Assystinc

Information Security Analyst

Gaithersburg, MDfull timeentrytechnology

ServiceNow Integrated Risk Management (IRM) — Information Security Governance — Risk Assessment Methodologies — Risk Register Management — NIST Cybersecurity Framework — Technical Documentation — Microsoft Office 365 — Governance Risk and Compliance (GRC)

ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering the Information Security Policy Exception Program and maintaining the Enterprise Risk Register using the ServiceNow Integrated Risk Management (IRM) platform. The selected candidate will support governance and risk management activities by documenting, tracking, and maintaining information security risks while following established processes and standards. This role focuses on information security governance and risk documentation and does not involve hands-on security testing or vulnerability assessments.

Roles & Responsibilities

  • Administer the Information Security Policy Exception Program.
  • Maintain and update the Enterprise Risk Register using ServiceNow IRM.
  • Review policy exception requests and document risk analyses.
  • Prepare approval or denial recommendations for policy exceptions.
  • Document, track, and maintain information security risks.
  • Produce reports, dashboards, metrics, and technical documentation.
  • Execute established governance processes and workflows.
  • Coordinate assigned tasks and support information security governance initiatives.

Required Skills

  • Experience in Information Security, IT Governance, Risk Management, Compliance, Audit, or a related field.
  • Basic understanding of Cybersecurity, Information Security, Risk Management, NIST Cybersecurity Framework, and HIPAA.
  • Experience with ServiceNow (preferred), especially ServiceNow IRM.
  • Knowledge of Governance, Risk & Compliance (GRC) concepts.
  • Proficiency with Microsoft Office 365.
  • Strong analytical, organizational, communication, and documentation skills.
  • Ability to manage multiple priorities and work independently.

ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law.