Cyber Analyst-Governance and Risk

MCPC
Cleveland, OH

 

Cyber Analyst – Governance and Risk

The Cyber Analyst – Governance and Risk is responsible for managing the end-to-end lifecycle of the organization’s information security governance and technology risk policies and standards. This includes drafting, maintaining, coordinating reviews and approvals, and supporting adoption and ongoing oversight. The role also serves as the lead coordinator for inbound security questionnaires, audits, and due diligence requests from clients, prospects, and business partners, ensuring responses are accurate, consistent, and supported by appropriate evidence.

This position works closely with the Information Security Officer (ISO), Security and Governance teams, Technology, Compliance, Legal, and key business stakeholders to ensure governance and assurance artifacts remain aligned with implemented controls, regulatory expectations, and operational realities.

Key Duties and Responsibilities

Security Policy Governance and Oversight

  • Draft, review, and maintain information security and technology risk policies, standards, and supporting procedures (e.g., access control, incident response, data handling, vendor and third-party security requirements), ensuring clarity, usability, audit readiness, and alignment with recognized frameworks and SEC requirements.
  • Manage and continuously improve the policy lifecycle, including intake and change management, scheduled reviews, stakeholder feedback cycles, version control, approvals, publication, and enterprise communication.
  • Maintain a centralized repository for policies and standards, including templates, mappings to frameworks, definitions, ownership assignments, and approval records.
  • Administer policy exceptions by documenting business justification, compensating controls, approvals, expiration or renewal timelines, and required follow-up actions.
  • Monitor internal and external drivers that may necessitate policy updates, such as control changes, audit findings, incidents and lessons learned, contractual obligations, or regulatory expectations, and coordinate updates with subject matter experts.
  • Support policy adoption and awareness by partnering with stakeholders to deliver targeted communications and guidance.

Client, Partner, and Third-Party Assurance

  • Serve as the primary coordinator for inbound security questionnaires, audits, and assurance requests from clients, prospects, and business partners.
  • Manage intake, prioritization, timelines, and cross-functional collaboration to ensure timely and high-quality responses.
  • Develop and maintain a standardized library of approved responses, control narratives, and security terminology to improve consistency and efficiency.
  • Build and maintain an evidence inventory identifying available artifacts, ownership, storage locations, and currency to support repeatable and defensible responses.
  • Review and validate questionnaire responses to ensure alignment with current policies, implemented controls, and operational practices; identify gaps, ambiguities, or potential risk exposures and escalate with recommended mitigation language or options.

Collaboration and Continuous Improvement

  • Participate in governance forums, working groups, and cross-functional initiatives to align policy priorities and ensure consistent messaging across security and risk programs.
  • Collaborate with technology, compliance, legal, and business teams to address governance, risk, and compliance (GRC) issues and enhance the organization’s overall security posture.

Experience and Credentials

  • Bachelor’s degree in Business Administration, Information Technology, Risk Management, or a related field, or equivalent practical experience.
  • Three or more years of experience in GRC, security compliance, technology risk, or information security governance, with demonstrated responsibility for policy development and cross-functional coordination.
  • Proven experience managing and completing security questionnaires, audits, or due diligence requests, including coordinating subject matter expert input and supporting evidence.
  • Working knowledge of common security and risk frameworks (e.g., NIST CSF, ISO/IEC 27001) and familiarity with regulatory expectations relevant to SEC and FINRA administrative requirements.
  • Relevant certifications such as Security+, CGRC, CISA, CRISC, CISSP, or similar are preferred.

Core Competencies

  • Ability to operate effectively in a dynamic, fast-paced environment with competing priorities.
  • Demonstrated commitment to confidentiality, ethical standards, and the protection of client and company information.
  • Strong written and verbal communication skills, with the ability to translate complex technical concepts for both technical and non-technical audiences.
  • Highly self-motivated with the ability to work independently while collaborating effectively across teams.

 

Posted 2026-02-19

Recommended Jobs

Locum Medical Oncologist

Palm Careers
Dayton, OH

Palm Health Resources is currently hiring for a Locum Medical Oncologist to provide ongoing locums coverage in Northwest Ohio! Come work in a primarily outpatient setting with some light inpatient du…

View Details
Posted 2025-12-16

Sales Representative (FILLED)

MRINetwork Jobs
Cincinnati, OH

General Summary: A Japanese manufacturer with offices in Blue Ash, Ohio is looking for a Sales Representative to join their team. This is a FULL TIME, Direct Hire role.   Essential Job Functions…

View Details
Posted 2026-02-15

Roofing Superintendent

CentiMark Corporation
Columbus, OH

CentiMark Corporation is currently seeking experienced commercial Roofing Superintendents in Columbus and Cincinnati, OH for our Spec Division! These positions are paying $27/hr - $40/hr, BOE. C…

View Details
Posted 2026-02-17

Kitchen Prep Cook

Berlin Farmstead
Millersburg, OH

Berlin Farmstead Restaurant is a great place to start or develop your career in hospitality to learn skills you’ll use for the rest of your life. If you enjoy sharing hospitality with others, we wa…

View Details
Posted 2026-02-04

Full-time Staff: Police Officer

Lakeland Community College
Kirtland, Geauga County, OH

Lakeland's police officers have the primary responsibility of patrolling the grounds and buildings of the college campus to protect lives and property, discover or prevent crimes, enforce laws, inves…

View Details
Posted 2025-09-27

Service and Sales Coordinator

One Clean Family - Envision - Okum Supply
West Chester, Butler County, OH

Join One Clean Family, a family-owned and managed organization, as one of our Service and Sales Coordinators. We pride ourselves on fostering a supportive and inclusive work environment where hard wor…

View Details
Posted 2026-02-13

QA Tester

MetaRPO
Columbus, OH

Job Title: QA Tester Location: Ohio Job description :   experience serving as a system test lead for a large complex JAVA application   experience testing to include (test planning, t…

View Details
Posted 2026-02-20

Speech Language Pathologist / Speech Therapist / SLP / PRN

Broad River Rehabilitation
Blanchester, OH

Speech Language Pathologist SLP- CCC - PRN Skilled nursing facility in Blanchester, Ohio ** Consistent PRN: Offering PREMIUM RATE for 10-25 hours per week coverage ** At Broad River Rehab w…

View Details
Posted 2025-12-12

Software Engineer

Altamira Technologies
Fairborn, OH

Description Altamira Technologies has a long and successful history providing innovative solutions throughout the U.S. National Security community. Headquartered in McLean, Virginia, Altamira…

View Details
Posted 2026-02-16

Barn Hand

Hathaway Hill
Lebanon, OH

Barn Hand – Earn While You Work + Reliability Rewards! Location: Hathaway Hill, Lebanon, Ohio Pay: $13 per hour + Reward Tier Eligibility About the Role: We are looking for a hardworking, hor…

View Details
Posted 2026-01-19