GRC Analyst
Send a job offer directly to this candidate
GRC Analyst with 8+ years of experience supporting federal and commercial systems through security control assessments, continuous monitoring, and risk management aligned with NIST SP 800-53 and RMF. Skilled in Microsoft Sentinel, Microsoft Defender, and KQL for threat detection, log analysis, and incident investigation across cloud and on-premises environments. Proven ability to develop ATO documentation, validate audit logging, and drive vulnerability remediation using tools such as Nessus.
Experienced in assessing and managing vendor and system risk, implementing mitigation strategies, and supporting compliance with standards such as PCI DSS and SOC 2.
GRC Analyst - Battelle Memorial Institute - Columbus, OH
(2025-04)
Information Security Analyst - ISHPI Information Technologies (IRS) - Suffolk, VA
(2023-02 - 2025-04)
Third Party Risk Analyst - Columbia Bank - Tacoma, WA
(2020-04 - 2023-02)
IT Risk Manager - Third Party Management - AGO Worldwide Consulting - Severn, MD
(2017-08 - 2020-03)
Bachelor of Science - Electrical Engineering - University of Akron (2016)