GRC Analyst

Heath Consultants, Inc. β€’ Houston, TX

Company

Heath Consultants, Inc.

Location

Houston, TX

Type

Full Time

Job Description

Since 1933 Heath Consultants Incorporated is the leading provider of services and equipment to the natural gas and utility industry. Heath develops and manufactures its equipment in its own world-class facility located in Houston, TX. The GRC Analyst updates and maintains control spreadsheets, provides suggestions to management, and ensures compliance with internal controls, legal requirements, and security guidelines. They support audits by supplying relevant documentation and work under the Information Security Assessment Specialist to secure all protected information. The analyst collaborates across departments to identify and resolve security issues, recommending improvements to enhance the organization's overall security posture. Candidates MUST be local to the Houston, TX area or be willing to relocate to Houston to be considered as this is a HYBRID ROLE. Key Responsibilities: β€’ Design and implement cybersecurity risk management and security assessment programs. β€’ Conduct risk analysis to improve policies, controls, and compliance processes. β€’ Collaborate with teams to guide remediation and ensure alignment with frameworks (NIST, SOC 2, CIS). β€’ Identify vulnerabilities and monitor ongoing compliance across systems. β€’ Automate and streamline GRC workflows, including risk evaluations and control testing. β€’ Develop dashboards, metrics, and documentation to support audits and reporting. β€’ Support security incident response, including investigation, forensics, and containment. β€’ Monitor threats and activate incident response plans as needed. β€’ Support insider threat detection and deliver security awareness training. β€’ Evaluate third-party and vendor risks through due diligence assessments. β€’ Conduct enterprise risk assessments and maintain risk registers. β€’ Ensure compliance with data privacy regulations (e.g., GDPR, CCPA). β€’ Coordinate audit readiness and track remediation of findings. β€’ Promote a culture of risk awareness and responsible decision-making. β€’ Align GRC programs with new technologies and digital initiatives. β€’ Perform additional tasks and special projects as assigned. Competencies: β€’ Cyber Security Compliance. β€’ Cyber Security Risk Assessment. β€’ Cyber Security Customer Support. β€’ Vulnerability and Penetration Testing. β€’ Cyber Security Threat Management. β€’ Cyber Security Monitoring and Reporting. Knowledge, Skills, and Experience: β€’ Bachelor's degree in IT or related field, or equivalent work experience within compliance, information security, auditing, and/or consulting β€’ Ability to positively contribute and look for opportunities to improve upon existing processes or procedures. β€’ Possess a high standard of ethics and operate with integrity and professionalism. β€’ Broad understanding of cloud security, risk assessment, GRC, IAM, SDLC, penetration testing, incident response & forensics, and related cybersecurity solutions β€’ Good written and oral communication and influencing skills. β€’ Experience with Identity Access Management tools and Role-Based Access Controls is a plus. β€’ Experience with Governance, Risk, and Compliance solutions such as Auditboard is a plus. β€’ Industry certifications such as CISA, CRISC, GCIH, CIA, or equivalent are a plus. β€’ Understanding of general IT controls and the ability to analyze data and interpret results. β€’ Familiarity with industry frameworks and standards, such as NIST CSF, ISO, COBIT5/2019, SOC2, GDPR, PCI, etc. Work Environment and Physical Requirements: β€’ Dependable, flexibility to work weekends, evenings, nights, and holidays. β€’ Heath’s IT is a 24/7/365 department such that, as an employee needs assistance, they will be provided with the proper channels based on normal working hours, expanded working hours or emergency support hours. β€’ Hybrid Work Schedule (3 days on site) β€’ Sitting for extended periods. β€’ Dexterity of hands and fingers to operate a computer keyboard, mouse, power tools, and to handle other computer components. β€’ Occasional inspection of cables in floors and ceilings. β€’ Lifting and transporting moderately heavy objects, such as computers and peripherals. Salary: $80,000-$88,000.00 per year
Apply Now

Date Posted

07/18/2025

Views

0

Back to Job Listings ❀️Add To Job List Company Info View Company Reviews
Neutral
Subjectivity Score: 0

Similar Jobs

Business Intelligence Analyst Mid Level - Finance Data & Analytics - USAA

Views in the last 30 days - 0

OR advanced degree in quantitative analytics field such as Economics Finance Statistics Mathematics Actuarial Sciences Operations Research Data andor

View Details

Business Intelligence Analyst Senior - Finance Data & Analytics - USAA

Views in the last 30 days - 0

For a total of 6 years combined experience OR advanced degree in quantitative analytics field such as Economics Finance Statistics Mathematics Actuari...

View Details

Business Intelligence Analyst - Intermediate Level - USAA

Views in the last 30 days - 0

We are seeking a motivated individual to join our Treasury Operations Team focusing on driving process improvements through indepth data analysis and

View Details

Business Data Analyst - Customer Service - San Antonio Water System

Views in the last 30 days - 0

Bachelors degree in Business Administration Computer Science Information Systems or related field from an institution accredited by a nationally recog...

View Details

Cybersecurity Analyst II (Threat Researcher) - DEPARTMENT OF INFORMATION RESOURCES

Views in the last 30 days - 0

Develop and potentially deliver tabletop preparedness exercises for both technical and nontechnical stakeholders providing educational and awareness

View Details

Cybersecurity Analyst II - DEPARTMENT OF INFORMATION RESOURCES

Views in the last 30 days - 0

Develop and potentially deliver tabletop preparedness exercises for both technical and nontechnical stakeholders providing educational and awareness

View Details