10/07/2026
- The IT GRC - Risk Analyst supports the IT Governance, Risk, Compliance (GRC) team by helping assess, monitor, and manage technology and cybersecurity risks associated with vendors, suppliers, service providers, and other third parties. This role helps ensure third-party relationships are reviewed in alignment with internal policies, regulatory expectations, contractual requirements, and recognized frameworks such as NIST, COBIT, SOC 2, and applicable cybersecurity and privacy requirements. The IT GRC - Risk Analyst works closely with IT, cybersecurity, procurement, legal, compliance, business owners, and vendors to support vendor risk assessments, evidence collection, questionnaire reviews, issue tracking, remediation follow-up, and ongoing monitoring activities. The role helps strengthen the organization’s third-party risk management program by identifying risks, documenting findings, and supporting timely, risk-based decisions. Key Accountabilities/Deliverables:...
Core Specialty
Cincinnati, OH
Full Time
