| Location | NY (Remote) |
| Salary | $65,000–$75,000 Per Year |
The University of Maine System is seeking a Cybersecurity Governance, Risk & Compliance (GRC) Analyst to join our Information Security team.
This position plays an important role in protecting the information, systems, and data that support Maine''s public universities. The GRC Analyst will help advance the University of Maine System''s cybersecurity governance framework, risk management processes, regulatory compliance efforts, and security awareness program.
Working across Information Technology, academic departments, administrative units, and with external partners, the Cybersecurity GRC Analyst will coordinate cybersecurity risk and compliance activities, support audit readiness, develop and maintain policies and controls, and help strengthen a culture of shared responsibility for cybersecurity throughout the University of Maine System.
This is an excellent opportunity for a cybersecurity professional who enjoys connecting technical security requirements with policy, risk management, compliance, communication, and organizational strategy.
This is a fully remote position, open to candidates who live and are authorized to work in the United States. Standard hours are Monday through Friday, 8:00 AM to 4:30 PM ET, with occasional evening or weekend work as needs arise.
What You''ll Do:
What We Are Looking For: The successful candidate will bring knowledge of cybersecurity governance, risk management, and compliance principles along with the ability to translate complex security requirements into practical policies, processes, recommendations, and communications.
Required Qualifications
Preferred Qualifications
Relevant governance, risk, compliance, audit, or privacy certifications, such as:
CISA - Certified Information Systems Auditor
CRISC - Certified Risk and Information Systems Control
CGRC - Certified in Governance, Risk, and Compliance
CISM - Certified Information Security Manager
CIPP - Certified Information Privacy Professional
CIPM - Certified Information Privacy Manager
Certification or professional development related to artificial intelligence, automation, or emerging technologies.
Experience working in higher education, the public sector, a multi-campus organization, or another complex enterprise IT environment.
Experience supporting cybersecurity governance, risk management, and compliance programs.
Experience with GRC platforms such as ServiceNow GRC, Isora GRC, OneTrust, or Archer, and familiarity with HECVAT for vendor security reviews.
Experience coordinating internal and external cybersecurity awareness and training programs.
Experience designing or implementing automation solutions that improve workflows, reporting, or operational efficiency.
What We Offer: Our comprehensive benefits package can be worth up to 50% of your annual salary and is designed to support your health, financial well-being, professional growth, and work-life balance. Benefits include:
Why Join the University of Maine System?
At the University of Maine System, technology plays a vital role in advancing education, research, and public service. As part of Information Security team, you''ll have the opportunity to work on meaningful, system-wide initiatives that impact thousands of students, faculty, and staff across Maine.
Apply Today!
Materials must be submitted via "Apply Now" below. You will need to complete an application and upload the following:
Important items to know about the recruitment process:
Review of applications will begin immediately. The position will remain open until filled. For full consideration, applications must be submitted by September 13, 2026.
️ Work authorization: This position requires U.S. work authorization that does not require employer sponsorship now or in the future. We are unable to consider applicants who require visa sponsorship or OPT extensions at any point.
EEO Statement
The University of Maine System (the System) is an equal opportunity institution committed to fostering a nondiscriminatory environment and complying with all applicable nondiscrimination laws. Consistent with State and Federal law, the System does not discriminate on the basis of race, color, religion, sex, sexual orientation, transgender status, gender, gender identity or expression, ethnicity, national origin, citizenship status, familial status, ancestry, age, disability (physical or mental), genetic information, pregnancy, or veteran or military status in any aspect of its education, programs and activities, and employment. The System provides reasonable accommodations to qualified individuals with disabilities upon request. If you believe you have experienced discrimination or harassment, you are encouraged to contact the System Office of Equal Opportunity and Title IX Services at 5713 Chadbourne Hall, Room 412, Orono, ME 04469-5713, by calling 207.581.1226, or via TTY at 711 (Maine Relay System). For more information about Title IX or to file a complaint, please contact the UMS Title IX Coordinator at www.maine.edu/title-ix/.
About the University of Maine System
The University of Maine System (UMS), established in 1968, consists of seven universities and the University of Maine School of Law, spread across various locations in Maine. UMS provides system-wide services and governance from these locations, leveraging the distinct strengths and collaborations among its institutions to advance strategic priorities for UMS and the state of Maine.
Choosing UMS means opting for a high quality of life supported by excellent benefits such as tuition waivers, robust retirement contributions, and comprehensive insurance coverage including medical, dental, vision, life, and disability. Maine''s diverse landscapes, from accessible wilderness and rugged coastline to urban centers and rural communities, offer numerous cultural activities, strong public schools, safe neighborhoods, and high-quality healthcare. Discover more about Maine''s exemplary lifestyle on the Maine Office of Tourism website.