What are the responsibilities and job description for the Governance, Risk, and Compliance Analyst position at Proactive Risk Inc.?
Location: Denville, NJ (In Office 5 Days/Week)
Travel: Client onsite visits throughout Northern New Jersey as required
Company: Proactive Risk, Inc.
Website: www.proactiverisk.com
About Proactive Risk
Proactive Risk is a cybersecurity, technology risk management, and compliance advisory firm serving commercial, government, and regulated organizations. We help clients strengthen their cybersecurity posture through governance, risk management, compliance assessments, penetration testing, vCISO services, managed security consulting, and third-party risk programs.
We are seeking a professional, client-facing Cybersecurity & Compliance Consultant to join our growing team. This position requires an individual who can work directly with clients, conduct assessments, gather evidence, identify security gaps, and help organizations improve their cybersecurity and compliance programs.
This is not a fully remote position. Candidates must reside within approximately 20 miles of our Denville, NJ headquarters and be available to work from the office five days per week while traveling to client locations as required.
Position Summary
The Cybersecurity & Compliance Consultant is responsible for delivering cybersecurity, risk management, and compliance consulting services to clients. The role combines technical knowledge, project management, client communication, and regulatory compliance expertise.
The ideal candidate possesses a strong understanding of cybersecurity controls, Microsoft 365 environments, risk assessments, and compliance frameworks such as CIS Controls, NIST 800-171, CMMC, and NIST 800-53.
This role involves both onsite and remote client engagement, evidence collection, control validation, report development, policy support, and project coordination.
ResponsibilitiesClient Engagement & Consulting
- Conduct client interviews, workshops, and discovery sessions both onsite and remotely.
- Gather and review documentation, policies, procedures, and technical evidence.
- Assist organizations in identifying gaps, risks, and compliance deficiencies.
- Develop remediation recommendations and implementation roadmaps.
- Present findings and recommendations to business and technical stakeholders.
- Serve as a trusted advisor to client leadership teams.
Governance, Risk & Compliance (GRC)
- Perform cybersecurity and compliance assessments against:
- CIS Controls v8.1
- NIST SP 800-171
- NIST SP 800-53
- CMMC
- NY Shield Act
- PCI DSS
- Other regulatory requirements as assigned
- Assist with risk assessments, risk register development, and remediation planning.
- Support clients with governance, policy, and procedure development.
- Maintain compliance documentation and audit evidence repositories.
Security & Technical Assessments
- Evaluate administrative, technical, and physical security controls.
- Participate in security reviews involving:
- Firewalls
- VPNs
- Multi-factor Authentication
- Identity and Access Management
- Microsoft 365 Security
- Endpoint Security Platforms
- Vulnerability Management Programs
- Review network architectures, cloud environments, and security configurations.
- Analyze security findings and assist with remediation planning.
Audit & Compliance Support
- Collect and validate audit evidence.
- Support internal and external security audits.
- Track remediation activities and compliance milestones.
- Utilize compliance platforms such as:
- Apptega
- Virtual CISO
- HaloPSA
- Other governance and risk management tools
Project Management
- Manage multiple client engagements simultaneously.
- Track project progress, deliverables, and deadlines.
- Coordinate activities between clients, consultants, and technical teams.
- Communicate project status professionally and proactively.
Required Qualifications
- 3-7 years of experience in cybersecurity, information technology, risk management, compliance, or consulting.
- Experience conducting assessments, audits, or security reviews.
- Strong understanding of cybersecurity frameworks and best practices.
- Experience working with Microsoft 365, Entra ID (Azure AD), Intune, and cloud-based environments.
- Working knowledge of networking fundamentals including:
- TCP/IP
- DNS
- DHCP
- VPN technologies
- Firewalls
- Routing and Switching
- Strong written communication and documentation skills.
- Ability to interact professionally with executives, technical teams, and business stakeholders.
- Ability to manage multiple projects and priorities simultaneously.
- Valid driver's license and reliable transportation.
Preferred Qualifications
- Experience with:
- CIS Controls
- NIST 800-171
- CMMC
- NIST 800-53
- PCI DSS
- Risk Management Programs
- Familiarity with:
- Windows Server
- Linux
- macOS
- Microsoft Defender
- Security Monitoring Platforms
- Basic automation or scripting skills in:
- PowerShell
- Python
- Bash
- Previous consulting, MSP, MSSP, or advisory experience.
- Industry certifications such as:
- Security
- CISSP
- CISM
- CRISC
- CISA
- Microsoft Security Certifications
Work Environment
- Office-based position located in Denville, NJ.
- Candidate must reside within approximately 20 miles of Denville, NJ.
- In-office attendance required five days per week.
- Regular travel to client sites throughout Morris, Essex, Passaic, Union, and surrounding counties.
- Hybrid delivery model requiring both onsite and remote consulting services.
What Success Looks Like
Within your first year, you will:
- Lead client assessment engagements.
- Conduct interviews and evidence collection independently.
- Deliver high-quality risk and compliance reports.
- Support cybersecurity program development initiatives.
- Become a trusted advisor to multiple Proactive Risk clients.
- Contribute to the growth and reputation of Proactive Risk's CyberAdvisor consulting team.
Join Proactive Risk and help organizations strengthen their cybersecurity, compliance, and operational resilience while building a rewarding consulting career.
Pay: $65,000.00 - $75,000.00 per year
Benefits:
- 401(k)
- Flexible schedule
Work Location: In person
Salary : $65,000 - $75,000