✦ Luna Orbit — Cybersecurity

Cyber Security GRC Analyst with state govt exp - $64 CTC - REMOTE (Candidates in the EST & CST zones)

at Chandra Technologies, Inc.

📍 Anywhere Remote Posted March 06, 2026
Type Not Specified
Experience mid
Exp. Years 3+ years
Education Not specified
Category Cybersecurity

This role involves evaluating cybersecurity risks related to new technologies and third-party vendors within a state government context. The analyst will review attestations, assess controls, and support risk management programs.

  • Conduct security reviews for new technologies
  • Review third-party attestations and certifications
  • Support third-party risk management programs
  • Utilize GRC platforms for risk documentation
  • Assist in security waiver evaluations

The position requires expertise in cybersecurity risk assessments, GRC platforms like Archer IRM, vendor security evaluations, and familiarity with standards such as SOC 2 and ISO 27001.

The ideal candidate is a mid-level cybersecurity analyst with experience in third-party risk management, security assessments, and GRC platforms. They should have a strong understanding of security standards like SOC 2 and ISO 27001 and be capable of supporting statewide cybersecurity programs.

Cybersecurity risk assessmentThird-party vendor assessmentGRC platform experienceSecurity controls reviewVendor security attestations
Black KiteArcher IRMSOC 2 Type IIISO 27001Risk Management
Black KiteArcher IRMGRC platforms
CybersecurityRisk AssessmentsThird-Party Risk ManagementVendor Security AttestationsSOC 2 Type IIISO 27001Black KiteArcher IRMGRC platformsRisk RegisterSecurity ControlsSecurity WaiversArchitectural DiagramsRegulatory Standards
CybersecurityRisk AssessmentsThird-Party Risk ManagementVendor Security AttestationsSOC 2 Type IIISO 27001Black KiteArcher IRMGRC PlatformsRisk RegisterSecurity ControlsArchitectural DiagramsSecurity WaiversSecurity Controls ReviewRegulatory Standards
Analytical SkillsCommunicationTeamworkProblem-solvingDetail-oriented
Industry Government/Public Sector
Job Function Cybersecurity risk assessment and third-party vendor evaluation within a government setting
CybersecurityRisk AssessmentsThird-Party Risk ManagementSOC 2 Type IIISO 27001Black KiteArcher IRMGRC platformRisk RegisterSecurity ControlsVendor Security AttestationsSecurity WaiversArchitectural DiagramsRegulatory StandardsSecurity Controls ReviewGRC platforms

Lack of experience with GRC platforms, No experience in cybersecurity risk assessments, Unwillingness to work remotely in US Eastern or Central time zones

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile