3

Entry Level Remote Grc Analyst Jobs in Missouri (NOW HIRING)

This is not designed to be a full-time remote position. Relocation assistance may be considered ... GRC software (e.g., eMASS, Xacta, CSAM, Archer, etc.) * Microsoft Office Suite (e.g., Word ...

New

Programmer Analyst

Kansas City, MO · Remote

$30 - $35/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Experience Level Entry Level Job Type & Location This is a Contract to Hire position based out of ... remote position. Application Deadline This position is anticipated to close on Aug 18, 2026. About ...

Experienced Substation Drafter

Saint Louis, MO · On-site +1

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

A hybrid or in-office work setup is preferred to foster collaboration and mentorship, but remote ... Collect, compile, and analyze data from the physical work site, surveys, structural concepts ...

Associate Graduate Engineer

Saint Louis, MO · On-site +1

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

This entry-level role involves designing engineering systems for overhead and subsurface utility ... Analyze information from topographical surveys, utility atlas information, field sketches, client ...

Associate Graduate Engineer

Kansas City, MO · On-site +1

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

This entry-level role involves designing engineering systems for overhead and subsurface utility ... Analyze information from topographical surveys, utility atlas information, field sketches, client ...

Entry Level Remote Grc Analyst information

What is an entry level remote GRC analyst?

An Entry Level Remote GRC (Governance, Risk, and Compliance) Analyst is a professional who helps organizations identify, assess, and manage risks related to information security, compliance, and governance, while working remotely. They assist in developing and implementing policies, monitoring compliance with regulations, and conducting risk assessments under the guidance of senior staff. This role typically involves analyzing data, preparing reports, and supporting audits to ensure the organization meets regulatory standards and internal policies.

What are the key skills and qualifications needed to thrive as an entry level remote GRC analyst?

To thrive as an Entry Level Remote GRC Analyst, you need a solid understanding of information security principles, risk management, and regulatory compliance, often supported by a relevant degree such as in cybersecurity or information systems. Familiarity with GRC platforms like RSA Archer, ServiceNow GRC, and basic certifications such as CompTIA Security+ or ISO 27001 Foundation is typically beneficial. Strong analytical thinking, attention to detail, and effective remote communication skills help you excel in this role. These competencies are crucial for identifying risks, ensuring compliance, and supporting organizational security objectives in a remote work environment.

What are some common challenges faced by entry level remote GRC analysts, and how can they be overcome?

Entry level remote GRC Analysts often face challenges such as learning complex regulatory frameworks, adapting to a fast-paced and evolving compliance landscape, and building effective communication with cross-functional teams while working remotely. To overcome these challenges, it's important to proactively seek mentorship, participate in virtual team meetings, and take advantage of online training resources. Staying organized and regularly updating documentation also helps maintain transparency and collaboration within the team, ensuring successful compliance outcomes.

What is the difference between Entry Level Remote Grc Analyst vs Entry Level Remote Compliance Analyst?

AspectEntry Level Remote Grc AnalystEntry Level Remote Compliance Analyst
CertificationsBasic GRC certifications (e.g., CISA, CRISC)Compliance-specific certifications (e.g., CCEP, CCEP)
Work EnvironmentRemote, corporate or consulting firmsRemote, regulatory agencies or corporations
Industry UsageFinance, healthcare, tech, and consultingFinancial services, healthcare, and manufacturing
Job FocusRisk management, governance, compliance frameworksRegulatory adherence, policy implementation

Both roles are entry-level, remote positions within compliance and governance fields. The GRC Analyst focuses on risk, governance, and compliance frameworks, while the Compliance Analyst emphasizes regulatory adherence and policy enforcement. They share similar certifications and work environments but differ in their specific focus areas within compliance functions.

What are the most commonly searched types of Remote Grc Analyst jobs in Missouri?

The most popular types of Remote Grc Analyst jobs in Missouri are:

What job categories do people searching Entry Level Remote Grc Analyst jobs in Missouri look for?

The top searched job categories for Entry Level Remote Grc Analyst jobs in Missouri are:

What cities in Missouri are hiring for Entry Level Remote Grc Analyst jobs?

Cities in Missouri with the most Entry Level Remote Grc Analyst job openings:

Infographic showing various Entry Level Remote Grc Analyst job openings in Missouri as of August 2026, with employment types broken down into 86% Full Time, 8% Part Time, and 6% Contract. Highlights an 79% Physical, 9% Hybrid, and 12% Remote job distribution.

