The IT GRC Analyst operates within the enterprise Cybersecurity Operations function and supports the Information Technology, Information Systems, and other technology teams aligned under the Chief Information Officer. This role executes governance, risk, and compliance activities aligned with regulatory frameworks and internal policies. Core responsibilities include ensuring operational alignment with frameworks such as GLBA, FFIEC, SOX, NIST CSF, and the Computer Risk Institute (CRI) Profile; conducting IT assessments and Risk Control Self Assessments (RCSAs); maintaining control libraries; and supporting recurring testing, reporting, and metrics analysis and response. The analyst contributes to recurring reporting cycles, supports departmental risk remediation and response efforts associated with findings and risks, and helps drive continuous improvement of governance practices through collaboration, documentation, and control maturity efforts.
The analyst collaborates with Enterprise Risk, Audit (internal and external), Compliance, and Policy Management teams to execute these activities effectively. Day-to-day responsibilities include control documentation, testing coordination, assistance with reviewing and updating policies, standards, and control libraries, and policy lifecycle support. Familiarity with GRC platforms (e.g., AuditBoard), ITSM tools (e.g., ServiceNow), and regulatory compliance in financial services is strongly preferred.
The analyst also contributes to the development and maintenance of IT policies and procedures and supports the definition and tracking of key performance indicators (KPIs) and key risk indicators (KRIs). Success in this role requires strong technical writing skills, cross-functional engagement, and a focus on building and maintaining automation to streamline control testing and reporting processes. The role demands a self-driven desire to continuously learn and improve along with a collaborative mindset and a willingness to meet teammates and coworkers where they are in their processes. The analyst must be committed to helping develop, strengthen, and sustain a resilient and effective IT GRC program across the organization.
This position may be filled as a Level I, II or III. Additional responsibilities and qualifications apply.
Additional qualifications required for Level II:
Additional qualifications required for Level III:
Physical Requirements & Working Conditions:
Must be able to sit for long periods of time and use computer keyboard and/or mouse requiring hand and wrist manipulation, while viewing computer screens.
Disclaimer:
Management retains the right to add, delete or modify the responsibilities and qualifications of the position at any time.
Trustmark Bank does not accept unsolicited resumes from agencies and/or search firms for any job postings on this site. Resumes submitted to any Trustmark Bank employee by a third-party agency and/or search firm without a valid, written search agreement signed by Trustmark, will become the sole property of Trustmark Bank. No fee will be paid if a candidate is hired for a position as a result of an unsolicited agency or search firm referral.
Teamwork and the individual contributions of our associates are recognized as the drivers of our success. At Trustmark, we are committed to preserving and advancing a diverse and inclusive workplace, where each associate, customer and shareholder is respected, valued and encouraged to share in our commitment. We make significant investments in our associates so that they may enhance their personal and professional skills, because we want each associate to grow, flourish and fulfill their career aspirations. Come onboard and join our team!
Trustmark exemplifies the strength and possibilities that come with a diverse and inclusive team. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, marital status, genetic information, pregnancy, national origin, protected veteran, disability status, or any other characteristic protected under applicable law. Trustmark is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment.
If you need assistance with any part of the application process, please send an email to careers@trustmark.com or call 866.213.1418.
Upon accepting a position with Trustmark, the following pre-employment screenings must be completed: