Demo

IT Risk and Security Compliance Analyst - Remote

Lensa
Chicago, IL Remote Full Time
POSTED ON 4/14/2025
AVAILABLE BEFORE 5/11/2025
Lensa is the leading career site for job seekers at every stage of their career. Our client, NORC, is seeking professionals. Apply via Lensa today!

IT Risk and Security Compliance Analyst - Remote

Job no: 503585 Work type: Regular Full-Time Location: Chicago – 55 East Monroe Street, IL Capability Area: IT Security

Job Summary

NORC at the University of Chicago is seeking anIT Risk and Security Compliance Analystwithextensive experience managing and optimizing ServiceNow GRCto support and enhance oursecurity compliance program. This role will play a key part in configuring, maintaining, and improvingServiceNow GRC workflows, ensuring compliance withgovernment security standardssuch asFISMA, NIST 800-53, HIPAA, and FedRAMP.

The ideal candidate will have strong expertise inGRC tool management, compliance assessments, and risk monitoring. They will work closely with IT and security teams to automate processes, track compliance requirements, and support audits and risk assessments within ahybrid, multi-tenant infrastructure.

DEPARTMENT: IT Risk and Compliance

NORC's Information Technology program provides technology services to our staff and clients. Given the critical role technology plays in our day-to-day lives, we are committed to providing professional, high-quality solutions in order to further our collective goal of advancing social science research.

Responsibilities

ServiceNow GRC Administration & Optimization

  • Lead the management, configuration, and optimization of ServiceNow GRC, ensuring alignment with security frameworks and regulatory requirements.
  • Develop and automate workflows for compliance tracking, risk assessments, control monitoring, and audit management.
  • Continuously improve and refine ServiceNow GRC functionalities to enhance efficiency and reporting.
  • Provide training and support to internal teams on the use of ServiceNow GRC for compliance activities.

Security Compliance & Risk Management

  • Conductrisk assessmentsand track compliance withFISMA, NIST 800-53, HIPAA, and FedRAMPsecurity controls.
  • Maintain security documentation, includingSSPs, CAPs, Contingency Plans, and other compliance artifacts.
  • Perform continuous monitoring, identify security gaps, and recommend remediation strategies.
  • Support internal and externalaudits, ensuring all required security evidence is collected and documented.

Collaboration & Communication

  • Work closely withIT, security engineers, and external clientsto ensure security controls are implemented and maintained.
  • Communicate compliance requirements effectively to technical and non-technical stakeholders.

Required Skills

  • Bachelor’s degreein management information systems, Computer Science, Business Administration, or related field (or equivalent experience).
  • 2 years of experiencein IT security, risk assessment, and compliance within a government contract environment.
  • Extensive hands-on experience managing and configuring ServiceNow GRC.
  • Security Certifications (one or more preferred):CISA, CISM, CRISC, CISSP, or SSCP.
  • Strong knowledge ofGRC/IRM systemsfor compliance tracking, risk management, and audit readiness.
  • Experience inFedRAMP and FISMA, including security package development and control validation.
  • Understanding ofhybrid, multi-tenant infrastructure security, including network, server, database, and application security.
  • Excellentverbal and written communication skills, with the ability to bridge technical and business perspectives.

Salary And Benefits

The pay range for this position is $77,000 – $116,000.

Benefits

This position is classified as regular. Regular staff are eligible for NORC’s comprehensive benefits program. Benefits include, but are not limited to:

  • Generously subsidized health insurance, effective on the first day of employment
  • Dental and vision insurance
  • A defined contribution retirement program, along with a separate voluntary 403(b) retirement program
  • Group life insurance, long-term and short-term disability insurance
  • Benefits that promote work/life balance, including generous paid time off, holidays; paid parental leave, bereavement leave, tuition assistance, and an Employee Assistance Program (EAP).

NORC’s Approach to Equity and Transparency

Pay and benefits transparency helps to reduce wage gaps. As part of our commitment to pay equity and salary transparency, NORC includes a salary range for each job opening along with information about eligible benefit offerings. At NORC, we take a comprehensive approach to setting salary ranges and reviewing raises and promotions, which is overseen by a formal Salary Review Committee (SRC).

What We Do

NORC at the University of Chicago is an objective, non-partisan research institution that delivers reliable data and rigorous analysis to guide critical programmatic, business, and policy decisions. Since 1941, our teams have conducted groundbreaking studies, created and applied innovative methods and tools, and advanced principles of scientific integrity and collaboration. Today, government, corporate, and nonprofit clients around the world partner with us to transform increasingly complex information into useful knowledge.

Who We Are

For over 80 years, NORC has evolved in many ways, moving the needle with research methods, technical applications and groundbreaking research findings. But our tradition of excellence, passion for innovation, and commitment to collegiality have remained constant components of who we are as a brand, and who each of us is as a member of the NORC team. With world-class benefits, a business casual environment, and an emphasis on continuous learning, NORC is a place where people join for the stellar research and analysis work for which we’re known, and stay for the relationships they form with their colleagues who take pride in the impact their work is making on a global scale.

Eeo Statement

NORC is an equal opportunity employer. NORC evaluates qualified applicants without regard to race, color, religion, sex, gender, national origin, disability, status as a protected veteran, sexual orientation, and other legally protected characteristics.

Advertised: March 31, 2025 Central Daylight TimeApplications close:

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a IT Risk and Security Compliance Analyst - Remote?

Sign up to receive alerts about other jobs on the IT Risk and Security Compliance Analyst - Remote career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$65,440 - $83,454
Income Estimation: 
$102,189 - $143,024
Income Estimation: 
$74,367 - $98,680
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$99,138 - $133,641
Income Estimation: 
$94,973 - $125,755
Income Estimation: 
$96,228 - $129,772
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Lensa

Lensa
Hired Organization Address Cheyenne, WY Full Time
Overview GovCIO is currently hiring for a Senior SharePoint Engineer to manage and support the customer's SharePoint sit...
Lensa
Hired Organization Address Juneau, AK Part Time
Lensa is the leading career site for job seekers at every stage of their career. Our client, Lincoln Financial Group, is...
Lensa
Hired Organization Address Anchorage, AK Full Time
Lensa is the leading career site for job seekers at every stage of their career. Our client, GE Aerospace, is seeking pr...
Lensa
Hired Organization Address Juneau, AK Contractor
Lensa is the leading career site for job seekers at every stage of their career. Our client, GovCIO, is seeking professi...

Not the job you're looking for? Here are some other IT Risk and Security Compliance Analyst - Remote jobs in the Chicago, IL area that may be a better fit.

IT Risk and Security Compliance Analyst - Remote

NORC at the University of Chicago, Chicago, IL

IT Risk and Compliance analyst

Insight Global, Chicago, IL

AI Assistant is available now!

Feel free to start your new journey!