Skip to main content
Tallo logoTallo logo

Find Jobs

Find Jobs Near You – Available Work in Your Location

Technology
Cyber / Information Security Engineer / Analyst
Carol Stream, IL

Find & Apply For Cyber / Information Security Engineer / Analyst Jobs in Carol Stream, Illinois

Browse jobs from a variety of sources below, sorted with the most recently published, nearest to the top. Click the title to view more information and apply online.

Skip to job details
Now viewing: GRC Analyst
Apply for this opportunity

To apply for this job, you'll continue to an external website or email application.

Insight Global

GRC Analyst

Job Description

Job Description Own the day-to-day execution of the cybersecurity Governance, Risk, and Compliance program, including cyber risk assessments, enterprise risk reporting, risk register management, and board-level risk dashboards. Lead policy and standards management, ensuring alignment with frameworks such as NIST, HITRUST, HIPAA, and PCI DSS. Partner with Compliance, Internal Audit, Legal, IT, Engineering, and Product teams to identify, assess, mitigate, and track cybersecurity risks. Support audits and certifications, manage client security questionnaires, review security-related contract language, facilitate risk governance meetings, and provide leadership with clear insights into cybersecurity risk and compliance posture. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.

To learn more about how we collect, keep, and process your private information, please review
Insight Global's Workforce Privacy Policy:
https://insightglobal.com/workforce-privacy-policy/. Skills and Requirements 3+ years of experience in cybersecurity GRC, IT audit, information security, or compliance. Hands-on experience managing risk registers and the full cyber risk management lifecycle. Experience supporting audits/certifications across at least two frameworks such as
NIST CSF, HITRUST, HIPAA, PCI
DSS, or SOC 2. Strong knowledge of NIST CSF, HITRUST, HIPAA, and
PCI DSS 4.0.
Experience reviewing cybersecurity and data protection language in contracts, BAAs, and DPAs. Experience with a GRC platform (ServiceNow GRC, Archer, OneTrust, LogicGate, AuditBoard, etc.). Strong communication skills with the ability to translate technical risks for executive and business audiences. Ability to manage multiple priorities and collaborate across Legal, Compliance, IT, Engineering, Product, Audit, and Leadership teams. Industry certifications such as
CISSP, CISA, CISM, CRISC, CIPP, HCISPP, HITRUST
CCSFP, or PCI ISA. Experience in healthcare, financial services, or other regulated industries. Hands-on experience supporting HITRUST r2 certifications and/or
PCI DSS 4.0
attestations. Knowledge of GDPR, CCPA/CPRA, and other privacy regulations. Familiarity with cloud environments (AWS, Azure, GCP) and SaaS security models. Experience supporting organizations undergoing rapid growth, M&A activity, or technology modernization initiatives. Experience with executive-level risk reporting and board presentations.