×
Register Here to Apply for Jobs or Post Jobs. X

GRC Analyst

Job in Lowell, Middlesex County, Massachusetts, 01856, USA
Listing for: MACOM
Full Time position
Listed on 2026-07-26
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Support, IT Business Analyst
Salary/Wage Range or Industry Benchmark: 78000 - 125000 USD Yearly USD 78000.00 125000.00 YEAR
Job Description & How to Apply Below

Company Overview:

MACOM designs and manufactures semiconductor products for Data Center, Telecommunication, and Industrial and Defense applications. Headquartered in Lowell, Massachusetts, MACOM has design centers and sales offices throughout North America, Europe, and Asia. MACOM is certified to the ISO
9001 international quality standard and ISO
14001 environmental management standard.

MACOM has more than 75 years of application expertise with multiple design centers, Si, GaAs, and InP fabrication, manufacturing, assembly and test, and operational facilities throughout North America, Europe, and Asia.  to view our facilities.  In addition, MACOM offers foundry services that represents a key core competency within our business.

MACOM sells and distributes products globally via a sales channel comprised of a direct field sales force, authorized sales representatives, and leading industry distributors. Our sales team is trained across all of our products to give our customers insights into our entire portfolio.

Position Overview:

We are seeking a motivated and detail-oriented GRC Analyst to join our Information Security team. This role will support the organization’s governance, risk, and compliance initiatives, focusing on regulatory and framework alignment, third-party risk management, risk lifecycle processes, and policy governance.

The ideal candidate will have foundational knowledge of information security principles, strong analytical skills, and a willingness to learn and grow within the GRC space, especially in platforms such as Service Now GRC.

Key Responsibilities
  • Compliance & Framework Support
  • Assist in the implementation, maintenance, and monitoring of compliance frameworks (e.g., NIST, ISO 27001, SOX, SOC2, CIS, etc.)
  • Support internal and external audit activities, including evidence collection and control validation
  • Track and report on compliance status, gaps, and remediation efforts
  • Third-Party Risk Management (TPRM)
  • Conduct vendor risk assessments and due diligence reviews
  • Analyze third-party security posture and identify potential risks
  • Maintain vendor inventory and track risk treatment activities
  • Collaborate with business owners to ensure appropriate risk mitigation
  • Risk Management
  • Support the execution of the Information Security risk management lifecycle
  • Assist with risk identification, assessment, documentation, and tracking
  • Help maintain risk registers and ensure risks are properly escalated and monitored
  • Partner with stakeholders to support risk remediation planning
  • Policy Governance
  • Assist in drafting, reviewing, and maintaining information security policies, standards, and procedures
  • Facilitate policy review cycles, approvals, and documentation updates
  • Ensure alignment with regulatory requirements and industry best practices
  • GRC Tooling & Process Support
  • Support and learn the administration and use of Service Now GRC
  • Assist in configuring workflows, tracking activities, and improving GRC processes
  • Help identify opportunities for automation and process optimization
Qualifications

Required

  • Bachelor’s degree in Information Security, Cybersecurity, IT, or related field (or equivalent experience)
  • 1–3 years of experience in information security, risk, compliance, or audit (internships acceptable)
  • Basic understanding of security frameworks and regulatory requirements
  • Strong analytical, organizational, and documentation skills
  • Excellent written and verbal communication skills

Preferred

  • Exposure to frameworks such as NIST, ISO 27001, SOC 2, or CIS
  • Security or compliance certifications (e.g., CISM, CRISC, CISSP, CGEIT, or CISA).
  • Experience with third-party risk management processes
  • Familiarity with risk management concepts and methodologies
  • Exposure to GRC tools (Service Now GRC preferred, but not required)
Key Competencies
  • Detail-oriented with strong follow-through
  • Ability to manage multiple priorities and deadlines
  • Collaborative mindset with cross-functional teams
  • Curiosity and willingness to learn new tools and frameworks
  • Strong problem-solving and critical-thinking skills
Why Join Us
  • Opportunity to grow within a maturing GRC program
  • Exposure to a wide range of security, compliance, and risk disciplines
  • Hands-on experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary