[Remote] GRC Consultant
Note: The job is a remote job and is open to candidates in USA. NationMind LLC is a technology consulting firm focused on software development and QA testing services. They are seeking an experienced GRC Consultant with expertise in Information Security, Cyber Security, and Data Security to support governance, risk, and compliance initiatives.
Responsibilities
- Perform governance, risk, and compliance assessments and security reviews
- Utilize RSA Archer for security assessment and risk management activities
- Conduct risk analysis, assessment, treatment, and mitigation planning
- Work with security frameworks and compliance standards including NIST, ISO 27001, CIS Controls, and COBIT
- Analyze assessment findings and provide prioritized recommendations to stakeholders
- Leverage Generative AI tools for data analysis, content review, and workflow automation where applicable
- Collaborate with technical and business teams to support information security and compliance initiatives
- Communicate findings, risks, and recommendations effectively to technical teams and leadership
Skills
- RSA Archer Engage
- Cyber Security
- GRC (Governance, Risk & Compliance)
- Data Security
- Information Security
- 8–10 years of relevant experience
- Bachelor's degree in a relevant field or equivalent professional experience in information security, risk, audit, or compliance
- 5–8 years of experience in information security, GRC, or security assessment/audit roles
- Hands-on experience with RSA Archer, particularly Product Security Assessment or similar assessment modules
- Strong working knowledge of security frameworks and standards such as NIST, ISO 27001, CIS Controls, and COBIT
- Understanding of risk analysis, assessment, treatment, and management methodologies
- Demonstrated practical experience using Generative AI tools for data analysis, content review, or workflow automation in a professional security context
- Excellent analytical skills with the ability to parse complex assessment data and produce clear, prioritized recommendations
- Strong communication skills suitable for both technical and leadership audiences
- Ability to work independently and manage a workstream end-to-end with minimal oversight
Company Overview