IT GRC Analyst
Philadelphia, PA - USA
Job Summary
Governance Framework Management
- Develop implement maintain and update PGWs IT and AI governance frameworksstandards policies and operational controls to ensure alignment with industry standards and regulatory expectations
- Manage enterprise GRC workflows within OneTrust establishing standardized compliance tracking continuous control monitoring and automated risk reporting across complex IT and AI ecosystems.
- Help benchmark governance programs against emerging global AI regulations ethical standards and industry guidelines driving proactive policy updates to mitigate operational and reputational risks.
- Help lead IT Governance Risk and Compliance (GRC) efforts ensuring that technology initiatives adhere to internal policies third-party audit requirements and external standards.
- Collaborate with data engineering and security teams to evaluate data governance maturity using platforms such as Databricks and or other Data Governance Tools.
- Help in establishing strategic guardrails for data governance and AI security by partnering with enterprise data architects and security leads using platforms such as Databricks Microsoft Purview and Varonis.
- Help set criteria and Perform vendor compliance audits and assessments for third-party IT applications cloud providers and external AI tools prior to onboard and during periodic reviews utilizing Help negotiate risk mitigation plans with external vendors.
- Synthesize complex technical risk data into clear concise and executive-ready dashboards reports and presentations for management and senior leadership.
- Help design and maintain governance metrics KPIs and report models using business intelligence tools such as Tableau to visualize risk trends and compliance progress over time.
- Serve as the primary subject matter expert for internal and external GRC audits providing expert guidance on compliance readiness and control optimization.
- Bachelors degree in information technology Management Information Systems IT Audit or other related fields of study.
- Masters Degree preferred
- Minimum of 4 years of hands-on experience in an Information Technology Governance Environment
- Industry Certifications preferred (e.g. CRISC or CISA)
- Strong oral and written communication skills for knowledge transfer.
- Experience to conduct risk assessments to determine actions and strategic next steps
- Demonstrated effectiveness in Governance Risk and Compliance
- Proficiency with software products including: IT Governance Tool OneTrust preferred
- Data Governance Tools (e.g. Databricks Alation Collibra)
- Data and AI Security (e.g. Varonis MS Purview)
- Vendor Audit
- Maintaining updating and creating Frameworks controls and policies
- Ability to create clear and concise reports and presentation for management and leadership
- Experience with Tableau or other BI tools a plus
Required Skills:
Minimum of 4 years of hands-on experience in an Information Technology Governance Environment Industry Certifications preferred (e.g. CRISC or CISA) Strong oral and written communication skills for knowledge transfer. Experience to conduct risk assessments to determine actions and strategic next steps Demonstrated effectiveness in Governance Risk and Compliance Proficiency with software products including: IT Governance Tool OneTrust preferred Data Governance Tools (e.g. Databricks Alation Collibra) Data and AI Security (e.g. Varonis MS Purview) Vendor Audit
Required Education:
Preferred masters or bachelors in computer science or a related field.