IT GRC Contract Analyst
New York
Thursday, 30 April 2026
Collaborate with business leadership, Legal, Procurement, and Cyber to review terms and conditions, ensuring vendor and client obligations are aligned with internal cyber controls. Undertake research as needed when control or regulatory questions arise. Track status of risk remediations in the risk register with business stakeholders. Monitor completeness and sustainability of remediation efforts. Educate and raise awareness on risks and controls. Contribute to overall program enhancements and drive automation with various IT and Cybersecurity stakeholders. Contribute to enterprise IT Risk and Control awareness efforts. Maintain deep understanding of organization wide objectives, interactions, issues and risks. Stay abreast of current and emerging information risks, including current or proposed cyber legislation or control frameworks. Perform other related duties and special projects, as assigned, to support evolving GRC and cybersecurity program needs Qualifications. Requirements:Bachelor's degree or equivalent experience. Minimum of 2 years of experience in IT Governance, Risk or Compliance functions. Knowledge of IT Risk Frameworks such as NIST, ISO, CSA, PCI, etc. Knowledge of contracting lifecycle. Ability to work independently and in cross functional teams. Strong analytic skills for problem analysis and resolution. Experience in process management systems like Jira, Azure Dev. Boards, ServiceNow. Experience with the MS office suite – Excel, PowerPoint, Word etc. Strong written/verbal communication and organizational skills. Desired Characteristics:Ability to prioritize activities based on business criticality, audits, threats, vulnerabilities, and regulatory requirements. Experience supporting enterprise-wide technology initiatives and creating a risk-aware culture. Ability to understand the big picture by aligning activities to business objectives and partnering with other IT GRC functions to align strategies and enterprise priorities. Industry certifications such as CRISC or CISA are a plus. Additional Requirements:Fully Remote: This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employee’s residence. This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary range: $65,000 - $85,000