1

Grc Soc Analyst Jobs (NOW HIRING)

GRC Analyst

Dallas, TX · On-site +1

THE POSITION NMC is hiring a GRC Analyst to join the Information Security team, reporting to the ... Working knowledge of at least two major security frameworks or standards - ISO 27001, SOC 2 TSC ...

THE POSITION NMC² is hiring a GRC Analyst to join the Information Security team, reporting to the ... Working knowledge of at least two major security frameworks or standards - ISO 27001, SOC 2 TSC ...

THE POSITION NMC² is hiring a GRC Analyst to join the Information Security team, reporting to the ... Working knowledge of at least two major security frameworks or standards - ISO 27001, SOC 2 TSC ...

GRC Analyst

San Francisco, CA · On-site

$95K - $150K/yr

As a GRC Analyst at Zip, you'll be a key driver for ensuring the success of compliance programs at ... You'll help maintain our existing SOC and ISO certifications while supporting new certifications ...

The IT GRC Analyst will leverage GRC tooling to automate and streamline compliance monitoring ... Review SOC reporting for third-party compliance and coordinate data privacy matters with the Data ...

The IT GRC Analyst will leverage GRC tooling to automate and streamline compliance monitoring ... Review SOC reporting for third-party compliance and coordinate data privacy matters with the Data ...

What You Will Do As an Entry Level GRC Analyst at Hotman Group you will work side by side with ... Familiarity with major security and privacy frameworks including ISO, NIST, SOC 2, and HIPAA

Senior GRC Analyst

San Francisco, CA · On-site +1

$183K - $205K/yr

Proven experience leading or supporting a SOC 2 Type 2 compliance initiative, including ... A data-informed mindset, with the ability to use analytics to assess GRC performance and maturity.

Senior GRC Analyst

San Francisco, CA · On-site

$150 - $200/hr

Proven experience leading or supporting a SOC 2 Type 2 compliance initiative, including ... A data-informed mindset, with the ability to use analytics to assess GRC performance and maturity.

$150 - $200/hr

Proven experience leading or supporting a SOC 2 Type 2 compliance initiative, including ... A data-informed mindset, with the ability to use analytics to assess GRC performance and maturity.

Senior GRC Analyst

San Francisco, CA · On-site

$183K - $205K/yr

Proven experience leading or supporting a SOC 2 Type 2 compliance initiative, including ... A data-informed mindset, with the ability to use analytics to assess GRC performance and maturity.

Showing results 21-40

Grc Soc Analyst information

See salary details

$36.5K

$97.7K

$228.5K

How much do grc soc analyst jobs pay per year?

As of Sep 11, 2026, the average yearly pay for grc soc analyst in the United States is $97,659.00, according to ZipRecruiter salary data. Most workers in this role earn between $55,000.00 and $111,000.00 per year, depending on experience, location, and employer.

What is a GRC SOC Analyst?

A GRC SOC Analyst is a cybersecurity professional responsible for managing and monitoring an organization's Governance, Risk, and Compliance (GRC) framework within a Security Operations Center (SOC). Their main duties include assessing security risks, ensuring compliance with regulations and standards, monitoring security alerts, and responding to incidents. They help to create policies and procedures that align with best practices, conduct regular audits, and report on security posture to stakeholders. This role often acts as a bridge between technical security operations and the business’s compliance requirements.

What are the key skills and qualifications needed to thrive as a GRC SOC Analyst?

To thrive as a GRC SOC Analyst, you need a solid understanding of cybersecurity principles, risk management, regulatory compliance frameworks (such as NIST, ISO 27001), and typically a degree in information security or related fields. Familiarity with security information and event management (SIEM) tools, incident response platforms, and relevant certifications like CISSP or CISM is often required. Strong analytical thinking, attention to detail, and effective communication skills help analysts investigate threats and communicate risks. These skills and qualities are crucial for identifying vulnerabilities, ensuring compliance, and protecting organizational assets from evolving cyber threats.

How does a GRC SOC Analyst typically collaborate with other departments to ensure effective risk management?

A GRC SOC Analyst regularly works with IT, compliance, and business units to identify, assess, and mitigate security risks. They facilitate communication between technical and non-technical teams by translating security requirements and findings into actionable steps for different stakeholders. This collaborative approach ensures that security controls align with organizational policies and regulatory standards, supporting a comprehensive risk management strategy. Effective teamwork and clear communication are essential for success in this role.

What states have the most Grc Soc Analyst jobs?

States with the most job openings for Grc Soc Analyst jobs include:

What are popular job titles related to Grc Soc Analyst jobs?

For Grc Soc Analyst jobs, the most frequently searched job titles are:

Infographic showing various Grc Soc Analyst job openings in the United States as of August 2026, with employment types broken down into 90% Full Time, 5% Part Time, and 5% Contract. Highlights an 80% Physical, 8% Hybrid, and 12% Remote job distribution, with an average salary of $97,659 per year, or $47 per hour.

Senior Analyst, Cybersecurity GRC

Washington, DC • On-site

Next Step Systems
IT Services • 11 - 50 employees

$113K - $146K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 6 days ago


Key responsibilities

  • Administer the completion of compliance-related client requests to assess security policies and procedures.

  • Respond to inquiries on security controls policies, processes, and procedures for managed systems and applications.

