
Cyber GRC Analyst
Posted Jul 29

Posted Jul 29
This is a fully remote position, open to applicants in Tennessee.
• Execute governance and oversight responsibilities in alignment with NIST Risk Management practices as detailed in 800-39.
• Enhance AI governance and oversight by implementing stringent testing, approval, documentation, and regular review processes for GenAI-supported workflows. Focus areas include accuracy, traceability, hallucination risk, data management, and human-in-the-loop requirements.
• Maintain comprehensive control documentation, which includes testing evidence, workflow approvals, QA standards, and change records to facilitate internal governance and compliance evaluations (e.g., NIST, FedRAMP, CJIS, or CMMC frameworks).
• Engage in policy analysis and contribute to the formulation and refinement of security, technical, and AI governance policies.
• Conduct Tier 0 and automation quality assurance, assessing Torq workflows, decision points, enrichment steps, outputs, escalation logic, and ticket generation to confirm automation operates as intended.
• Execute technical workflow testing, including user acceptance testing (UAT) and regression testing associated with updates in Torq workflows, playbooks, integrations, or Sentinel rules.
• Investigate and resolve exceptions and failures in automated workflows to identify root causes, working collaboratively with Engineering to determine if issues arise from logic errors, data quality deficiencies, integration failures, or analyst actions.
• Create QA metrics to distinguish between analyst quality issues and automation quality concerns, offering data-driven insights into Tier 0 performance, consistency, and adherence to SLA.
• Perform regular reviews and assessments of analyst investigations and ticket management to ensure compliance with established QA standards, providing feedback for ongoing performance enhancement.
• Utilize QA findings to suggest updates and enhancements to playbooks, Torq workflows, automation rules, escalation criteria, and technical controls, emphasizing proactive improvement rather than only identifying gaps post-implementation.
• Promote communication and collaboration among Tier 0 automation systems, Tier 1 analysts, Engineering teams, and Governance, Risk, and Compliance stakeholders to ensure alignment of work outcomes with organizational goals.
• Serve as the primary point of coordination for QA and technical review discussions, ensuring integration across all stakeholders and establishing a cohesive strategy for continuous improvement.
• Candidates must possess a Bachelor's Degree and have 2 years of experience, or a Master's Degree with no experience, or 4 additional years of experience in lieu of a degree.
• Candidates must be U.S. Citizens.
• Candidates must hold a Public Trust clearance.
• Candidates should have experience in quality assurance processes.
• Must have practical experience in performance and user acceptance testing.
• Familiarity with compliance frameworks (NIST 800-53, ISO 27001) is required.
• This position offers the flexibility to work 100% remotely for the ideal candidate.
Inova Health
VCA Animal Hospitals
Allied Benefit Systems
Grupo Boticário
Get handpicked remote jobs straight to your inbox weekly.