Intact Specialty Solutions logo

IT Risk & Compliance Analyst (Hybrid)

Salary
$75K–$107K
Hiring from
United States
Work type
Hybrid
Posted
Is this job info correct?

511,014 remote jobs, straight from company career pages

100% free · New jobs every hour

Show job description

Our employees are at the heart of what we do: helping people, businesses and society prosper in good times and be resilient in bad times. When you join our team, you are bringing this purpose to life alongside a passionate community.

Feel empowered to learn and grow while being valued for who you are. At Intact, we commit to supporting you in reaching your goals with tools, opportunities, and flexibility. It’s our promise to you.

Who we are

At Intact Insurance Specialty Solutions, we are experts at what we do in protecting what makes businesses unique. Our deep understanding of the specialty insurance market is the foundation for our customized solutions, backed by targeted risk control and claims services. Our employees are passionate about providing insurance coverage that’s aligned to our targeted customer groups.

Intact’s Global Specialty Lines business spans across more than 20 verticals in four distinct markets: U.S., Canada, UK and Europe. The following opportunity is for our U.S. team.

The opportunity

We currently have an opportunity for an IT Risk & Compliance Analyst to join our Corporate IT team based in our Canton, MA; Boston, MA; Farmington, CT or Raleigh, NC offices on a hybrid schedule. The IT Risk & Compliance Analyst supports the organization’s IT Risk / GRC function by collecting, organizing, analyzing, and reporting information related to cybersecurity risk, control performance, audit response, remediation tracking, and security metrics. This is a hands-on individual contributor role where one person may support multiple related activities across governance, risk, compliance, cybersecurity metrics, and audit coordination all aligned with the NIST framework.

The analyst works with and contributes to IT, cybersecurity, infrastructure, identity and access management, vulnerability management, and audit stakeholders to help organize evidence, track action items, maintain accurate status reporting, and translate technical information into clear management-ready reporting. The ideal candidate is highly organized, analytical, comfortable learning new cybersecurity domains, and able to follow up consistently across multiple teams and deadlines. Some of the IT Risk & Compliance Analyst responsibilities include but are not limited to:

  • Maintain organized records of IT and cybersecurity risks, controls, owners, evidence requests, action items, dependencies, due dates, exceptions, and remediation status.
  • Collect and validate information from control owners and technical teams to support risk reviews, control assessments, compliance activities, cybersecurity metrics, and management reporting.
  • Coordinate audit response activities across internal and external auditors in multiple geographic regions and IT, security, infrastructure, compliance, and business stakeholders.
  • Track audit requests, evidence, responses, findings, remediation actions, retesting, risk acceptances, compensating controls, owners, deadlines, and closure; identify blockers and escalate overdue or unclear items as appropriate.
  • Help IT and security teams develop clear, well-supported responses to audit findings and maintain evidence in an organized, repeatable, and auditable manner.
  • Collect, organize, and analyze cybersecurity and IT risk metrics across vulnerability management, identity and access management, endpoint protection, incident response, infrastructure operations, logging, and monitoring.
  • Develop accurate reports, dashboards, and management-ready summaries using tools such as Excel, PowerPoint, SharePoint, ticketing systems, and other available reporting platforms.
  • Analyze trends, gaps, aging items, control exceptions, and remediation progress, and translate technical security information into business-relevant insights for leadership, risk committees, auditors, and non-technical audiences.
  • Define and maintain consistent metric definitions, data owners, source systems, refresh schedules, assumptions, and limitations.
  • Create and maintain trackers, checklists, evidence logs, reporting calendars, process maps, and follow-up routines that improve consistency, accuracy, timeliness, and repeatability of risk, audit, and security reporting.
  • Coordinate application security and penetration testing for internally developed, SaaS, web, mobile, API, cloud, and vendor-hosted applications, including scoping, scheduling, execution support, findings tracking, remediation validation, and retesting through closure.
  • Support application security governance by maintaining application inventories, promoting secure software development practices, preparing management reporting, and aligning testing with organizational and regulatory requirements.
  • Apply recognized cybersecurity and control frameworks, including NIST-based terminology, under leadership guidance.
  • Clarify ownership, next steps, and response dates; follow up consistently and communicate professionally with stakeholders while maintaining a collaborative, service-oriented approach.
  • Escalate material risks, delays, unresolved ownership, and data quality concerns, and promote accountability and continuous improvement across IT risk and security operations.

The expertise you bring

  • Management, Audit, Accounting, or a related field, or equivalent relevant experience.
  • Three (3) to five (5) years of experience in IT risk, GRC, information security, IT audit, technology controls, security operations, or a related function.
  • Experience in insurance, financial services, healthcare, utilities, or another regulated or compliance-intensive industry is preferred.
  • Relevant professional certifications, such as Security+, CISA, CRISC, CISM, CISSP, CGRC, or ITIL Foundation, are preferred but not required.

Our salary ranges are determined by many factors including location, role, experience and skillset of the candidate. The following ranges displayed reflect the target base salary for new hires; however, your recruiter will provide more specific compensation details during the hiring process. The typical base salary range for this position is: $75,000 - $107,000, based on the factors aforementioned. For candidates located in San Francisco, CA; Washington DC; our Massachusetts based offices and the New York City metro area, the base salary range is $95,000 - $110,000. In addition to base salary, full time Intact employees are also eligible for bonus potential and a full range of benefits to include but not limited to:

  • Comprehensive medical, dental and vision insurance with no waiting period
  • Competitive paid time off programs
  • 401(k) savings and annual contributions of up to 12% of annual salary
  • Mental health support programs, life and disability insurance, paid parental leave and a variety of additional voluntary benefits

This position will remain posted until a final candidate is selected. Once the role is filled, this job posting will be removed.

Why choose Intact

We live our Values: We are committed to acting with the highest of ethical standards through our five core values: integrity, respect, customer driven, excellence and social responsibility.

Our commitment to Diversity: Founded in our values, we see diversity as a strength and aspire to create an environment where everyone can be themselves, grow and succeed. Together, we will stand up for what’s right to build an inclusive society.

Manage your Time: What you accomplish matters more than hours in the office. We are committed to creating a positive and supportive environment in which you perform your best. Our Time-Off and Flexible Work Arrangement options help foster a healthy work-life balance.

Check out our Glassdoor reviews to see why people love working for Intact!

Our promise to you

Our Values are foundational to our success at Intact. You’ll make a difference every day when you live our Values, do your best work, are open to change, and invest in yourself.

In return, we promise you support, opportunities and performance-led financial rewards in a flexible work environment where you can:

  • Shape the future: Help us lead an insurance transformation to better protect people, businesses and society.
  • Win as a team: Collaborate with inspiring people to do your best work every day and together, stand up for what is right.
  • Grow with us: Refresh and reinvent your skills, learn from our diverse teams, lift others up, and grow.

About Intact

At Intact Insurance Specialty Solutions we are experts at what we do. Our deep understanding of the specialty insurance market is the foundation for our customized solutions, backed by targeted risk control and claims services. Our employees are passionate about providing insurance coverage that’s aligned to our targeted customer groups. Today, we help protect over a dozen industries with tailored coverages and services.

Similar jobs

Apply for this job