Back to the stack

Lead Technical GRC Analyst (Governance)

Remote Worldwide Hiring now

About the position The Lead IT GRC Analyst will be a key team member within the NBCUniversal Cyber organization and shape, manage, and evolve NBCUniversal’s security governance framework while driving the development of secure configuration baselines across diverse technical environments. This role requires a unique blend of deep policy and governance framework understanding, hands-on technical collaboration, and proactive engagement to help define security governance throughout the lifecycle of small initiatives to large-scale programs. The ideal candidate brings a strong foundation in information security governance, hands-on technical collaboration, and the ability to translate security principles into actionable, business-friendly requirements.

Responsibilities

  • Manage the organization’s security governance program, including participating in Cyber-led projects and programs to design and develop cyber governance processes.
  • Maintaining an effective feedback loop with business partners – seeking and integrating business area feedback into cyber governance processes.
  • Contribute to overall program enhancements and drive automation with various IT and Cybersecurity stakeholders.
  • Participate in development, review, and implementation of security policies, standards, procedures, and guidelines in alignment with industry frameworks (e.g., ISO 27001, NIST, CIS).
  • Serve as point of contact for internal audits, certifications, and compliance initiatives related to policy and governance.
  • Actively consult with stakeholders throughout the development lifecycle of small projects and large-scale programs to help establish, refine, and validate governance processes.
  • Conduct technical assessments of configurations to ensure security effectiveness.
  • Monitor regulatory changes and emerging risks to ensure policies remain compliant and adaptive to future threats.
  • Use advanced technologies—e.g., robotic process automation and AI/machine learning—to improve operation.
  • Provide hands-on technical control review to support guidance of enterprise configurations of tools like M365, Slack, Microsoft Defender for Cloud, etc.
  • Design and develop GRC metrics including KPIs and KRIs.

Requirements

  • 4+ years of experience in information security, governance, risk, or compliance roles.
  • Strong and proven communication (both verbal and written) and customer engagement skills with experience in briefing corporate executives and professionals.
  • Familiarity with industry standards and frameworks (e.g., NIST CSF, ISO 27001, CIS Benchmarks, SOC 2).
  • Ability to read and interpret technical documentation and translate it into governance mandates.
  • Strong analytical and communication skills with the ability to translate complex security concepts into business language.
  • Experience performing system integration, system management, and configuring native controls in modern enterprise IT tooling.
  • Experience working with technical teams to implement and validate secure configurations.
  • Comfortable working in fast-paced, ambiguous, or evolving environments with a solution-oriented mindset.
  • Ability to balance governance rigor with creativity and adaptability in a business-centric approach.
  • Bachelor’s Degree in an IT related field and/or equivalent work experience.

Nice-to-haves

  • Previous experience working in multiple large complex environments and specifically within the Governance, Risk, and Compliance functions.
  • Previous experience working in Governance, Risk, and Compliance functions in the media, entertainment, federal, and/or advanced technology industries.
  • Experience with other enterprise technologies (e.g., Active Directory/Azure AD, cloud platforms, configuration assessment tools)
  • Experience with GRC platforms (e.g., OneTrust, ServiceNow GRC, Archer).
  • Background working with legal, procurement, or privacy teams.
  • Industry certifications such as CRISC, CISA, CISSP, or technical certifications (e.g., Microsoft 365 Certified, AWS Security Specialist) are a plus.

Benefits

  • This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks.

Apply tot his job Apply To this Job

Apply for this role Opens the employer's application page — free, no JobStack account needed.

More from the stack

Corporate Security Program Manager, Physical Security Deployments

Remote Worldwide
View role

Sr. Info Systems Compliance Analyst Remote USA

Remote Worldwide
View role

Staff Program Manager - Security Compliance Programs (San Jose, CA required)

Remote Worldwide
View role

Cyber Security PM (contract)

Remote Worldwide
View role

Information Security Program Manager - GRC

Remote Worldwide
View role

Principal Cyber Software Engineer; TS​/SCI Security Clearance

Remote Worldwide
View role

SENIOR PENETRATION TESTER (Remote)

Remote Worldwide
View role

Senior Security Analyst - AppSec

Remote Worldwide
View role

Junior SEM Manager

Remote Worldwide
View role

SEM (Search Engine Marketing) Manager

Remote Worldwide
View role

Billing Comp Educ & Admin Spec | Phys Compliance | Days - Remote | Full Time

Remote Worldwide
View role

Experienced Live Chat Support Representative – Part-Time Remote Opportunity with blithequark

Remote Worldwide
View role

Experienced Full Stack Customer Service Representative – Health Insurance Enrollment Support

Remote Worldwide
View role

Territory Manager, Business Development - Surety (Large Commercial)

Remote Worldwide
View role

SQL Developer – Morgan 6, LLC – Washington DC

Remote Worldwide
View role

Experienced Full Stack Data Entry Specialist – Remote Customer Service and Support

Remote Worldwide
View role

Senior Associate, Product Management: Velocity Black (Remote)

Remote Worldwide
View role

Fedex Data Entry Remote Jobs up to $20/Hour-

Remote Worldwide
View role

Credentialing Data Analyst - SHP Health Services - Telecommuter job at Sharp HealthCare in US National

Remote Worldwide
View role

Remote Call Center Representative

Remote Worldwide
View role