  • Support Third Party Risk Management (TPRM) and Governance and Risk functions by conducting vendor due diligence and supporting broader GRC efforts.


Job description

Senior Analyst, Cybersecurity GRC, Washington, DC
The Senior Analyst, Cybersecurity GRC will administer the completion of compliance-related client requests to assess security policies and procedures. The Senior Analyst will respond to inquiries on the security controls policy, processes, and procedures implemented for managed systems and applications, as well as support Third Party Risk Management (TPRM) and Governance and Risk functions in conducting vendor due diligence (initial, reassessments and ongoing monitoring) and supporting broader GRC efforts. This position is 100% Onsite and not open for Remote.
Senior Analyst, Cybersecurity GRC Responsibilities:
- Review and understand current IT Risk Management (ITRM) program framework and associated policies, standards, procedures, and processes.
- Prepare and respond to related compliance requests and web-shares including referencing evidentiary artifacts or other documentation.
- Complete external information security assessments, remediation efforts and support status tracking of assessment queues.
- Coordinate with external assessors and internal subject matter experts to address compliance inquiries and web-shares of security artifacts.
- Assist in further defining the process for completing information security control assessments.
- Support metrics and reporting of the Information Security Program through the collection and analysis of effectiveness security control measures.
- Develop understanding of control structure to support the creating or revising standard narratives/responses for client questionnaires (e.g., SIG).
- Work with the CISO, senior managers, managers and other internal stakeholders to report existing information security programs and ongoing security projects that address information security risks and compliance requirements.
- Manage competing deadlines and multiple external inquiries using effective organizational skills and attention to detail as demonstrated by prior work experience.
- Contribute to the creation of GRC related processes and procedures and relevant documents.
- Collaborate with InfoSec, Privacy and GRC management and internal subject matter experts to support coordination, tracking, and reporting of GRC team strategy and goals; and complete other tasks as assigned.
- Participate in efforts to evolve and streamline GRC solutions, processes and procedures.
- Develop and maintain the status tracking related to findings from information security assessments, Governance, Risk and Compliance, and TPRM due diligence/reassessment assessments and associated remediations.
Senior Analyst, Cybersecurity GRC Qualifications:
- Bachelor's degree (required) and at least 5 years of combined information technology and information security experience.
- Strong understanding of multiple risk management concepts, frameworks, and standards (CSC, NIST, ISO, COBIT).
- Strong understanding of information security concepts and technologies.
- Strong understanding of due diligence and compliance documents (e.g. SOC 2 Type 2, ISO 27001 Certification, SIG Questionnaires, Certificates of Insurance, Pen Test, etc.).
- Strong communication skills with the ability to interact with various teams.
- Demonstrated experience with the NIST Cybersecurity Framework and auditing security controls identified in NIST SP800-171 and NIST SP800-53A.
- Experience in the analysis of IT and Security control requirements and understanding of associated technology processes.
- Experience working with internal and external auditing firms.
- Fundamental knowledge of MS Outlook, Word, Excel, Visio, and PowerPoint.
Benefits include medical insurance, retirement plan, Dental, Vision, PTO, etc.
Keywords: Washington DC Jobs, Senior Analyst, Cybersecurity GRC, Information Security, Risk Management, CSC, ISO, COBIT, NIST Cybersecurity Framework, NIST SP800-171, NIST SP800-53A, SOC 2 Type 2, ISO 27001 Certification, SIG Questionnaires, Certificates of Insurance, Pen Test, Governance, Risk, Compliance, Washington, DC Recruiters, Information Technology Jobs, IT Jobs, Washington, DC Recruiting
Looking to hire for similar positions in Washington, DC or in other cities? Our IT recruiting agencies and staffing companies can help.
We help companies that are looking to hire Senior Analysts, Cybersecurity GRC for jobs in Washington, DC and in other cities too. Please contact our IT recruiting agencies and IT staffing companies today! Phone 630-428-0600 ext. 11 or email us at jobs@nextstepsystems.com. Click here to submit your resume for this job and others.
Atlanta Georgia IT Recruiters, Austin TX IT Recruiters, Baltimore Executive Staffing, Boston IT Recruiters, Charlotte IT Recruiters, Chicago Recruiting Agency, Cincinnati Executive Search Firms, Cleveland Executive Tech Recruiting, Columbus Technical Recruiters, Dallas Recruiters for IT, Denver Technology Headhunters, Detroit IT Headhunters, Fort Lauderdale Information Technology Recruiters, Houston IT Recruiters, Indianapolis IT Recruiters, Jacksonville IT Recruiters, Kansas City IT Recruiters, Los Angeles IT Recruiters, Miami IT Recruiters, Minneapolis IT Recruiters, Nashville IT Recruiters, New Jersey Tech Recruiters, New York IT Recruiters, Phoenix IT Recruiters, Raleigh IT Recruiters, Salt Lake City IT Recruitment, San Antonio Information Technology Recruiters, San Diego Executive Staffing, San Francisco Executive Search Firms, San Jose Executive Tech Recruiting, Seattle Technical Recruiters, Silicon Valley Tech Recruiters, St. Louis Technology Headhunters, Tampa Technology Headhunters, Washington DC IT Recruiters
Home"Senior Analyst, Cybersecurity GRC