
Senior GRC Analyst
Hotman Group, LLC
contract
Posted on:
Location Type: Remote
Location: Texas • United States
Visit company websiteExplore more
Job Level
Tech Stack
About the role
- Lead assessments and audits of security and IT control environments
- Design, implement, and mature cybersecurity and compliance programs
- Develop risk registers, conduct risk assessments, and track remediation efforts
- Create and refine policies, standards, and procedures that align with top frameworks (SOC 2, ISO 27001, NIST CSF, HIPAA, HITRUST, and more)
- Guide third-party vendor risk management programs
- Prepare clients for internal audits and external assessments
- Translate technical, regulatory, and business requirements into clear, actionable solutions
- Mentor junior analysts and contribute to the growth of our GRC practice.
Requirements
- 5+ years of hands-on experience in GRC, cybersecurity, IT audit, risk management, or a related field
- Deep expertise in cybersecurity fundamentals and IT control frameworks
- Strong working knowledge of compliance standards (e.g., SOC 2, ISO 27001, NIST CSF, HIPAA, HITRUST)
- A track record of delivering high-quality client service, managing projects, and driving results
- Excellent writing skills — you can translate complexity into clear, polished deliverables
- Outstanding critical thinking, problem-solving, and organizational skills
- A high level of accountability, ownership, and professional maturity
- Curiosity, creativity, and a proactive, solutions-first mindset
- Comfort working independently in a fast-paced, remote environment
- Authorized to work in the U.S.
- Able to pass a background check
- Reliable high-speed internet and a secure remote work setup.
Benefits
- Collaborative, not corporate: You’ll be part of a close-knit, supportive team where ideas are heard and results are celebrated.
- Growth-focused: We invest in your development because your success is our success.
- Client-obsessed: We go above and beyond to create amazing outcomes — and our clients notice.
- Energized and authentic: We believe doing great work should be exciting, meaningful, and even fun.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cybersecurityIT auditrisk managementGRCrisk assessmentspoliciesstandardsprocedurescompliance programsvendor risk management
Soft Skills
writing skillscritical thinkingproblem-solvingorganizational skillsaccountabilityownershipprofessional maturitycuriositycreativityproactive mindset