GRC Analytics & Automation Analyst (14010-1) Boston, MA Job at ESR Healthcare, Boston, MA

Q2ZHYUNnWnl5dmh0NVNrbzRSUks0bzhQblE9PQ==
  • ESR Healthcare
  • Boston, MA

Job Description

GRC Analytics & Automation Analyst (14010-1)
Boston, MA

If you post this job on a job board, please do not use company name or salary.
Experience level: Mid-senior Experience required: 5 Years Education level: Bachelor’s degree Job function: Information Technology Industry: Insurance Pay rate : View hourly payrate Total position: 1 Visa sponsorship eligibility: No
Position summary
The GRC Analytics & Automation Analyst builds and maintains data pipelines, automation, and dashboards that enable measurable compliance and continuous monitoring across the Compliance Governance Program. This role integrates GovCloud intake sources (SharePoint intake registry, AuditBoard exports, APIs) into Power BI, automates evidence collection where appropriate using Power Automate and connectors, and ensures metadata and taxonomy alignment with Canon Protocol v1.0. 

This is a hybrid/ or 100% remote-eligible role reporting to the Director of Regulatory Compliance Environments ((onsite visits expected periodically for audits and triage)


Key responsibilities (measurable)
Own end-to-end data pipelines from GovCloud Intake Registry and source systems to Power BI; maintain data freshness SLAs (e.g., hourly/daily) and >99% pipeline success rate.
Design, implement, and maintain Power Automate flows and SharePoint integrations to automate evidence collection and workflow triggers; log and remediate automation failures within SLA.
Build executive and operational dashboards (Power BI) for control health, residual risk, and remediation status; support monthly and ad-hoc reporting to leadership.
Correlate control data across frameworks (NIST SP 800-53, SOC 2, ISO 27001) to visualize coverage and residual risk using canonical mapping.
Ensure metadata and taxonomy alignment with canon and maintain documentation of data models and lineage.
Partner with the GovCloud Compliance Analyst to reconcile automated data feeds with human-submitted evidence; implement validations and exception rules.
Support quarterly reviews and audit preparation by providing analytics extracts and evidence inventories.

Required qualifications
Minimum 3 years in GRC, data analytics, or process automation roles with experience integrating data sources.
Proficiency with Power BI (DAX and data modeling), Excel, and Power Automate.
Experience with SharePoint lists, data modeling, workflow design, and handling regulated data (PII/PHI protections).
Understanding of control frameworks (NIST SP 800-53, SOC 2, ISO 27001) and how to map control data for coverage analysis.
Bachelors degree in Information Systems, Data Analytics, or equivalent experience.
Preferred qualifications
Experience with AuditBoard or ServiceNow GRC and automating evidence ingestion.
SQL, Python, or advanced DAX skills for ETL and analytics.
Experience with APIs, connectors, and data governance practices.
Ability to translate compliance requirements into measurable metrics and KPIs.

If you post this job on a job board, please do not use company name or salary.
Experience level: Mid-senior Experience required: 5 Years Education level: Bachelor’s degree Job function: Information Technology Industry: Insurance Pay rate : View hourly payrate Total position: 1 Visa sponsorship eligibility: No
Position summary
The GRC Analytics & Automation Analyst builds and maintains data pipelines, automation, and dashboards that enable measurable compliance and continuous monitoring across the Compliance Governance Program. This role integrates GovCloud intake sources (SharePoint intake registry, AuditBoard exports, APIs) into Power BI, automates evidence collection where appropriate using Power Automate and connectors, and ensures metadata and taxonomy alignment with Canon Protocol v1.0. 

This is a hybrid/ or 100% remote-eligible role reporting to the Director of Regulatory Compliance Environments ((onsite visits expected periodically for audits and triage)


Key responsibilities (measurable)
Own end-to-end data pipelines from GovCloud Intake Registry and source systems to Power BI; maintain data freshness SLAs (e.g., hourly/daily) and >99% pipeline success rate.
Design, implement, and maintain Power Automate flows and SharePoint integrations to automate evidence collection and workflow triggers; log and remediate automation failures within SLA.
Build executive and operational dashboards (Power BI) for control health, residual risk, and remediation status; support monthly and ad-hoc reporting to leadership.
Correlate control data across frameworks (NIST SP 800-53, SOC 2, ISO 27001) to visualize coverage and residual risk using canonical mapping.
Ensure metadata and taxonomy alignment with canon and maintain documentation of data models and lineage.
Partner with the GovCloud Compliance Analyst to reconcile automated data feeds with human-submitted evidence; implement validations and exception rules.
Support quarterly reviews and audit preparation by providing analytics extracts and evidence inventories.

Required qualifications
Minimum 3 years in GRC, data analytics, or process automation roles with experience integrating data sources.
Proficiency with Power BI (DAX and data modeling), Excel, and Power Automate.
Experience with SharePoint lists, data modeling, workflow design, and handling regulated data (PII/PHI protections).
Understanding of control frameworks (NIST SP 800-53, SOC 2, ISO 27001) and how to map control data for coverage analysis.
Bachelors degree in Information Systems, Data Analytics, or equivalent experience.
Preferred qualifications
Experience with AuditBoard or ServiceNow GRC and automating evidence ingestion.
SQL, Python, or advanced DAX skills for ETL and analytics.
Experience with APIs, connectors, and data governance practices.
Ability to translate compliance requirements into measurable metrics and KPIs.

Job Tags

Hourly pay, Full time, Remote work, Visa sponsorship,

Similar Jobs

Black Cape

Awesome Full Stack Software Engineer (Junior - Senior - 2+ years experience) Job at Black Cape

 ...Awesome Full Stack Software Engineer (**Junior - Senior - 2+ years experience) Clearance...  ...Come join us in creating cloud-native web applications, advanced data analysis tools...  ...Start-Up (Black Cape) is a new company developed by a Proven Success Story. Former successful... 

Cedars-Sinai

Community Health Worker - Community Connect Job at Cedars-Sinai

 ...reputation for excellence! Cedars-Sinai's Community Connect Program leads our approach to...  ...nonmedical factors that impact patient health, ensuring all patients receive comprehensive...  ...about this role:**The Community Health Worker (CHW) supports patients and their social... 

The UPS Store #0647

Retail Store Assistant Manager Job at The UPS Store #0647

The UPS Store is a network of individually owned and operated franchised service centers specializing in small business solutions. The Assistant Store Manager helps the Store Manager run the day-to-day operations of the retail location. He or she may be required to open... 

Rising Tide Interactive

Paid Client Strategy Internship — Remote — WinterSpring 2026 Job at Rising Tide Interactive

 ...currently accepting applications for our Winter/Spring 2026 Internship Program . Our interns will have the opportunity to join us in...  ...flexible with start/end dates. Location: This position is based remotely. Candidates must reside in a U.S. state in which the company... 

Leidos

Cybersecurity Engineer Job at Leidos

 ...Certification Tracking System, and Federal Information Security Management Act. Technologies: Support Security VPN More: At Leidos, we are committed to creating a supportive work environment. We expect this job requisition to remain open for at least 3 days from...