Governance, Risk, And Compliance Analyst.info Tech Services
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, Information Security
.GOVERNANCE, RISK, AND COMPLIANCE TECH SERVICES
Join to apply for the .GOVERNANCE, RISK, AND COMPLIANCE TECH SERVICES role at Dallas County.
Supports Dallas County’s governance, risk, and compliance (GRC) program by conducting control assessments, supporting regulatory audits, coordinating policy management, and assisting with vendor risk and compliance processes. Works across departments to ensure that security, privacy, and compliance requirements are documented, implemented, and tracked through their lifecycle.
Responsibilities- Assist in the coordination and documentation of compliance activities related to NIST, CJIS, HIPAA, and other frameworks.
- Gather evidence, prepare reports, and support audit requests.
- Conduct control assessments and track remediation activities.
- Maintain GRC platform records and support reporting and dashboard updates.
- Participate in policy and standard development, ensuring version control, stakeholder review, and publication across systems.
- Assist with the management, tracking, and reporting of security awareness training and phishing simulation campaigns.
- Support vendor risk management activities by distributing and reviewing vendor questionnaires, documenting findings, and assisting in risk decisions.
- Collaborate with cross-functional teams to capture risk information, assess threats to systems and data, and document findings in risk registers.
- Perform other duties as assigned.
- Education:
Bachelor's degree in Information Systems, Cybersecurity, Computer Science, or a related field. - Experience:
Five (5) years of work-related experience in GRC, IT audit, cybersecurity risk, or compliance. - Certifications (Preferred):
- Relevant compliance/governance certifications.
- Excellent organizational, analytical, and communication skills.
- Ability to work independently and manage multiple initiatives.
- Ability to write clear, concise policies and reports.
- Ability to coordinate across diverse business and technical teams.
- Ability to participate in an on-call rotation for after-hours security incident escalation.
- Knowledge of GRC principles and program operations.
- Knowledge of enterprise IT environments, including Windows Server, Active Directory, Azure and Microsoft 365 cloud services, and core networking concepts and configurations.
- Knowledge of document management systems and ticketing platforms (e.g., SharePoint, Jira, Service Now).
- Ability to interpret and apply regulatory or policy requirements in practical IT/security environments.
- Knowledge of IT governance frameworks, compliance requirements, and security best practices.
- Knowledge of CJIS, NIST 800-53, HIPAA, or PCI-DSS compliance programs.
- Knowledge of internal or external IT audit processes.
- Ability to translate technical security controls into business-impact terms.
- Ability to assist with third-party risk assessments, security reviews, and compliance gap analyses.
Must have a valid Texas Driver's License and good driving record. Will be required to provide a copy of 10-year driving history. Must maintain a good driving record and remain in compliance with Article II, Subdivision II of Chapter 90 of the Dallas County Code. Individuals holding or considered for a position which has, or may have, access to criminal justice databases including the FBI Criminal Justice Information Systems, NCIC/TCIC and similar databases, must pass a national fingerprint-based records check prior to placement in such position and may be denied placement in such positions and/or access to such systems.
Incumbents must also maintain the ability to pass the records check while in the position or until such time that the Commissioners Court and the County Civil Service Commission deem this position no longer has this requirement.
Physical/Environmental Requirements:
Standard office environment. Ability to lift and carry up to 25 lbs. unassisted. Work a 40-hour hybrid work week with on-call availability for two (2) days per month. Sitting for extended periods of time.
- Mid-Senior level
- Full-time
- Legal
- Government Administration
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).