Governance Risk and Compliance Analyst Intermediate

Cone Health • Remote • Full Time

Posted on Wed, Sep 2, 2026

Information Systems

Excited to grow your career?
We value our talented employees, and whenever possible strive to help one of our associates grow professionally before recruiting new talent to our open positions. If you think the open position you see is right for you, we encourage you to apply!
Our people make all the difference in our success.

The Governance, Risk & Compliance (GRC) Analyst - Intermediate will collaborate with process owners, internal auditors, external auditors, and other stakeholders in order to assist in reviewing, monitoring, and resolving cybersecurity risk. This includes helping the organization manage HITRUST, HIPAA and NIST Common Security Framework (CSF) audits and attestations. By supporting the implementation of internal and external assessments, responding to and managing the full lifecycle of compliance audits, and ensuring compliance with existing and emerging regulations and standards including SOC2, ISO 27001, PCI-DSS, SOX, and other GRC activities, the Principal GRC Analyst will also contribute to managing the organization’s IT compliance program.


Essential Job Function:


Education:


Experience:


Licensure/Certification/Listing:

Work Shift :

Days/No Weekends (United States of America)

On Call Required

No

FTE:

1

Job Type:

Full Time (40 Hours/Week)

AuditFriendly salary estimate

The employer did not post a salary for this role. Based on AuditFriendly's salary intelligence model (comparable live postings, role, seniority, and location), we estimate base pay of $76,000–$100,000 per year (median ~$87,000). This is an AuditFriendly estimate, not an employer-provided figure.

More live compliance_analyst roles

Browse all live jobs · Accounting & finance salary data

View the interactive listing →