Governance, Risk, and Compliance Analyst

Nabla Infotech LLC
Phoenix, AZ

Hi All,

Hiring: GOVERNANCE, RISK, AND COMPLIANCE ANALYST | PHX, AZ

Dive into the details below, and if it's a match, send your resume to ***email_hidden***

Job Summary

GOVERNANCE, RISK, AND COMPLIANCE ANALYST

Location: PHX, AZ - Local Prefer

Required Skills

Skill Type Skill Name

Skill: NIST 800-53R5 (Must have)

Skill : Risk Management Framework (RMF)

Skill : Windows/Unix experience

Preferred Skills

Skill: Project Management experience

Skill: CISSP, CCSP, GSTRT, GSNA, or CAP certification

Job Summary

This position will work on the Governance Risk and Compliance (GRC) Team to communicate and engage with business units to develop a strong understanding of their reporting, data, and product needs. The team member will work with other personnel across departments to define requirements for projects, identify data dependencies and relationships to develop logical and physical data models, data flows and system activity diagrams, and write specifications for managing enterprise information policies. The team member will help develop plans and materials to support user adoption, training, and customer service, working through direct and regular contact with users from other divisions, programs, and service units to provide regular insight and guidance in prioritizing enhancements for the data systems. The team member will also support technical project managers to ensure that all aspects of the information analysis and requirements gathering process are completed with the highest degree of accuracy and quality, which includes developing and socializing key project artifacts.

The Client strives for a work culture that affords employees flexibility, autonomy, and trust. Across our many agencies, boards, commissions, many State employees participate in Remote Work Program and are able to work remotely in their homes, in offices, and in hoteling spaces. All work, including remote work, should be performed within Arizona unless an exception is properly authorized in advance.

Job Duties

  • Perform risk assessments, audit reviews, generate findings reports, and make appropriate recommendations for improvement and track outcomes from those activities for DES reporting requirements. Develop and formulate comprehensive reports detailing the findings, areas of non-compliance, required POA&Ms (Plan of Action and Milestones), environmental observations, and incident reports.
  • Review, update, and manage security related audit plans, security plans and risk plan documentation for accuracy and consistency, proactively solves problems.
  • Evaluate data and formulate comprehensive reports detailing the findings, areas of non-compliance, required action plans, and environmental observations. Generates incident reports and investigates suspicious network activity.
  • Preparing audit documentation that supports audit results, drafting and editing audit findings to adhere to the standards and the agency's writing style.
  • Research agency and industry IT security practices standards, best practices, laws and regulations, and other applicable resources, ensures compliance with standards

Knowledge, Skills & Abilities (Not incompassing)

  • Knowledge of security principles, policies, and procedures, and be able to develop effective security policies.
  • Knowledge of Information Security Risk Management.
  • Knowledge of laws, regulations, policies, principles, and ethics as they relate to cybersecurity and privacy. (Required: NIST 800-53 R5, IRS Pub1075, IPAA/HITRUST, CJIS and MARS-E)
  • Expert knowledge of internal auditing, internal controls, and risk management practices and methods.
  • Knowledge of Selection/Approval, Implementation, and Assessment/Audit of Security and Privacy Controls.
  • Knowledge of Risk Management Framework (RMF) requirements.
  • Knowledge of Authorization/Approval of Information Systems.
  • Knowledge in conducting audits or reviews of technical systems.
  • Knowledge in comprehensive understanding of internal control environments within the IT function.
  • Knowledge in multiple technology domains including aspects of Windows, Unix and/or database administration, software development and networking.
  • Knowledge in identifying cybersecurity and privacy issues that stem from connections with internal and external customers and partner organizations.
  • Ability to produce high quality work products for both the IT groups and Senior Management.
  • Ability to perform excellent interpersonal, written and oral communication skills.
  • Ability to assess, manage, and improve security policies and procedures.
  • Ability to work collaboratively in teams and across organizations.
  • Ability to synthesize feedback and adjust plans accordingly, build strong relationships inside and outside the organization and manage large teams.
  • Ability to ensure security practices are followed throughout all phases of the life cycle of every aspect of business and IT processes.
  • Ability to develop policy, plans, and strategy in compliance with laws, regulations,
  • policies, and standards in support of organizational cyber activities.
  • Ability to exercise judgment when policies are not well-defined.
  • Ability to ensure information security management processes are integrated with strategic and operational planning processes.
  • Ability to ensure that senior officials within the organization provide information security for the information and systems that support the operations and assets under their control.
  • Ability to understand technology, management, and leadership issues related to organization processes and problem solving.
  • Ability to understand the basic concepts and issues related to cyber and its organizational impact.Develop plans and materials to support user adoption, training, and customer service.
  • Ability to work collaboratively in teams and across organizations.
  • Develop plans and materials to support user adoption, training, and customer service.
  • Work directly with users from other divisions, programs, and service units to provide insight and guidance.
  • Identify risks and suggest improvements to information systems and processes.
  • Support technical project managers to fulfill information analysis requirements with the highest degree of accuracy and quality.
  • Develop and maintain key project artifacts.
Posted 2026-06-22

Recommended Jobs

Radiology Technologist - JOB-1335 - in Sierra Vista, AZ - Full Time

GD Resources
Sierra Vista, AZ

Job Description Job Description Job Title: Radiology Technologist Location: Sierra Vista, AZ Career Area: Radiology / Imaging Employment Type: Full-Time Schedule: Day Shift Workplace…

View Details
Posted 2026-06-25

Attended Donation Center Specialist - Tucson Area

Goodwill Industries of Southern Arizona
Tucson, AZ

Job Description Job Description A DAY IN THE LIFE AS A DONATION SPECIALIST As a Donation Specialist, you play a vital role in supporting our mission of providing employment-related services to…

View Details
Posted 2026-04-02

Board Certified Behavior Analyst (Shisacare Hiring in Japan)

Kona Medical Consulting
Phoenix, AZ

Exciting Career Opportunity in Japan for BCBA! Take your expertise abroad and make a difference in the lives of children and families. Join a rewarding career in Japan, where you can grow professio…

View Details
Posted 2026-06-26

Commercial Dock & Door Service Technician

Miner, LTD
Tempe, AZ

Job Description Job Description Description: *BONUS* A sign on bonus may be available for this position and is contingent upon candidate qualifications and successful completion of all required…

View Details
Posted 2026-04-11

Landscaper- Full Time

Civana Wellness Resort & Spa
Carefree, AZ

Job Description Job Description CIVANA’s mission is to inspire mindfully, measurably greater wellness in all who crave it. The CIVANA model is shaped by a wellness philosophy that serves everyone…

View Details
Posted 2026-03-17

Travel Registered Nurse OR Job

Tuba City, AZ

Job Overview TLC Nursing Associates, Inc. is seeking an experienced RN – Operating Room (OR) for travel assignments . This role involves assisting in surgical procedures, ensuring patient saf…

View Details
Posted 2026-02-10

BHT - Behavioral Health Technician.

Star House Bhrf Llc
Maricopa, AZ

Job Description Job Description STAR HOUSE BHRF, LLC STAFF JOB DESCRIPTION Behavioral Health Care Technician Job Description: BHT ESSENTIAL FUNCTIONS: · Daily interactions with residents. · Engaging …

View Details
Posted 2026-05-14

Route Support Technician

Bucksworth Home Services
Queen Creek, AZ

Job Description Job Description **Dreaming of a Career Change? Become a Pest Control Pro! (No Experience Needed)** Bucksworth Home Services is looking for enthusiastic, driven individuals to join …

View Details
Posted 2026-06-24

School Psychologist

BlueCloud Staffing
Scottsdale, AZ

We are seeking a dedicated and collaborative School Psychologist to support students in Scottsdale-area schools . This role focuses on promoting students academic achievement, social-emotional deve…

View Details
Posted 2026-02-05

Physician-Internal Medicine: Hospitalist

Banner Health
Phoenix, AZ

Nocturnist Opportunity Banner University Medical Center Phoenix (BUMCP) seeks board-certified/board-eligible academic Hospitalists to join our distinguished Division of Hospital Medicine. As Arizon…

View Details
Posted 2026-06-28