Hiring.Camp

Governance, Risk, and Compliance (GRC) / Compliance Analyst

Ardent MC

·

Today

Location
Remote · Miramar, Florida, United States
Workplace
Remote
Department
Ardent Openings
Source
Greenhouse

Description

Ardent is seeking a Governance, Risk, and Compliance (GRC) / Compliance Analyst to join our team.  

This is a remote position with expected travel to Tallahassee, FL. 

Position Description:

Ardent is seeking a Governance, Risk, and Compliance (GRC) / Compliance Analyst that integrates technical evidence with governance, risk, compliance, and internal-audit support requirements. The role maintains traceability among agency documentation, Rule 60GG-2, NIST CSF, approved procedures, factual findings, remediation actions, and deliverable acceptance criteria while protecting confidential and exempt information across a potentially broad multi-agency environment.

Responsibilities and Duties:

  • Lead ingestion and analysis of agency documentation, including risk assessments, remediation plans, prior findings, corrective actions, inventories, and strategic plans.
  • Direct development of the Agency Risk Understanding Memorandum, including environmental summaries, agency-specific risks, assumptions, documentation gaps, and impacts on testing priorities.
  • Design the Ground-Truth and Ad Hoc Testing Strategies and approve detailed procedures defining objectives, systems, controls, access points, tools, sampling, scripts, evidence, thresholds, stop conditions, and escalation paths.
  • Map procedures and results to NIST CSF DE.AE, DE.DP, PR.AC; Rule 60GG-2, F.A.C.; and the applicable approved criteria.
  • Ensure testing remains within written OCIG authorization, avoids duplication of operational testing, and complies with agency-specific Rules of Engagement.
  • Review evidence for relevance, reliability, sufficiency, attribution, timestamps, chain of custody, and reproducibility.
  • Validate that reports accurately state procedures performed and factual results without an audit opinion; ensure advisory recommendations are distinctly labeled.
  • Conduct independent QA reviews of technical deliverables not authored solely by the reviewer and document sign-off.
  • Lead technical briefings, workshops, job aids, and knowledge transfer so OCIG and OIG staff can understand and reuse procedures.
  • Support urgent analysis of logs, timelines, after-action reports, remediation evidence, and incident-specific control issues when directed.

Requirements:

  • Bachelor’s degree in cybersecurity, information assurance, audit, information systems, or related discipline.
  • Proof of relevant professional certifications such as CISSP, CISA, PMP, CEH, or other relevant certifications.
  • 10 years of progressive cybersecurity experience, including security operations, incident response, vulnerability management, intrusion analysis, adversary simulation, technical assessment, or audit support.
  • 5 years supporting or conducting audits, compliance reviews, independent assessments, or assurance work in government or similarly regulated environments.
  • Demonstrated ability to design defensible test procedures, evaluate control performance, distinguish fact from opinion, and communicate technical results to senior stakeholders.
  • Working knowledge of professional auditing or assurance standards and evidence requirements.

Preferred Qualifications:

  • Purple-team or adversary-emulation leadership using MITRE ATT&CK and threat-informed kill chains.
  • Government incident-command experience.
  • CISA, CIA, or other audit credential.
  • Experience with Active Directory, cloud platforms, APIs, web applications, databases, endpoints, SIEM/EDR, vulnerability scanners, and evidence repositories.

Due to the nature of the work we support, all candidates in consideration for this role must be willing to undergo the government issued background investigation process.


Ardent is an equal opportunity employer. We will not discriminate in employment, recruitment, advertisements for employment, compensation, termination, upgrading, promotions, and other conditions of employment against any employee or job applicant on the bases of race, color, gender, national origin, age, religion, creed, disability, veteran's status, sexual orientation, gender identity, gender expression, or any other basis protected by state, local, or federal law.

Skills

CybersecuritySIEMCompliancePMPCISSP

Similar Jobs

30

Governance Risk and Compliance Analyst

Polsinelli · Kansas City, MO +26

Today

Cyber Governance and Risk Senior Analyst

Cohesity · Cohesity - Dublin, Ireland +1 · Hybrid, Remote

Yesterday

Associate Director, Market Risk Governance and Controls

Rbc · BROOKFIELD PLACE FKA 3 WORLD FINANCIAL CENTER, 200 VESEY STREET:NEW YORK, United States of America

Yesterday

Cloud Engineer - Governance, Risk, and Compliance (GRC)

Peraton · , US · Remote

Yesterday

Senior Analyst, Cyber Governance, Risk and Compliance (GRC)

Higcapital · Coral Gables, United States of America · Hybrid

2 days ago

Senior Analyst – AI Models Risk and Governance

Rbc · RBC WATERPARK PLACE, 88 QUEENS QUAY W:TORONTO, Canada +1

3 days ago

Cybersecurity Program Manager supporting Governance, Risk, and Compliance

Cat · Irving, Texas, United States of America +2

3 days ago

Director Governance Risk and Compliance

surescripts · Minneapolis, Minnesota, United States of America +1

3 days ago

Markets In-Business Risk and Governance Lead - Vice President

citibank · Belfast, Northern Ireland,GB, GB

3 days ago

Staff IT Analyst II - IT Governance, Risk, and Controls

Western Alliance Bancorporation · Block 23, United States of America +2

3 days ago

Markets In-Business Risk and Governance Lead - Vice President

Citi Bank · 60 SYDENHAM ROAD, TITANIC QUARTER BLOCKS A, B, C GATEWAY OFFICES BELFAST, United Kingdom · Hybrid

3 days ago

Information Security Risk and Governance Specialist, Principal

Blue Shield of California · El Dorado Hills, CA, United States, US

3 days ago

Governance Risk and Compliance Consultant

Capco · Belgium - Brussels

3 days ago

Risk Governance and Oversight Senior Specialist

Truist · Charlotte NC - 214 North Tryon Street, United States of America +2 · Remote, Onsite

4 days ago

Global Markets Governance, Risk and Controls

Lbg · London 33 Old Broad Street, United Kingdom

4 days ago

Global Markets Governance, Risk and Controls

Lbg · London 33 Old Broad Street, United Kingdom

4 days ago

IV&V Lead and Governance/Risk Assessor

Sabot Consulting · Henderson, NV · Remote

1 week ago

Governance Risk and Complains Manager

GetixHealth · Karnataka, IND, India

1 week ago

Governance Risk and Complains Manager

ARstrat · Karnataka, IND, India

1 week ago

Junior GRC (Governance, Risk, and Compliance) Analyst

Nb · TW01 - Taipei, Taiwan

1 week ago

Director, Governance. Risk and Compliance

SAFE External · HQ Riyadh, Saudi Arabia

1 week ago

Manager - Governance, Risk and Compliance

Scyne Advisory · Melbourne, Victoria, Australia · Hybrid

1 week ago

Risk Governance and Reporting Specialist

Vanguard · GBR - Manchester, United Kingdom

1 week ago

Information Security Governance, Risk and Compliance Specialist

Nttlimited · Petaling Jaya, Malaysia +1 · Remote

1 week ago

Risk Governance and Reporting Specialist

Vanguard · GBR - Manchester, United Kingdom

1 week ago

Analyst, IT Governance, Risk, and Compliance

Telesat · Ottawa, Ontario · Hybrid

1 week ago

Governance, Risk and Compliance Leader

Thales · Cannes, France · Onsite

2 weeks ago

Governance Risk and Compliance I Analyst II

Vertiv · Mandaluyong City, Philippines

2 weeks ago

Sr Manager - IT Governance, Risk, and Compliance

Plexus · Oradea, BH,RO, RO

2 weeks ago

Sr Manager - IT Governance, Risk, and Compliance

Plexus · Livingston, Scotland,GB, GB

2 weeks ago