Ultra Clean Holdings logo
Ultra Clean HoldingsPosted 2 months ago

Lead GRC Analyst (IT/Security)

On-siteManor, Texas, United States

Full TimeSenior LevelLarge

Job Summary

Design, execute, and mature the IT governance, risk, and compliance program by coordinating risk management activities, supporting control design and testing, and maintaining audit-ready evidence. Partner with IT, Security, Legal, Finance, HR, Operations, and business stakeholders to embed compliance into day-to-day processes and manage the Enterprise IT Risk Register. Support vendor and cloud service provider risk reviews, administer GRC automation platforms, and develop compliance metrics and executive reports. Lead control testing, evidence collection, and site walkthroughs to validate operating effectiveness and identify process gaps. Draft and maintain IT policies, standards, and procedures while developing training materials and self-service resources. Define user access review schedules, validate least privilege and segregation of duties, and track remediation of excessive or stale access. Represent the function in cross-functional governance discussions, provide technical direction to team members, and ensure alignment with regulatory requirements such as SOX, NIST CSF, ISO 27001, and SOC 2.

Required Qualifications

  • Minimum of 3 years of experience in IT governance, risk, compliance, IT audit, cybersecurity compliance, IT controls, third-party risk management, or a related field
  • Bachelor's degree in Information Systems, Information Technology, Cybersecurity, Computer Science, Accounting, Business, Risk Management, or a related field, or equivalent practical experience

Desired Qualifications

  • Professional certification preferred, such as CRISC, CISA, CISM, CISSP, or other relevant IT risk, audit, security, or compliance certification

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce