{"21456905":{"jobPath":"/jobs/21456905/interim-director-of-security-operations","source":"naylor","job":"21456905","jobTitle":"Interim Director of Security Operations"},"21456901":{"jobPath":"/jobs/21456901/interim-director-of-security-operations","source":"naylor","job":"21456901","jobTitle":"Interim Director of Security\t Operations"},"21459559":{"jobPath":"/jobs/21459559/site-protection-security-system-technician","source":"naylor","job":"21459559","jobTitle":"Site Protection Security System Technician"},"21457911":{"jobPath":"/jobs/21457911/risk-manager","source":"naylor","job":"21457911","jobTitle":"Risk Manager"},"21453139":{"jobPath":"/jobs/21453139/business-continuity-disaster-recovery-consultant-enterprise-risk-management","source":"naylor","job":"21453139","jobTitle":"Business Continuity & Disaster Recovery Consultant - Enterprise Risk Management"},"21459589":{"jobPath":"/jobs/21459589/adjunct-faculty-in-cybersecurity","source":"naylor","job":"21459589","jobTitle":"Adjunct Faculty in Cybersecurity"},"21453441":{"jobPath":"/jobs/21453441/associate-director-risk-and-threat-analysis","source":"naylor","job":"21453441","jobTitle":"Associate Director, Risk and Threat Analysis"},"21453442":{"jobPath":"/jobs/21453442/risk-analyst","source":"naylor","job":"21453442","jobTitle":"Risk Analyst"},"21458197":{"jobPath":"/jobs/21458197/chief-information-security-officer","source":"naylor","job":"21458197","jobTitle":"Chief Information Security Officer"},"21460605":{"jobPath":"/jobs/21460605/academic-affairs-it-business-analyst","source":"naylor","job":"21460605","jobTitle":"Academic Affairs IT Business Analyst"},"21463832":{"jobPath":"/jobs/21463832/vice-president-risk-compliance","source":"naylor","job":"21463832","jobTitle":"Vice President Risk & Compliance"},"21458072":{"jobPath":"/jobs/21458072/postdoctoral-and-doctoral-corporate-governance-fellowships","source":"naylor","job":"21458072","jobTitle":"Postdoctoral and Doctoral Corporate Governance Fellowships"},"21460460":{"jobPath":"/jobs/21460460/enterprise-risk-internal-control-officer","source":"naylor","job":"21460460","jobTitle":"Enterprise Risk & Internal Control Officer"},"21454658":{"jobPath":"/jobs/21454658/director-apps-and-systems-security","source":"naylor","job":"21454658","jobTitle":"Director, Apps and Systems Security"},"21460831":{"jobPath":"/jobs/21460831/it-security-instructor-fall-2025-cape-cod-community-college","source":"naylor","job":"21460831","jobTitle":"IT: Security + Instructor - FALL 2025 - Cape Cod Community College"},"21291524":{"jobPath":"/jobs/21291524/chief-information-officer-vice-president-for-information-technology","source":"naylor","job":"21291524","jobTitle":"Chief Information Officer / Vice President for Information Technology"},"21458001":{"jobPath":"/jobs/21458001/director-of-school-safety-and-security","source":"naylor","job":"21458001","jobTitle":"Director of School Safety and Security"},"21455652":{"jobPath":"/jobs/21455652/project-manager-ii-its","source":"naylor","job":"21455652","jobTitle":"Project Manager II, ITS"},"21463123":{"jobPath":"/jobs/21463123/lecturer-information-and-cybersecurity-school-of-information","source":"naylor","job":"21463123","jobTitle":"Lecturer - Information and Cybersecurity - School of Information"},"21463860":{"jobPath":"/jobs/21463860/director-of-it","source":"naylor","job":"21463860","jobTitle":"Director of IT"},"21463124":{"jobPath":"/jobs/21463124/lecturer-information-and-cybersecurity-school-of-information","source":"naylor","job":"21463124","jobTitle":"Lecturer - Information and Cybersecurity - School of Information"},"21463741":{"jobPath":"/jobs/21463741/chief-information-officer-portland-or","source":"naylor","job":"21463741","jobTitle":"Chief Information Officer – Portland, OR"},"21463700":{"jobPath":"/jobs/21463700/information-technology-coach","source":"naylor","job":"21463700","jobTitle":"Information Technology Coach"},"21463724":{"jobPath":"/jobs/21463724/privacy-data-security-attorney-3-years-denver-or-boulder-co","source":"naylor","job":"21463724","jobTitle":"Privacy & Data Security Attorney (3+ years): Denver or Boulder, CO"},"21460557":{"jobPath":"/jobs/21460557/director-of-data-and-identity-governance","source":"naylor","job":"21460557","jobTitle":"Director of Data and Identity Governance"}}
This job description is intended to describe the general nature and level of work being performed by people assigned to this classification. It is not intended to be construed as an exhaustive list of all responsibilities, duties and skills required of personnel so classified.
