Nefco Corporation

GRC Specialist (governance, risk and compliance)

LocationEast Hartford, CT

About This Job


Description:

Summary: We are seeking a proactive, detail-oriented, and collaborative GRC (Governance, Risk, and Compliance) Specialist to join our cybersecurity team. This role plays a critical part in ensuring that our organization maintains strong compliance with evolving federal and state regulations while continuously improving our internal security policies, risk posture, and audit readiness.


Key Responsibilities:


Governance, Risk, and Compliance

Monitor, interpret, and track cybersecurity regulations at both the federal and state levels to assess impact on business operations.
Develop, update, and maintain cybersecurity policies and procedures that align with industry standards (e.g., NIST CSF, ISO 27001, CIS Controls, CMMC).
Collaborate across departments to ensure policies are implemented and understood throughout the organization.
Conduct internal audits and control assessments to evaluate effectiveness and adherence to policies.
Create and maintain a risk register, help identify and assess risks, assign ownership, and track mitigation efforts.
Support business impact assessments and assist in maintaining business continuity strategies.


Training & Awareness

Assist in designing and delivering cybersecurity training and awareness programs.
Track training metrics and ensure organization-wide compliance with awareness initiatives.


Frameworks & Certifications

Provide support in preparing for security certifications (e.g., SOC 2, ISO 27001, CMMC).
Coordinate with external auditors or assessors, gather evidence, and support audit processes.


Incident Response Compliance

Ensure incident response policies align with regulatory requirements.
Support post-incident reviews with a focus on documentation and lessons learned.


Third-Party & Vendor Risk

Coordinate third-party risk assessments to ensure vendors meet security and data protection standards.
Track compliance of vendors and service providers against contractual and regulatory obligations.


Metrics & Reporting

Develop and maintain dashboards or reports that measure compliance status, audit results, and risk posture.
Present findings and trends to the cybersecurity supervisor/director on a regular basis.


Requirements:


Requirements:

Bachelor's degree in information technology, cybersecurity, or a related field, or equivalent relevant experience
3+ years of experience in cybersecurity GRC, compliance, or related fields
Working knowledge of major security standards (NIST, ISO 27001, CIS, etc.)
Strong understanding of U.S. federal and state cybersecurity laws and data protection regulations
Experience writing and managing cybersecurity policies and procedures
Ability to conduct risk assessments, audits, and support certification efforts
Familiarity with GRC tools and platforms (e.g., OneTrust, Archer, ServiceNow GRC)
Excellent verbal and written communication skills; able to communicate with technical and non-technical stakeholders
Strong organizational, time management, and project coordination skills


Preferred Qualifications (Nice to Have):

Relevant certifications: Security+, CGRC, CISA, CRISC, or similar
Experience supporting SOC 2, ISO 27001, FedRAMP, ITAR or CMMC certification processes
Background in security awareness training or program development

Similar Jobs

company-logo

GRC Specialist (governance, risk and compliance)

Nefco Corporation
 
East Hartford, CT
15 days ago
company-logo

Sr CIP GRC -Governance Risk & Compliance Analyst II

Duquesne Light Company
Job TypeFull-time
 
Pittsburgh, PA
10 days ago
company-logo

Compliance and Risk Specialist

Horrocks
Job TypeFull-time
 
Pleasant Grove, UT
5 days ago
company-logo

Compliance & Risk Consultant, Expert

Pacific Gas and Electric
Job TypeFull-time
Salary
$118000 - $188000
Oakland, CA
17 days ago
company-logo

Compliance & Risk Consultant, Expert

Pacific Gas and Electric Company
Job TypeFull-time
 
Oakland, CA
17 days ago
company-logo

GRC Security Analyst

Enbridge
Job TypeFull-time
 
North York, ON
26 days ago
company-logo

GRC Security Analyst

Enbridge
Job TypeFull-time
 
North York, ON
26 days ago
company-logo

Manager, Governance, Risk, & Compliance

Cameco Corporation
Job TypeFull-time
Salary
$95013.53 - $118768.67
Saskatoon, SK
16 days ago
company-logo

Compliance Specialist

NAECO
Job TypeFull-time
 
Peachtree City, GA
2 days ago
company-logo

Compliance Specialist

JEA
Job TypeFull-time
Salary
$76500 - $127500
Jacksonville, FL
10 days ago
company-logo

Compliance Specialist

Willmeng Construction, Inc.
Job TypeFull-time
 
Phoenix, AZ
16 days ago
company-logo

Compliance Specialist

Willmeng Construction
 
Phoenix, AZ
16 days ago
company-logo

Compliance Specialist

Pacific Gas and Electric Company
Job TypeFull-time
 
Stockton, CA
17 days ago
company-logo

Global Senior Governance, Risk, and Compliance Analyst

AmeriGas
 
King of Prussia, PA
19 days ago
PO

Compliance Specialist

PAP Oil Company LLC
Job TypeFull-time
 
Middletown, OH
19 days ago
company-logo

GRC Security Analyst II

World Fuel Services
Job TypeFull-time
 
Miami, FL
23 days ago
company-logo

Compliance Specialist

Pacific Gas and Electric
Job TypeFull-time
Salary
$79040 - $120640
Stockton, CA
26 days ago
company-logo

Regulatory Compliance Specialist I

ALLETE
Job TypeFull-time
 
Duluth, MN
25 days ago
company-logo

Specialist, Compliance

Georgia Power Company
Job TypeFull-time
 
Carrollton, GA
about 1 month ago
company-logo

Specialist, Compliance

Southern Company
Job TypeFull-time
 
Carrollton, GA
about 1 month ago

Trending Jobs

company-logo

Assistant General Manager, Navy Yard Electric Utility

Job TypeFull-time
Salary
$108000 - $108000
Philadelphia, Pennsylvania
17 days ago
company-logo

Electrical Engineer

Dudley Staffing
Job TypeFull-time
Salary
$55 - $75
Canonsburg, Pennsylvania
3 months ago
company-logo

Accounts Payable Clerk

Job TypeFull-time
Salary
$65000 - $65000
Dallas, Texas
19 days ago
DM

Apprentice Lineman

Delta Montrose Electric Association
Job TypeFull-time
 
Montrose, CO
22 days ago
company-logo

Division Order Analyst

Job TypeFull-time
 
Dallas, Texas
9 days ago
company-logo

contract landman

HPS Oil & Gas Properties
Job TypeFull-time
 
Lafayette, Louisiana
3 months ago
company-logo

Attorney

Toeppich & Associates
Job TypeFull-time
 
Houston, Texas
about 1 year ago
company-logo

Oil and Gas Land and Title Analyst - SAM Associate II

Bank of America
Job TypeFull-time
 
Dallas, Texas
about 1 month ago
company-logo

Apprentice Lineman I

San Patricio Electric Cooperative, Inc.
Job TypeFull-time
 
Sinton, TX
about 1 month ago
HM

Lineworker Apprentice I

Henderson Municipal Power & Light
Job TypeFull-time
 
Henderson, KY
26 days ago
company-logo

Associate Attorney

Buffalo Biodiesel Inc.
Job TypeFull-time
 
Buffalo, NY
29 days ago
company-logo

Senior Landman

Greenlake Energy
Job TypeFull-time
 
Austin, Texas
about 1 month ago
company-logo

Foundry Professionals

Penticton Foundry
Job TypeFull-time
 
British Columbia, Canada
10 days ago
company-logo

Apprentice Lineman

Southern Pine Electric
Job TypeFull-time
 
Brandon, MS
23 days ago
company-logo

Electrical Designer

Dudley Staffing
Job TypeFull-time
Salary
$45 - $60
Canonsburg, Pennsylvania
3 months ago
company-logo

Contracts Administrator

Third Coast
Job TypeFull-time
Salary
$70000 - $85000
Houston, Texas
22 days ago
company-logo

Deckhand

Ballard Marine Construction
Job TypeFull-time
 
Bradenton, FL
12 days ago
company-logo

Residential Helper

Waste Pro
 
Columbus, MS
26 days ago
company-logo

Groundman (Local 659) - Medford, Oregon - #113370

PacifiCorp
Job TypeFull-time
Salary
$73560 - $73560
Medford, OR
25 days ago
company-logo

Floorhand 2

Key Energy Services
Job TypeFull-time
 
Midland, TX
26 days ago