Talent.com
IT Governance, Risk and Compliance Analyst
IT Governance, Risk and Compliance AnalystAmerican Red Cross • Portland, ME, United States
IT Governance, Risk and Compliance Analyst

IT Governance, Risk and Compliance Analyst

American Red Cross • Portland, ME, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Please use Google Chrome or Mozilla Firefox when accessing Candidate Home.

By joining the American Red Cross you will touch millions of lives every year and experience the greatness of the human spirit at its best. Are you ready to be part of the world's largest humanitarian network?

Join us-Where your Career is a Force for Good!

Job Description : WHY CHOOSE US?

Joining The American Red Cross is like nothing else - it's as much something you feel as something you do. You become a vital part of the world's largest humanitarian network. Joining a team of welcoming individuals who are exceptional, yet unassuming. Diverse, yet uncompromising in unity. You grow your career within a movement that matters, where success is measured in people helped, communities made whole, and individuals equipped to never stop changing lives and situations for the better.

When you choose to be a force for good, you'll have mentors who empower your growth along a purposeful career path. You align your life's work with an ongoing mission that's bigger than all of us. As you care for others, you're cared for with competitive compensation and benefits. You join a community that respects who you are away from work as much as what you do while at work.

WHAT YOU NEED TO KNOW ABOUT THE JOB :

As an IT GRC Analyst, you will help mature and maintain the organization's Governance, Risk, and Compliance (GRC) program. You will focus on control assessment by evaluating, reviewing, tracking and supporting policies and controls aligned with NIST 800-53 / 171, COBIT, ISO 27001, and SOC 2 frameworks. This role works cross-functionally with IT, Information Security, Internal Audit, Legal, and Finance to assess risks, improve processes, and support audit readiness.

This position will be virtually located / work-from home and need to work east-coast hours, with typical workday starting at 8am.

WHERE YOUR CAREER IS A FORCE FOR GOOD (Key Responsibilities) :

Governance, Risk & Compliance

  • Support daily GRC operations, policy development, and audit readiness.
  • Collaborate with stakeholders to strengthen internal controls and ensure compliance with federal regulations and industry standards.
  • Promote control awareness and accountability through training and consultation.
  • Maintain GRC tools (e.g., ServiceNow IRM) and stay current on technology trends.

Control Assessment

  • Evaluate IT control effectiveness across infrastructure, applications, and cloud environments.
  • Review documentation, identify gaps, and recommend improvements.
  • Track and report control findings, risks, and remediation plans.
  • Support exception and risk acceptance processes.
  • Audit Support

  • Coordinate with internal / external auditors and business units during assessments.
  • Provide consulting and first-level support for audit activities and findings.
  • Assist in developing and executing remediation strategies.
  • Policy & Standards

  • Assist in drafting, reviewing, and implementing IT policies, standards, and procedures.
  • Analyze regulatory requirements and recommend updates to improve compliance.
  • Scope : Individual contributor that works under limited supervision. Apply subject matter knowledge. Capacity to understand specific needs or requirements to apply skills / knowledge.

    Note : Qualified candidates must be authorized to work in the United States. The American Red Cross does not sponsor employment visas.

    WHAT YOU NEED TO SUCCEED (required / minimum qualifications) :

  • Bachelor's degree in Information Technology, Cybersecurity, Information Systems, or a closely related discipline.
  • Minimum 4 years of experience in IT audit, compliance, or Information Security.
  • Strong understanding of control frameworks : NIST, ISO, COBIT, FedRAMP, SOC 2.
  • Experience with control assessments, documentation review, audit coordination, and utilizing ServiceNow IRM (preferred) to manage GRC workflows, automate evidence collection, and streamline issue remediation.
  • Skilled in drafting and reviewing IT policies, standards and procedures.
  • Strong communication, analytical, and project management skills.
  • Experience working cross-functionally with technical and business teams.
  • Familiarity with SAFe Agile or similar iterative delivery frameworks.
  • Certifications such as CISA, CRISC, CISSP, CISM are a plus.
  • Combination of candidate's education and general experience satisfies requirements so long as the total years equate to description's minimum education and general experience years combined (Management experience cannot be substituted).
  • PAY INFORMATION :

    The annual salary range for this position is $90K - $110K. We do not offer an annual bonus for this role.

    Note that American Red Cross salaries are aligned to the specific geographic location in which the work is primarily performed. Other factors that may be used to determine your actual salary may include your specific skills, how many years of experience you have and comparison to other employees already in this role.

  • We will review specific salary information at the time of phone screening based upon your location & experience.
  • This job will be posted for a minimum of five business days and extended if the applicant pool needs to be expanded.

    BENEFITS FOR YOU :

    As a mission-based organization, we believe our team needs great support to do great work. Our comprehensive package includes :

  • Medical, Dental Vision plans
  • Health Spending Accounts & Flexible Spending Accounts
  • PTO : Starting at 19 days a year; based on type of job and tenure
  • Holidays : 11 paid holidays comprised of six core holidays and five floating holidays
  • 401K with up to 6% match
  • Paid Family Leave
  • Employee Assistance
  • Disability and Insurance : Short + Long Term
  • Service Awards and recognition
  • Apply now! Joining our team will provide you with the opportunity to

    make your career a force for good!

    The American Red Cross is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected veteran status, age, or any other characteristic protected by law.

    Qualified applicants with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers, San Diego Fair Chance Ordinance, the California Fair Chance Act and any other applicable state and local laws.

    AmeriCorps, the federal agency that brings people together through service, and its partners - the Peace Corps, AmeriCorps Alums, National Peace Corps Association, and the Service Year Alliance - launched Employers of National Service to connect national service alumni with opportunities in the workforce.American Red Cross is proud to be an EONS partner and share our employment opportunities with the network of organizations.

    Interested in Volunteering? Visit redcross.org / volunteertoday to learn more, including our most-needed volunteer positions.

    To view the EEOC Summary of Rights, click here : Summary of Rights

    serp_jobs.job_alerts.create_a_job

    It Governance Analyst • Portland, ME, United States

    Job_description.internal_linking.related_jobs
    Lead Consultant, M&A Due Diligence and Compliance

    Lead Consultant, M&A Due Diligence and Compliance

    Ramboll • Portland, ME, US
    serp_jobs.job_card.full_time
    Ramboll is a global architecture, engineering, and consultancy company.As a foundation-owned people company, founded in Denmark, we believe that the purpose of sustainable change is to create a thr...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Carrier Compliance CoordinatorPoland (remote)

    Carrier Compliance CoordinatorPoland (remote)

    Vonage • Poland, ME, US
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    Carrier Operations Coordinator.Join Vonage and help us innovate cloud communications for businesses worldwide!.You will be responsible for overseeing the operational delivery of compliance-related ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Premium Audit Analyst I

    Premium Audit Analyst I

    MEMIC • Portland, ME, US
    serp_jobs.job_card.full_time
    The Premium Audit Analyst I is responsible for reviewing and processing premium audits and for interpreting results for application to current policies. Responsible for a detailed review of audits t...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Bank Commercial Credit Analyst II

    Bank Commercial Credit Analyst II

    Partners Bank • Sanford, ME, US
    serp_jobs.job_card.full_time
    Commercial Credit Department Manager .Must already be authorized to work in the United States.Maine and New Hampshire that has established superior service level expectations.We offer generous...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    IT Service Technician

    IT Service Technician

    A-Line Staffing Solutions • Sanford, ME, United States
    serp_jobs.job_card.full_time
    About the Role (W2 Contract - No C2C).We’re seeking a reliable and self-motivated.This role involves installing, maintaining, and repairing computer and printer hardware in retail environments.You’...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Records Examiner / Analyst Supporting the DEA

    Records Examiner / Analyst Supporting the DEA

    Clearance Jobs • Portland, ME, US
    serp_jobs.job_card.full_time
    Be a part of the nationwide law enforcement initiative that removes the tools of crime from criminal organizations, depriving wrongdoers of proceeds from their crime and impacting the infrastructur...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Safety Director

    Safety Director

    Sysco • Westbrook, ME, US
    serp_jobs.job_card.full_time
    Health, Safety, And Environmental Manager.This Operating Company (OpCo) based position will lead the implementation of prevention-focused health, safety and environmental (HSE) and security program...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cybersecurity Senior Analyst - EMEA Regional Security Office [PL]

    Cybersecurity Senior Analyst - EMEA Regional Security Office [PL]

    Aon • Poland, ME, US
    serp_jobs.job_card.full_time
    Cybersecurity Senior Analyst – EMEA Regional Security Office [PL].Aon is currently recruiting a Cybersecurity Senior Analyst to join our EMEA Regional Security Office (RSO) team.The Regional Securi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    IT Professional

    IT Professional

    Navy • Biddeford, ME, United States
    serp_jobs.job_card.full_time
    ABOUT Effective, secure communication in the cyber domain is essential to the everyday operations of military intelligence in America’s Navy. Information Professionals who oversee the seamless opera...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    ORM Group Risk Specialist - Scenario Analysis / ELED

    ORM Group Risk Specialist - Scenario Analysis / ELED

    TD Bank • Portland, ME, US
    serp_jobs.job_card.full_time
    TD Bank is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches / stores. Every day, we deliver legendary customer experiences to over 27...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Governance & Control Analyst - Issues Management

    Senior Governance & Control Analyst - Issues Management

    TD Bank • Portland, ME, US
    serp_jobs.job_card.full_time
    Senior Governance & Control Analyst.The Senior Governance & Control Analyst provides specialized business governance and control guidance and support for a business or functional area and implement...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security GSOC Analyst

    Security GSOC Analyst

    Allied Universal • Portland, ME, US
    serp_jobs.job_card.full_time
    Allied Universal Security Services is seeking to fill the position of Security GSOC Analyst at a Corporate Site in Portland, ME. Full Time Hours Wednesday 12pm - 6pm and Thursday to Saturday 6am - 6...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Commercial Credit Analyst I

    Commercial Credit Analyst I

    Partners Bank • Sanford, ME, US
    serp_jobs.job_card.full_time
    Commercial Credit Department Manager.Full Time / Exempt / Onsite Only.Must already be authorized to work in the United States. Maine and New Hampshire that has established superior service level exp...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Vice President for Enrollment and Dean of Admission and Financial Aid

    Vice President for Enrollment and Dean of Admission and Financial Aid

    InsideHigherEd • Lewiston, Maine, United States
    serp_jobs.job_card.full_time
    Founded in 1855 by abolitionist Freewill Baptists, Bates has long challenged social hierarchies and advanced a mission rooted in realizing human potential. Today, Bates is known for its rigorous and...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Information Security GRC Analyst

    Information Security GRC Analyst

    Consolidated Communications • South Portland, ME, US
    serp_jobs.job_card.full_time
    Classification : Exempt, Non-Bargaining.Position may be remote; within commuting distance to the office in South Portland, ME area. This position will require an additional national security backgrou...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cyber Security Analyst II

    Cyber Security Analyst II

    Unum Insurance • Portland, ME, US
    serp_jobs.job_card.full_time
    Our Fortune 500 company is driving a digital transformation and looking for forward-thinking innovators to disrupt how our industry thinks about and uses technology. As one of the world's leading em...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Compliance Risk and Reporting Manager

    Compliance Risk and Reporting Manager

    TD Bank • Falmouth, ME, US
    serp_jobs.job_card.full_time
    Compliance Risk and Reporting Manager.At TD Bank US Compliance, we're on a mission to build a more resilient and scalable compliance risk management function. As part of our team, you'll play a key ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Information Security Analyst 2

    Information Security Analyst 2

    WEX • Portland, ME, US
    serp_jobs.job_card.full_time
    Assist in the development and enforcement of security policies, standards, and procedures, considering the implications of AI in security. Ensure that resource owners / users are aware of security pol...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Vulnerability Management Security Analyst, Information Security

    Senior Vulnerability Management Security Analyst, Information Security

    IDEXX • Westbrook, ME, US
    serp_jobs.job_card.full_time
    Senior Vulnerability Management Security Analyst, Information Security.Senior Vulnerability Management Security Analyst, Information Security. Senior Vulnerability Management Security Analyst, Infor...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Manager, Fraud Risk & Compliance Operations

    Manager, Fraud Risk & Compliance Operations

    WEX • Portland, ME, US
    serp_jobs.job_card.full_time
    Manager, Fraud Risk And Compliance Operations.The Manager, Fraud Risk And Compliance Operations is a critical role within the Global Risk & Compliance Organization at WEX.This dynamic role has mana...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted