Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact [email protected] · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
Cmgfi logo

Senior IT GRC Analyst

Cmgfi
Posted 4 days ago
🇺🇸United States🏠Remote📁Engineering & Development
Is this job info correct?

The Senior IT GRC Analyst leads policy development and audit execution within CMG's IT Governance, Risk, and Compliance program, with particular emphasis on CMG's upcoming SOC 2 readiness effort. This role works closely with the GRC team and the broader IT department to plan and execute audit engagements, maintain the policy framework, and manage auditor relationships. The Senior IT GRC Analyst operates with a high degree of autonomy and is expected to navigate ambiguity in a regulated environment. ESSENTIAL DUTIES and RESPONSIBILITIES, includes the following responsibilities, but not limited to : Lead CMG's SOC 2 readiness assessment, including scope definition, gap analysis, and control design, in partnership with the IT GRC Manager. Serve as a point of contact during audit engagements and regulatory exams. Develop, maintain, and update IT policies, standards, and procedures to align with NIST CSF and other applicable regulatory requirements. Plan and execute audit activities, including scheduling, control walkthroughs, evidence gathering, and findings documentation. Identify control gaps, coordinate remediation planning with control owners, tracking findings and remediation status through the risk register. Provide guidance to other GRC team members and IT leadership on audit and policy matters. Research regulatory and framework changes relevant to mortgage lending and financial services, and translate them into policy updates. Contribute to the ongoing development and improvement of GRC processes and tooling. REQUIRED QUALIFICATIONS: Bachelor's degree in Information Technology , Cybersecurity, or a related field (equivalent experience considered). 5+ years of experience in IT audit, compliance, or GRC in an enterprise IT environment. Demonstrated experience managing SOC 2 audit cycles (Type I or Type II) from scoping through remediation. Direct experience in financial services, mortgage lending, or related regulated industries, with working knowledge of applicable regulations (GLBA, CFPB, NYDFS). Strong working knowledge of relevant IT compliance frameworks, such as NIST CSF, ISO 27001, or SOX. Strong policy writing and documentation skills. Ability to work independently amid ambiguity, exercising sound judgment on scope and prioritization. Excellent written and verbal communication skills, with the ability to explain technical and compliance matters to varied audiences. Relevant certifications preferred : CISA, CRISC, or GRCP. SUPERVISORY RESPONSIBILITIES: Direct Reports: N/A PHYSICAL and ENVIRONMENTAL CONDITIONS This role operates in an ADA compliant office environment, utilizing typical office equipment and tasks including computer work. The position may involve partial stationary positions and moving throughout the day. Flexibility to work overtime to meet project deadlines is required. Base Compensation Information – This role is a remote position that is currently allocated for candidates within geographic regions that do not currently require base wage disclosure. The compensation range for this position will be provided upon request. (Due to their geographic location, residents of the states of CA & CO, and for NY are excluded from this role at this time .)

Similar jobs

Similar jobs

Saanvi Technologies logo

GRC Analyst

Saanvi Technologies

🇺🇸United States18 hours ago
SkyePoint Decisions logo

Governance, Risk & Compliance (GRC) Analyst

SkyePoint Decisions

🇺🇸United StatesYesterday
BE

GRC Analyst - Hybrid AZ

Bestwestern

🇺🇸United States4 days ago
Anthropic logo

Third Party Risk Analyst, Security GRC

Anthropic

🇺🇸United States1 weeks ago
Zip logo

GRC Analyst

Zip

🇺🇸United States1 weeks ago
Protective logo

Security GRC Analyst

Protective

🇺🇸United States1 weeks ago