What are the responsibilities and job description for the Cybersecurity GRC Training Analyst position at i-Link Solutions?
Job Title: Cybersecurity GRC Training Analyst
Location: Remote
Department: Cybersecurity Governance, Risk & Compliance
Employment Type: Contract Consulting Engagement
Duration: 12 Months (with possible extension)
Position Summary
The client is seeking an experienced Cybersecurity GRC Training Analyst to serve as a consultant supporting a large enterprise client's Cybersecurity Governance, Risk, and Compliance (GRC) training initiatives. In this consulting capacity, the analyst will embed with the client's cybersecurity team to align GRC strategy with an existing application developer training program, assess current training scope, processes, and tooling, and recommend future-state improvements to drive efficiency and effectiveness. This role is a consulting engagement managed through client Solutions. Responsibilities are limited to analysis, program support, and coordination activities and do not include ownership of training content development, compliance determinations, system administration, or final business decisions, which remain the responsibility of the end client.
Key Responsibilities
Program Alignment & Assessment:
The selected consultant is expected to produce the following key deliverables during the engagement:
# Deliverable Description 1 Training Program Alignment Artifacts Documentation aligning cybersecurity and GRC strategy with the application developer training program. 2 Current-State & Future-State Training Assessment Assessment of existing training scope and processes,
with recommendations to improve efficiency and effectiveness. 3 Training Vendor Evaluation Support Materials Research findings, evaluation criteria, and comparison materials to support training vendor selection. 4 Training Vendor Onboarding Support Artifacts Coordination materials and onboarding support documentation for the selected training vendor. 5 Training Assignment & Completion Process Documentation Defined processes for identifying, assigning, tracking, and
managing training participation and completion. 6 Training Reporting & Automation Support Artifacts Collaboration outputs supporting automated dashboard reporting and training metrics visibility.
Working Conditions
Location: Remote
Department: Cybersecurity Governance, Risk & Compliance
Employment Type: Contract Consulting Engagement
Duration: 12 Months (with possible extension)
Position Summary
The client is seeking an experienced Cybersecurity GRC Training Analyst to serve as a consultant supporting a large enterprise client's Cybersecurity Governance, Risk, and Compliance (GRC) training initiatives. In this consulting capacity, the analyst will embed with the client's cybersecurity team to align GRC strategy with an existing application developer training program, assess current training scope, processes, and tooling, and recommend future-state improvements to drive efficiency and effectiveness. This role is a consulting engagement managed through client Solutions. Responsibilities are limited to analysis, program support, and coordination activities and do not include ownership of training content development, compliance determinations, system administration, or final business decisions, which remain the responsibility of the end client.
Key Responsibilities
Program Alignment & Assessment:
- Align cybersecurity and GRC strategy with the client's application developer training program.
- Assess current training scope, processes, and tooling to identify gaps and improvement opportunities.
- Develop recommendations for future-state training improvements to drive efficiency and effectiveness.
- Support evaluation and selection of third-party cybersecurity training vendors on behalf of the client.
- Research vendors, define evaluation criteria, and prepare comparison materials.
- Assist with coordinating vendor onboarding activities and producing onboarding support documentation.
- Define processes for identifying, assigning, and tracking training completion.
- Collaborate with client teams to document training assignment and participation workflows.
- Support monitoring of training completion metrics across relevant populations.
- Collaborate with client teams to enable automated reporting and dashboard visibility for training metrics.
- Produce reporting and automation support artifacts to enhance training program transparency.
- 5+ years of experience in cybersecurity, GRC, or related training/program coordination roles.
- Demonstrated familiarity with cybersecurity governance frameworks (e.g., NIST CSF, ISO 27001, CIS Controls).
- Experience with enterprise training program management, including LMS platforms and training lifecycle processes.
- Ability to assess current-state processes and develop clear, actionable future-state recommendations.
- Strong analytical and documentation skills with experience producing deliverables for senior stakeholders.
- Excellent written and verbal communication skills; ability to coordinate across multiple cross-functional teams.
- Comfort operating in a client-facing consulting environment with professionalism and discretion.
- Experience supporting vendor selection processes, including RFP/RFI coordination and evaluation frameworks.
- Familiarity with automated reporting tools and dashboard platforms (e.g., Power BI, ServiceNow, Tableau).
- Prior experience in an enterprise or Fortune 500 environment.
- Relevant certifications such as CISM, CRISC, Security+, or equivalent GRC/cybersecurity credentials.
- Experience with application developer security training programs or secure coding awareness initiatives.
The selected consultant is expected to produce the following key deliverables during the engagement:
# Deliverable Description 1 Training Program Alignment Artifacts Documentation aligning cybersecurity and GRC strategy with the application developer training program. 2 Current-State & Future-State Training Assessment Assessment of existing training scope and processes,
with recommendations to improve efficiency and effectiveness. 3 Training Vendor Evaluation Support Materials Research findings, evaluation criteria, and comparison materials to support training vendor selection. 4 Training Vendor Onboarding Support Artifacts Coordination materials and onboarding support documentation for the selected training vendor. 5 Training Assignment & Completion Process Documentation Defined processes for identifying, assigning, tracking, and
managing training participation and completion. 6 Training Reporting & Automation Support Artifacts Collaboration outputs supporting automated dashboard reporting and training metrics visibility.
Working Conditions
- The consultant will be expected to observe standard working hours aligned to the client facility schedule.
- If performing work on-site at the client facility, the consultant will observe client-designated holidays.
- A managed device and client email address will be provided by the client and must be used exclusively for all engagement-related work.
- All travel must be pre-approved and will be reimbursed in accordance with the client's travel guidelines.
- This consultant will be employed and managed by Yearling Solutions for the duration of the engagement.