Skip to content

Open nowPosted 26 days ago

Entry Level GRC Analyst

hotman-group-llc3 open roles

Where
Fort Worth, Texas, United States, Remote
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowEntry Level GRC Analysthotman-group-llc · Fort Worth, Texas, United States, Remote
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on hotman-group-llc's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.2%30 days
This job: posted 26 days ago

The posting

About the Role

Hotman Group is a boutique cybersecurity and GRC consulting firm doing meaningful work for clients who need GRC done right ranging from Fortune 1000 companies to high-growth startups. We are looking for a driven, detail-obsessed early-career professional who is ready to apply your professional foundation to real GRC consulting work and contribute to real client work from day one.

This is a full-time, remote, contract-to-hire position. Top performers move into permanent roles within 6 months.

What You Will Do

As an Entry Level GRC Analyst at Hotman Group you will work side by side with senior team members and partners to help our clients strengthen their cybersecurity and compliance programs. You will:

  • Assess and improve client security and IT controls
  • Develop policies, processes, and risk assessments aligned to top frameworks including NIST, ISO 27001, and SOC 2
  • Crosswalk and harmonize controls across multiple compliance frameworks
  • Document security requirements, support control implementation, and help track remediation progress
  • Build risk registers, support assessments, and monitor remediation progress
  • Work hands-on with GRC tools and contribute to solutions for complex client challenges
  • Translate technical and regulatory requirements into clear, actionable steps for our clients
  • Participate in peer review of deliverables before they go to clients — your work will be reviewed and you will review others

You will touch every aspect of cybersecurity and GRC work across multiple industries. Every engagement brings new challenges and new opportunities to grow.

What You Bring

  • A Bachelor's or Graduate degree in Cybersecurity, Information Systems, or a related field
  • 1 to 2 years of professional work experience -- this does not need to be in GRC or cybersecurity specifically, but it does need to be in a professional office or corporate environment. We are looking for candidates who have demonstrated reliability, communication, and accountability in a workplace setting
  • Solid understanding of fundamental security and IT concepts including access controls, data retention, and change management
  • Familiarity with major security and privacy frameworks including ISO, NIST, SOC 2, and HIPAA
  • Strong critical thinking, organization, and communication skills
  • Ability to balance multiple projects and deadlines with exceptional follow-through
  • Technical aptitude -- you are curious, you learn fast, and you do not shy away from new tools
  • A genuine interest in cybersecurity and a commitment to helping organizations build stronger, safer programs
  • A solutions-first attitude -- you show up with curiosity and energy and you are not afraid to dive into the work
  • The ability to think critically and execute with precision in a fast-paced, high-trust, low-ego environment
  • A high level of ownership and accountability -- you communicate proactively and follow through without being managed closely
  • A default toward communication — you keep the team informed, you acknowledge quickly, and you do not go dark on a deliverable or a client

Active pursuit of a relevant certification (Security+, CC, SSCP) is strongly preferred. If you are not currently studying for one, be prepared to explain why.

Requirements

  • Located in the USA with permanent work authorization (no sponsorship of any kind now or in the future)
  • Able to pass a background check
  • A private, dedicated workspace with a door — client calls and confidential work require it

Our Hiring Process

Our process is designed to be straightforward but thorough. In addition to a written questionnaire and video responses, finalists will complete a practical skills assessment before advancing to a panel interview with our delivery team. The assessment is designed to reflect real GRC work. If you are serious about building a career in this field, it is your opportunity to show us what you can do.

Why Hotman Group

At Hotman Group we are not just another consulting firm. You will work alongside people who care about the craft and push each other to do better. No politics, no silos, no hierarchy between you and the people making decisions.

You will touch more GRC frameworks, more industries, and more client situations in one year here than most practitioners see in five. You will grow because the work demands it.

The clients you serve will actually notice your work. You are not a number on a headcount. Your name is on the deliverable.

If you want to do real GRC work, get better at it every day, and work with a team that holds itself to a high standard — this is the place.

No phone calls or emails please.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against hotman-group-llc's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on hotman-group-llc's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    hotman-group-llc's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.