JOB SUMMARY
The Governance, Risk, and Compliance (GRC) Analyst supports compliance and governance initiatives for both government and higher education environments. The GRC Analyst implements and maintain National Institute of Standards and Technology (NIST) -compliant frameworks, supporting the government's Cybersecurity Maturity Model Certification (CMMC) requirements, and ensuring adherence to security controls across diverse environments. The GRC Analyst will collaborate with teams to assess risk, manage compliance documentation, and ensure that security frameworks and controls are implemented effectively and efficiently.
This position requires occasional availability outside of traditional working hours to address urgent business needs as they arise, including responding to security incidents, supporting software deployments, resolving software issues or system breaks, and addressing other critical operational requirements. The GRC Analyst mitigates disruption to business operations by promptly addressing any issues, regardless of time or day.
This role is hybrid and in the office a minimum of three days a week to facilitate collaboration and teamwork. In-office presence is an essential part of our on-campus culture and allows for engaging directly with staff and students, sharing ideas, and contributing to a dynamic work environment. Being on-site allows for stronger connections, more effective problem-solving, and enhanced team synergy, all of which are key to achieving our collective goals and driving success.
*Applicants must be authorized to work in the United States. The University is unable to work sponsor for this role, now or in the future
MINIMUM QUALIFICATIONS
Proficiency with Cybersecurity Maturity Model Certification and NIST frameworks and controls.
Knowledge of compliance standards in government and higher education environments.
Effective written and verbal communication skills to convey information and explain complex compliance requirements to various stakeholders at different organizational levels
Adaptable, high initiative and strong sense of urgency
Ability to analyze complex data, identify patterns, and translate findings into actionable insights as well as to evaluate risks and develop appropriate responses.
Knowledge and skills required for this position are generally acquired through a bachelor's degree and at least 2-4 years of experience.
KEY RESPONSIBILITIES & ACCOUNTABILITIES
1) Support CMMC compliance efforts within a government environment. 25%
2) Assist in implementing NIST-based security frameworks and controls in a higher education setting. 25%
3) Conduct risk assessments and audits to ensure compliance with security standards. 25%
4) Develop and maintain compliance documentation and reporting. 25%
Position Type
Legal and Regulatory Administration
Additional Information
Northeastern University considers factors such as candidate work experience, education and skills when extending an offer.
Northeastern has a comprehensive benefits package for benefit eligible employees. This includes medical, vision, dental, paid time off, tuition assistance, wellness & life, retirement- as well as commuting & transportation. Visit https://hr.northeastern.edu/benefits/ for more information.
All qualified applicants are encouraged to apply and will receive consideration for employment without regard to race, religion, color, national origin, age, sex, sexual orientation, disability status, or any other characteristic protected by applicable law.
Compensation Grade/Pay Type: 110S
Expected Hiring Range: $75,210.00 - $106,230.00
With the pay range(s) shown above, the starting salary will depend on several factors, which may include your education, experience, location, knowledge and expertise, and skills as well as a pay comparison to similarly-situated employees already in the role. Salary ranges are reviewed regularly and are subject to change.
Founded in 1898, Northeastern University is a private research university located in the heart of Boston. Northeastern is a leader in worldwide experiential learning, urban engagement, and interdisciplinary research that meets global and societal needs. Our broad mix of experience-based education programs?our signature cooperative education program, as well as student research, service learning, and global learning?build the connections that enable students to transform their lives. The University offers a comprehensive range of undergraduate and graduate programs leading to degrees through the doctorate in nine colleges and schools.