The Senior Manager, Governance Risk & Compliance (GRC) will report directly to the Chief Information Security Officer (CISO) and own the build-out of the firm's governance, risk, and compliance ...
The Senior Manager, Governance Risk & Compliance (GRC) will report directly to the Chief Information Security Officer (CISO) and own the build-out of the firm's governance, risk, and compliance ...
The Governance, Risk & Compliance Analyst, Specialist is a key member of Vanguard's Global Enterprise Security's Governance, Risk, Compliance (GRC) and Strategic Operations team. This position ...
The Governance, Risk & Compliance Analyst, Specialist is a key member of Vanguard's Global Enterprise Security's Governance, Risk, Compliance (GRC) and Strategic Operations team. This position ...
The Director of Governance, Risk & Compliance (GRC) is responsible for building and operating an AI-enabled, modern cybersecurity GRC program that transforms governance from a compliance-focused ...
The Director of Governance, Risk & Compliance (GRC) is responsible for building and operating an AI-enabled, modern cybersecurity GRC program that transforms governance from a compliance-focused ...
The Director of Governance, Risk & Compliance (GRC) is responsible for building and operating an AI-enabled, modern cybersecurity GRC program that transforms governance from a compliance-focused ...
The Director of Governance, Risk & Compliance (GRC) is responsible for building and operating an AI-enabled, modern cybersecurity GRC program that transforms governance from a compliance-focused ...
Governance, Risk & Compliance Manager
Decatur, GA ยท Remote
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
Governance, Risk & Compliance Manager
Decatur, GA ยท Remote
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
Governance, Risk & Compliance Manager
Dallas, TX ยท Remote
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
Governance, Risk & Compliance Manager
Dallas, TX ยท Remote
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
KEY RESPONSIBILITIES Risk Identification & Monitoring * Assist in identifying, assessing, and ... Governance & Compliance Support * Help draft, organize, and maintain policies, standards, and ...
KEY RESPONSIBILITIES Risk Identification & Monitoring * Assist in identifying, assessing, and ... Governance & Compliance Support * Help draft, organize, and maintain policies, standards, and ...
Governance, Risk & Compliance Manager
Winter Park, FL ยท Remote
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
Governance, Risk & Compliance Manager
Winter Park, FL ยท Remote
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
Junior Governance, Risk & Compliance Analyst
Davenport, IA ยท On-site
$20/hr
KEY RESPONSIBILITIES Risk Identification & Monitoring * Assist in identifying, assessing, and ... Governance & Compliance Support * Help draft, organize, and maintain policies, standards, and ...
Junior Governance, Risk & Compliance Analyst
Davenport, IA ยท On-site
$20/hr
KEY RESPONSIBILITIES Risk Identification & Monitoring * Assist in identifying, assessing, and ... Governance & Compliance Support * Help draft, organize, and maintain policies, standards, and ...
Governance, Risk & Compliance Manager
Alpharetta, GA ยท On-site
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
Governance, Risk & Compliance Manager
Alpharetta, GA ยท On-site
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
Governance, Risk & Compliance Manager
Orlando, FL ยท Remote
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
Governance, Risk & Compliance Manager
Orlando, FL ยท Remote
$70K - $100K/yr
The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align ... * Assist with risk assessments; operationalize mitigation strategies and validate controls Data ...
As part of the OCIO, the IT Governance, Risk, and Compliance (GRC) team's mission is to drive IT risk management and compliance strategy, capabilities, and deliverables across the organization. Our ...
As part of the OCIO, the IT Governance, Risk, and Compliance (GRC) team's mission is to drive IT risk management and compliance strategy, capabilities, and deliverables across the organization. Our ...
The company is seeking a Governance, Risk, and Compliance (GRC) Security Engineer to ensure compliance with regulatory and ethical standards while collaborating with cross-functional teams to ...
The company is seeking a Governance, Risk, and Compliance (GRC) Security Engineer to ensure compliance with regulatory and ethical standards while collaborating with cross-functional teams to ...
