
IT Risk Consultant, Technology Risk & GRC
Overview
You will own technology risk management for enterprise applications and architecture at Icon International Group LLC, embedding controls across the SDLC. You will partner with control owners to design, review, and strengthen technology controls, working in a hybrid model from New York. This 6-month contract offers direct influence over GRC, RCSA, and control frameworks.
What You'll Do8
- 1Design and implement technology controls for SDLC, Enterprise Applications, and Enterprise Architecture.
- 2Partner with control owners to review and strengthen technology controls, ensuring alignment with GRC frameworks.
- 3Drive RCSA (Risk and Control Self-Assessment) activities, identifying and mitigating technology risks.
- 4Map controls to regulatory and internal requirements, building a comprehensive control inventory.
- 5Assess control effectiveness and coordinate remediation plans for gaps.
- 6Deliver risk reports to senior management, highlighting key technology risk themes.
- 7Collaborate with audit teams during internal and external technology audits.
- 8Optimize control monitoring processes within the GRC platform.
Requirements8
- 111+ years in technology risk, GRC, or controls management.
- 25+ years hands-on experience with SDLC and enterprise application lifecycle.
- 3Expertise in RCSA, control design, and operational risk frameworks.
- 4Strong knowledge of Enterprise Architecture principles and technologies.
- 5Experience with GRC tools (e.g., ServiceNow, RSA Archer).
- 6Relevant certifications such as CISSP, CISM, or CRISC.
- 7Ability to communicate complex risk concepts to technical and non-technical stakeholders.
- 8Bachelor's degree in Information Technology, Cybersecurity, or related field.
Salary Insight
Salary not disclosed in listing
Location
Required Skills
Similar open positions
Explore active roles that match your skills and interests.

Javen Technologies, Inc
VerifiedSenior IT Risk and Compliance Analyst - GRC Framework Expertise
Lead ownership of IT governance alignment supporting Bank's GRC framework Enterprise Risk Management and Sarbanes-Oxley compliance. Drive improvements through collaboration with IT staff. Analyze technology risks and develop appropriate controls. Stand out by delivering measurable risk reduction outcomes within first 90 days.
Beacon Staffing
VerifiedIT Risk and Compliance Analyst - Beacon Staffing
Lead ownership of IT governance and compliance initiatives at Beacon Staffing. Own development of controls and drive continuous monitoring. Impact visibility across 2-3 days weekly onsite. Differentiate through expertise in SOX and COSO frameworks.

Saicon Consultants Inc.
VerifiedCyber Security Analyst - Saicon Consultants Inc.
Lead ownership of GRC Risk Management Analyst duties supporting information security and third-party risk management at a fast-paced environment. This role blends structured governance with hands-on technical expertise to evaluate vendor security postures across the entire relationship lifecycle. You will drive continuous monitoring and offboarding processes while delivering actionable insights that enhance organizational resilience. What sets this position apart is the emphasis on proactive threat scenario modeling and deep architectural analysis.
Selective Insurance Company of America
VerifiedVulnerability Management Specialist - GRC
You will own the governance, risk, and compliance (GRC) activities for a midsized property and casualty insurer with 100 years of financial stability. You will assess third-party risk, manage vulnerability governance, and support audit and compliance efforts across NIST CSF, NYDFS, and ISO 27001. You will work with technology and risk stakeholders to track remediation and produce clear reporting. This role offers hybrid work in New York and a clear path for growth in a Forbes Best Midsize Employer.
3409 Genpact LLC
VerifiedDirector IT Risk Management Genpact
Genpact seeks a Director IT Risk Management to lead IT-SOX initiatives at scale. This role drives solution offerings focused on IT risk management and compliance while overseeing ERP controls and security frameworks. The ideal candidate thrives in a fast-moving environment and pushes technological boundaries.
Globalchannelmanagement
VerifiedGRC Lead Globalchannelmanagement
Lead audit technology platforms such as AuditBoard (SOXHUB OpsAudit RiskOversight) and drive SOX 404 compliance for public companies. Build scalable solutions using Power BI Tableau or advanced Excel while overseeing ERP controls for SAP Oracle and NetSuite. Foster collaboration across IT Risk and Compliance teams to automate controls testing and enhance audit efficiency.