Cybersecurity Analyst II

ASPIS LLC

Kansas City, MO • On-site, Remote

Full-time

Posted yesterday

New


Job description

Aspis strives to make enterprise cybersecurity solutions and professional services accessible to organizations of all sizes, from small and medium-sized businesses to large enterprises, nonprofits, and municipal, state, and federal government agencies. Aspis is a HUBZone-certified small business. Our values are Integrity, Community, and Diversity. https://aspis.consulting 


Aspis is hiring a Compliance / ATO Specialist to own security compliance and authorization work on a large Federal civilian cloud platform operations and maintenance program. The environment is hybrid: a FedRAMP-authorized AWS commercial cloud footprint alongside Azure, on-premises data centers, and legacy and mainframe-connected applications supporting hundreds of business applications. You will keep authorization packages current, run the continuous monitoring and POA&M cadence, maintain the compliance evidence repository, and carry the compliance story through FISMA reporting, A-123 testing, independent assessments, and penetration test cycles. It is the role that protects authorization continuity for the program, working closely with cybersecurity engineers, cloud engineers, system owners, and government stakeholders.


This is a full-time W-2 position supporting a federal government client as part of a contract delivery team. This is not designed to be a full-time remote position. Relocation assistance may be considered. The Kansas City, Missouri metropolitan area is strongly preferred and candidates who reside in and can work from the Kansas City metro will receive preference; however, residency there is not required, and we will consider candidates elsewhere in the United States who are able to travel to the client sites as needed. Due to the support a federal client, working abroad (outside of the United States) is explicitly prohibited. Travel to Kansas City for remote workers will not be reimbursed. Consistent with Aspis' return to office and telework policy, employees are required to report to an Aspis office on a regular basis but may be allowed to work from home and are required to visit client job sites as applicable. The company reserves the right to change its employment policies at any time without notice.


To be considered for this position, your resume must clearly document knowledge, skills, experience, and abilities similar to the responsibilities, qualifications, and requirements below.


A Cybersecurity Analyst may perform any combination of the functions below based on assignment and experience level.


Responsibilities

  • Prepare and maintain assessment and authorization packages under the Risk Management Framework, including System Security Plans, control implementation statements, and risk documentation.
  • Run the continuous monitoring cadence: control assessment scheduling, evidence collection, and posture reporting.
  • Maintain a living POA&M inventory, conduct aging reviews, and escalate items at risk of breaching remediation service levels before they slip.
  • Support FISMA reporting, OMB A-123 general computer controls testing, independent assessments, penetration tests, and contingency and disaster recovery exercises.
  • Maintain the standards compliance matrix and the deviation and waiver log, and keep the compliance evidence repository audit-ready.
  • Perform security impact analyses for proposed changes, migrations, and new services, and verify FedRAMP authorization status for proposed tooling.
  • Track vulnerability remediation status against contract thresholds and coordinate closure with engineering teams and system owners.
  • Improve and automate compliance and posture reporting to reduce manual evidence collection.
  • Communicate compliance findings and risk positions clearly to technical and non-technical stakeholders, and support knowledge transfer to government staff.
  • Other duties as assigned.

  Qualifications

  • Demonstrated hands-on RMF work in a cloud or hybrid environment.
  • Working knowledge of NIST SP 800-53 Rev 5, NIST SP 800-37, FISMA, and FedRAMP, and familiarity with Federal audit cycles.
  • Experience authoring or maintaining SSPs, control implementation statements, POA&Ms, and risk documentation.
  • Working familiarity with AWS and Azure security services sufficient to validate controls and collect evidence.
  • Clear, professional written and verbal communication, including the ability to produce security documentation that holds up under audit.
  • Strong analytical skills, attention to detail, and comfort tracking many open items to closure.
  • Ability to manage multiple assignments and deadlines with limited day-to-day oversight.
  • Discretion in handling sensitive client, system, and company information.
  • Ability to obtain and maintain a Federal Public Trust background investigation.

Skills:

  • RMF and authorization documentation, continuous monitoring, POA&M management, audit and assessment support, and cloud compliance evidence collection.
  • GRC software (e.g., eMASS, Xacta, CSAM, Archer, etc.)
  • Microsoft Office Suite (e.g., Word, PowerPoint, Excel, etc.)
  • Strong verbal and written communication skills.


Background Check: 

  • Successful completion of reference check.
  • Successful completion of a commercial background check.
  • Authorized to work in the United States without sponsorship.
  • Successful completion of an OF-306 (as a contractor).
  • Successful completion of a Federal Public Trust background check required.


Degree Required: Associate's degree or higher preferred; equivalent experience and/or certifications considered in lieu of a degree.


Experience Required: 3-8 years of relevant cybersecurity experience.


Industry Certifications: CompTIA Security+ (or equivalent) required; CGRC (formerly CAP), CISA, CISM, CCSP, or CISSP preferred.


We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, protected veteran status, or any other characteristic protected by law. We will consider for employment qualified applicants with criminal histories consistent with applicable law.


PIf0e10d22f3fd-25405-41357907