Senior Analyst, Governance, Risk & Compliance
$99K - $139.50K/yr
... * Assist with other compliance team projects as required to meet evolving regulatory and ... risk data collection, monitoring, and governance procedures. * Develop and maintain policies and ...
Senior Analyst, Governance, Risk & Compliance
$99K - $139.50K/yr
... * Assist with other compliance team projects as required to meet evolving regulatory and ... risk data collection, monitoring, and governance procedures. * Develop and maintain policies and ...
Athene is seeking a Sr. Governance, Risk & Compliance (GRC) Analyst to help strengthen and evolve enterprise technology risk management, cybersecurity governance, and regulatory compliance across the ...
Athene is seeking a Sr. Governance, Risk & Compliance (GRC) Analyst to help strengthen and evolve enterprise technology risk management, cybersecurity governance, and regulatory compliance across the ...
Athene is seeking a Sr. Governance, Risk & Compliance (GRC) Analyst to help strengthen and evolve enterprise technology risk management, cybersecurity governance, and regulatory compliance across the ...
Athene is seeking a Sr. Governance, Risk & Compliance (GRC) Analyst to help strengthen and evolve enterprise technology risk management, cybersecurity governance, and regulatory compliance across the ...
Security Engineer - Governance Risk Compliance
$100K - $228K/yr
We are seeking an experienced and strategic Governance, Risk, and Compliance (GRC) team member as we expand into government and public sector applications of AI. This critical role will ensure that ...
Security Engineer - Governance Risk Compliance
$100K - $228K/yr
We are seeking an experienced and strategic Governance, Risk, and Compliance (GRC) team member as we expand into government and public sector applications of AI. This critical role will ensure that ...
They are seeking an experienced Governance, Risk, and Compliance (GRC) team member to ensure compliance with regulatory and ethical standards while supporting AI development and deployment efforts.
They are seeking an experienced Governance, Risk, and Compliance (GRC) team member to ensure compliance with regulatory and ethical standards while supporting AI development and deployment efforts.
We are seeking an experienced and strategic Governance, Risk, and Compliance (GRC) team member as we expand into government and public sector applications of AI. This critical role will ensure that ...
We are seeking an experienced and strategic Governance, Risk, and Compliance (GRC) team member as we expand into government and public sector applications of AI. This critical role will ensure that ...
We are seeking an experienced and strategic Governance, Risk, and Compliance (GRC) team member as we expand into government and public sector applications of AI. This critical role will ensure that ...
Quick apply
We are seeking an experienced and strategic Governance, Risk, and Compliance (GRC) team member as we expand into government and public sector applications of AI. This critical role will ensure that ...
Assistant Governance Risk Compliance information
See salary details
$27K - $32.2K
8% of jobs
$35.9K is the 25th percentile. Wages below this are outliers.
$32.2K - $37.4K
23% of jobs
$37.4K - $42.5K
12% of jobs
The median wage is $44.3K / yr.
$42.5K - $47.7K
20% of jobs
$47.7K - $52.9K
11% of jobs
$53.8K is the 75th percentile. Wages above this are outliers.
$52.9K - $58.1K
7% of jobs
$58.1K - $63.3K
5% of jobs
$63.3K - $68.5K
4% of jobs
$68.5K - $73.6K
3% of jobs
$73.6K - $78.8K
4% of jobs
$78.8K - $84K
2% of jobs
$27K
$49.5K
$84K
How much do assistant governance risk compliance jobs pay per year?
What is the difference between Assistant Governance Risk Compliance vs Compliance Analyst?
| Aspect | Assistant Governance Risk Compliance | Compliance Analyst |
|---|---|---|
| Certifications | Certifications like CCEP, CRCM, or ISO often preferred | Similar certifications such as CCEP, CRCM, or ISO |
| Work Environment | Corporate, regulated industries, compliance departments | Corporate, financial, healthcare, or manufacturing sectors |
| Employer & Industry Usage | Used in organizations with governance, risk, and compliance functions | Common in compliance departments focusing on regulatory adherence |
| Search & Comparison Intent | Often compared for entry-level or supporting compliance roles | Compared for analytical and regulatory compliance positions |
The main difference is that an Assistant Governance Risk Compliance supports broader governance and risk functions, while a Compliance Analyst focuses more on analyzing and ensuring adherence to specific regulations. Both roles require similar certifications and are found in regulated industries, but their focus areas and responsibilities differ slightly.
- Overnight Governance Risk Compliance
- Governance Risk Compliance Manager
- Governance Risk Compliance Consultant
- Weekend Governance Risk Compliance
- Governance Risk And Compliance
- Cybersecurity Governance Risk Compliance
- Freelance Governance Risk Compliance
- Remote Technology Risk Management
- Contractual Archer Grc
- Chief Risk Compliance Officer

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 17 days ago
Job description
We encourage you to apply thoughtfully by selecting one position that best matches your qualifications and interests. You may submit up to two active applications at a time. Please consider your location choice carefully-we recommend applying where you envision building your future.
The Firm
Unlock the Boundless Horizons of Tax, Valuation, and Business Expertise with Andersen!
At Andersen, we don't just offer a career; we provide a thrilling expedition into the world of Tax, Valuation, and Business Advisory. We stand as a trailblazing force with the most extensive global presence among professional services organizations. You'll embark on a journey that transcends the ordinary, working with extraordinary clients spanning every industry, regardless of their size, because at Andersen, we are free from independence-related constraints that may hinder other firms.
But that's not all; we're more than just a company; we're a community that thrives on diversity, inclusivity, and collaboration. Our focus is on your development helping you flourish as leaders, colleagues and trusted advisors. We equip you with world-class education, immersive experiences, and invaluable mentorship to support your rise to the top.
We believe in your potential and invest in it to build a legacy that extends beyond your wildest dreams. Bring your ambition, your entrepreneurial spirit, and your burning desire to be the best. Your future mirrors the limitless possibilities of our future. Join us at Andersen, and together, let's write the story of your success!
The Role
Andersen is scaling its information security function, and this is a critical hire for the program's next phase of maturity. The Senior Manager, Governance Risk & Compliance (GRC) will report directly to the Chief Information Security Officer (CISO) and own the build-out of the firm's governance, risk, and compliance program. The immediate mandate is significant - lead simultaneous SOC 2 Type II and ISO 27001 certification initiatives while establishing the policy and risk management infrastructure the firm will rely on long-term. This is a program-building role, and the right candidate will be energized by the opportunity to design systems rather than maintain them.
The Senior Manager, Governance Risk & Compliance (GRC) can expect to:
SOC 2 Type II & ISO 27001 Certification
- Lead end-to-end certification programs for SOC 2 Type II and ISO 27001 simultaneously, from scoping through audit closure
- Define control environments, manage evidence collection, and serve as the primary liaison with external auditors and certification bodies
- Administer the firm's compliance automation platform and maintain continuous control monitoring and audit readiness
- Manage both programs through their full lifecycle, including observation periods, annual renewals, surveillance audits, and ISO recertification cycles
Policy & Risk Management
- Develop and maintain a comprehensive information security policy suite aligned to SOC 2, ISO 27001, and applicable regulatory requirements, with defined processes for ownership, annual review, and exception management
- Build and maintain an enterprise risk register using structured methodology (e.g., ISO 27005, NIST CSF) and lead annual and ad hoc risk assessments
- Communicate risk posture and policy compliance to the CISO and, where appropriate, to firm leadership and clients
- Develop and maintain an AI governance policy covering acceptable use of AI tools, agentic system deployments, and citizen developer activity, ensuring alignment with the firm's risk appetite and applicable regulatory requirements
Privacy & Regulatory Compliance
- Serve as the firm's subject matter expert on GDPR, CCPA, and other applicable privacy and data protection requirements
- Monitor evolving regulatory obligations globally and translate them into actionable compliance programs
- Partner with Legal and Operations on data subject requests, privacy impact assessments, and breach notification procedures
- Advise the CISO on emerging compliance obligations relevant to a global professional services firm
Third-Party Risk & Client Due Diligence
- Design and operate the firm's third-party risk management program, including vendor tiering, security assessments, and remediation tracking
- Manage the firm's response program for client security questionnaires and due diligence requests
- Maintain a library of certification-aligned response language and track contractual security commitments across vendors and clients
Security Awareness & Training
- Own the firm's security awareness program, including curriculum design, platform administration, and completion tracking
- Develop role-specific content for high-risk populations and keep training current against the evolving threat landscape
- Develop and maintain training content addressing AI-related threats and responsible AI use, including risks from unsanctioned AI tools, citizen developer activity, and AI agents operating with access to firm data and systems
- Track and report program effectiveness to the CISO on a regular cadence
Team & Stakeholder Leadership
- Build collaborative relationships across Legal, IT, Operations, Audit, and client-facing teams to embed security and compliance into firm workflows
- Represent the information security function in client-facing conversations regarding the firm's security posture
The Requirements
- 8-12 years of progressive experience in information security GRC, with a demonstrated record of building programs, not just maintaining them
- Bachelor's degree in Information Security, Computer Science, Risk Analysis, or a related field
- Proven track record achieving and sustaining both SOC 2 Type II and ISO 27001 certifications, including scoping, control design, ISMS development, and auditor relationship management
- Operational knowledge of GDPR and CCPA, including hands-on implementation of compliance obligations
- Experience designing and operating third-party risk management programs
- Experience managing client security due diligence and responding to security questionnaires at scale
- Ability to build defensible, auditable policy frameworks and maintain structured enterprise risk registers
- Proficiency with GRC or compliance automation platforms
- Strong written and verbal communication skills, with the ability to translate technical risk into business language for non-technical audiences
- Understanding of the security and governance risks introduced by AI systems, including large language models, AI agents, and citizen developer platforms, and the ability to translate those risks into policy, training content, and risk register entries
Preferred
- Relevant certification such as CISA, CISM, or CRISC
- Background in professional services or consulting, where security posture is tied directly to client trust
- Familiarity with international privacy frameworks such as NDPA or DPDPA
- Working knowledge of the NIST Cybersecurity Framework as a risk management overlay
- Familiarity with AI governance frameworks such as NIST AI RMF, the EU AI Act, or ISO 42001, and awareness of emerging regulatory obligations affecting AI use in global professional services environments
- Experience managing or mentoring junior GRC staff
Compensation and Benefits
Our firm offers competitive base compensation, benefits package, and a discretionary employee bonus program for eligible employees based on individual and firm performance metrics per the defined program guidelines. For individuals hired to work in the United States, the expected salary range for this role is $193,000 to $220,000; the actual salary offer can vary based upon employee qualifications.
Benefits: Employees (and their families) are covered by medical, dental, vision, and basic life insurance. Employees are able to enroll in our firm's 401(k) plan upon hire. We offer paid time off, beginning at 160 hours annually and provides twelve paid holidays throughout the calendar year. For a full listing of benefit offerings, please visit https://www.andersen.com/careers/faqs.
Compensation: In addition to competitive base compensation, our firm offers annual discretionary bonuses based on firm and individual performance, a discretionary long-term cash incentive program, and other forms of discretionary compensation that would be offered to the hired applicant in addition to their established salary range scale.
Applicants must be currently authorized to work in the United States on a full-time basis upon hire. Andersen will not consider candidates for this position who require sponsorship for employment visa status now or in the future (e.g., H-1B status).
Equal Opportunity
Andersen Tax is an equal opportunity employer committed to fostering an inclusive workplace. We evaluate all applicants and employees without regard to race, color, religion, national origin, ancestry, sex (including pregnancy, childbirth, and related medical conditions), sexual orientation, gender identity or expression, age, disability, genetic information, marital status, military or veteran status, or any other characteristic protected under applicable federal, state, or local law. All qualified applicants, including those with criminal histories, will be considered in a manner consistent with applicable law. We provide reasonable accommodations to qualified individuals with disabilities and to individuals with sincerely held religious beliefs, practices, or observances as required by law.