Company - Our client is a highly regarded enterprise operating in the financial services and technology industry, known for maintaining a robust cybersecurity posture and dedication to compliance excellence. With a reputation for operational integrity, they are recognized for embracing innovation in GRC (Governance, Risk, and Compliance) practices and protecting sensitive data across diverse systems.
Job Title - ServiceNow GRC Consultant
Location - Alpharetta, GA (Onsite only)
Role Type - Contract, 3 months with possible extension
Must Have Skills:
- Hands-on experience with ServiceNow GRC, including module configuration and asset/policy management
- Experience with LogicGate or similar TPRM platforms, especially for vendor risk and SOC 2 reviews
- Strong background in operational compliance with cross-functional business collaboration
- Deep knowledge of NIST, HIPAA, SOX, and GDPR frameworks and regulatory application
- Excellent communication and documentation skills
- Bachelor's Degree in cybersecurity, information systems, risk management, business, or related field
Responsibilities and Job Details:
- Maintain and enhance ServiceNow GRC modules for asset inventory and policy updates
- Conduct and support third-party risk assessments using LogicGate
- Collaborate with internal business units to ensure alignment with compliance frameworks
- Interpret and apply industry regulations (SOX, HIPAA, GDPR, etc.) to maintain ongoing compliance
- Assist with the development and implementation of cybersecurity policies and standards
- Review and provide feedback on SOWs, MSAs, and NDAs from a compliance standpoint
- Track and manage risk registers, incidents, and remediation plans
- Participate in and support audit readiness and evidence collection activities
- Liaise with auditors, regulators, and third-party stakeholders during compliance reviews
- Support cybersecurity awareness initiatives and training sessions
- Monitor incident response procedures for regulatory alignment
- Generate dashboards and compliance reports for internal and external stakeholders