
Work Mode: Remote
Duration: 06 Months 
Role Type: Contract or managed support resource
Reports To: Sr. Manager, Security GRC 


Primary Purpose:
  • Provide reliable operational support across core Security GRC and security awareness activities while preserving accountable decision-making with the Sr. Manager, Security GRC.
Role Summary:
  • The Security GRC Support Analyst executes recurring governance, risk, compliance, vendor-risk, reporting, and security awareness work. The role organizes evidence, maintains accurate records, prepares first drafts and routine analyses, coordinates follow-up, and escalates exceptions or judgment-intensive matters.
  • It is designed to operate effectively as an individual contractor, an offshore resource, or a human role supported by approved AI tools.
 
Key Responsibilities
The role covers:
  • Governance and Policy Lifecycle
  • Risk, Vulnerability, and Remediation Tracking
  • Third-Party and Technology Risk Support
  • Security Awareness and Training
  • Metrics, Evidence, and Reporting
  • Data Governance and Compliance Support
  • These responsibilities include maintaining policy inventories, tracking risks and remediation, coordinating vendor-security reviews, collecting security evidence, supporting awareness campaigns and phishing simulations, preparing KPI/KRI reporting, and supporting Microsoft Purview and other compliance activities.
 
Required Qualifications:
  • Working knowledge of security governance, risk, compliance, controls, or audit-support practices.
  • Strong written communication, document-quality control, organization, and follow-through.
  • Ability to work with structured trackers, ticketing systems, dashboards, questionnaires, and evidence repositories.
  • Ability to distinguish routine processing from matters requiring professional judgment or escalation.
  • Experience handling confidential business and security information in accordance with access and data-handling requirements.
  • Professional fluency in English and the ability to collaborate effectively across time zones and functions.
 
Preferred Qualifications
  • Experience with NIST CSF, ISO/IEC 27001, SOC 2, third-party risk management, vulnerability remediation, or policy lifecycle management.
  • Experience supporting security awareness, phishing simulations, training administration, or employee communications.
  • Familiarity with tools such as Diligent One, UpGuard, Tenable, ServiceNow, Microsoft Purview, SharePoint, Excel, and reporting dashboards.
  • Experience using approved generative AI or workflow-automation tools for drafting, summarization, data preparation, or quality checks.
 
Key Point to Confirm During Screening
  • The candidate should be able to perform evidence collection and organization, tracker maintenance and routine follow-up, first-draft policies/reports/questionnaires/awareness content, data reconciliation and completeness checks, campaign administration and approved communications, and procedure documentation and workflow-improvement suggestions.
  • Final risk acceptance, exception approval, control-owner decisions, final vendor or technology approval, legal/privacy/employment/contractual interpretation, material changes to policy requirements or risk ratings, and external commitments or communications without required approval remain with the accountable owner.
 
90-Day Expectations:
  • First 30 days: Complete onboarding and access; learn applicable processes and tools; confirm recurring work inventory; begin supervised policy, metrics, and tracking support.
  • Days 31–60: Own routine updates and evidence collection; contribute to vendor reviews, remediation coordination, policy revisions, and awareness content; document procedures and escalation paths.
  • Days 61–90: Independently manage assigned recurring work; deliver reliable vendor-review packages, awareness and training reporting, dashboards, and status updates; propose measurable efficiency improvements.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 90941473
  • Position Id: 26-22840
  • Posted 1 hour ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

•

Today

Contract

$55.00 - $80.00

Remote

•

9d ago

Easy Apply

Contract

Depends on Experience

Remote

•

Today

Full-time

USD 168,000.00 - 238,000.00 per year

Remote

•

4d ago

Easy Apply

Full-time

Depends on Experience

Search all similar jobs