2

Entry Level Risk Compliance Analyst Jobs in Chicago, IL

Performs periodic reviews and audits of products and services to validate compliance with high risk regulations or detect regulatory violations, weak controls or other potential areas of exposure.

You'll collaborate closely with teams across Compliance, Trading, Technology, Risk, and Operations ... Analyzing market and trading data to identify unusual trading patterns and assessing potential ...

You'll collaborate closely with teams across Compliance, Trading, Technology, Risk, and Operations ... Analyzing market and trading data to identify unusual trading patterns and assessing potential ...

Governance & Risk Analyst

Chicago, IL · On-site

$85K - $95K/yr

The GRC Analyst will support the organization's Governance, Risk & Compliance function with a primary focus on Third-Party Risk Management (TPRM) and Vendor Risk Assessments (VRA). This role is ...

You will be partnering closely with Compliance, Legal, Security, Product and other key stakeholders ... You are highly analytical and capable of assessing complex information to identify potential and ...

... risk assessment, and reporting activities. • Assist with updates to the compliance plan and ... Experience with use of analytics tools (e.g., Tableau, PowerBI, Qlik), systems and structures that ...

... risk assessment, and reporting activities. · Assist with updates to the compliance plan and ... Experience with use of analytics tools (e.g., Tableau, PowerBI, Qlik), systems and structures that ...

next page

Showing results 1-20

Entry Level Risk Compliance Analyst information

See Chicago, IL salary details

$15

$41

$67

How much do entry level risk compliance analyst jobs pay per hour?

As of Jul 26, 2026, the average hourly pay for entry level risk compliance analyst in Chicago, IL is $41.71, according to ZipRecruiter salary data. Most workers in this role earn between $30.72 and $50.77 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an Entry Level Risk Compliance Analyst, and why are they important?

To thrive as an Entry Level Risk Compliance Analyst, you generally need a bachelor’s degree in finance, business, or a related field, along with strong analytical and problem-solving skills. Familiarity with risk management software, regulatory databases, and proficiency in Microsoft Excel are commonly expected, and relevant certifications such as CRCM or CAMS can be advantageous. Attention to detail, effective communication, and a proactive approach to learning are vital soft skills for this position. These competencies are essential to accurately assess risks, ensure regulatory compliance, and support organizational integrity in a dynamic regulatory environment.

Is a grc analyst a good entry level job?

A risk compliance analyst role is often suitable for entry-level candidates interested in understanding regulatory frameworks, risk management, and compliance processes. It typically requires strong attention to detail, analytical skills, and familiarity with tools like audit software or compliance databases. This position can provide a solid foundation for a career in risk management or regulatory fields.

How to become a risk analyst with no experience?

To become an entry-level risk compliance analyst with no experience, focus on gaining relevant knowledge through online courses or certifications in risk management, compliance, or related fields. Developing skills in data analysis, attention to detail, and understanding regulatory frameworks can improve your prospects, and internships or volunteer opportunities can provide practical experience.

How to become a compliance analyst with no experience?

To become an entry-level risk compliance analyst with no experience, focus on gaining foundational knowledge through online courses or certifications in compliance, risk management, or related fields. Developing skills in data analysis, attention to detail, and understanding regulatory frameworks can improve your prospects, and internships or volunteer opportunities can provide practical experience to strengthen your resume.

How to start a career in risk and compliance?

To start a career as an Entry Level Risk Compliance Analyst, gain a bachelor's degree in finance, business, or a related field, and develop knowledge of regulations and risk management principles. Internships or entry-level positions in compliance or audit can provide practical experience, and obtaining certifications like Certified Regulatory Compliance Manager (CRCM) or Certified Risk and Compliance Management Professional (CRCMP) can enhance prospects. Strong analytical skills, attention to detail, and familiarity with compliance tools and software are also beneficial.

What is the difference between Entry Level Risk Compliance Analyst vs Entry Level Compliance Associate?

AspectEntry Level Risk Compliance AnalystEntry Level Compliance Associate
CertificationsBasic compliance or risk certifications (e.g., CRCM, CAMS)Similar certifications often required
Work EnvironmentFinancial institutions, corporate compliance departmentsFinancial, healthcare, or corporate sectors
Employer UsageRisk management and compliance teamsCompliance departments across industries
Search IntentComparing entry-level risk and compliance rolesEntry-level compliance roles in various sectors

Both roles are entry-level positions focused on ensuring organizational adherence to regulations. The Risk Compliance Analyst emphasizes risk assessment and mitigation, often within financial institutions, while the Compliance Associate may handle broader compliance tasks across industries. Understanding these differences helps candidates target the right roles based on their interests and certifications.

What typical challenges do Entry Level Risk Compliance Analysts face when adapting to regulatory changes?

Entry Level Risk Compliance Analysts often encounter the challenge of quickly understanding and implementing new regulatory requirements. Regulations can change frequently, and analysts must stay informed and ensure that company policies adapt accordingly. This requires strong attention to detail, effective communication with senior team members, and sometimes working under tight deadlines to update documentation or processes. Over time, analysts develop valuable skills in interpreting regulations and collaborating with cross-functional teams to maintain compliance.

What does an Entry Level Risk Compliance Analyst do?

An Entry Level Risk Compliance Analyst assists in identifying, assessing, and mitigating risks that could impact an organization's compliance with laws, regulations, and internal policies. They typically help review company procedures, monitor transactions, and prepare reports to ensure adherence to regulatory requirements. Analysts in this role work under the supervision of senior staff and often collaborate with other departments to support audits and implement risk management strategies. This position serves as a starting point for those interested in compliance, risk management, or regulatory affairs careers.
What are the most commonly searched types of Risk Compliance Analyst jobs in Chicago, IL? The most popular types of Risk Compliance Analyst jobs in Chicago, IL are:
What are popular job titles related to Entry Level Risk Compliance Analyst jobs in Chicago, IL? For Entry Level Risk Compliance Analyst jobs in Chicago, IL, the most frequently searched job titles are:
What job categories do people searching Entry Level Risk Compliance Analyst jobs in Chicago, IL look for? The top searched job categories for Entry Level Risk Compliance Analyst jobs in Chicago, IL are:
Infographic showing various Entry Level Risk Compliance Analyst job openings in Chicago, IL as of July 2026, with employment types broken down into 100% Full Time. Highlights an 86% In-person, and 14% Hybrid job distribution, with an average salary of $86,748 per year, or $41.7 per hour.
IT Risk & Compliance Analyst

IT Risk & Compliance Analyst

NORC at the University of Chicago

Chicago, IL • On-site

$96K - $97K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 6 days ago


Job description

IT Risk & Compliance Analyst
Job no: 503926 Work type: Regular Full-Time Location: Chicago - 300 E Randolph St Capability Area: IT DSS Security and Compliance
JOB SUMMARY:
NORC at the University of Chicago is seeking an IT Risk & Compliance Analyst to join our DSS Security & Compliance team. This role is primarily responsible for supporting NORC's FedRAMP Continuous Monitoring Program, ensuring the ongoing effectiveness of security controls and maintaining compliance with FedRAMP requirements.
Working closely with engineering, cloud operations, infrastructure, development, and business teams, the analyst will help assess security control effectiveness, coordinate compliance activities, collect and validate evidence, track remediation efforts, and support ongoing audit readiness. In addition to FedRAMP, the role supports NORC's enterprise governance, risk, and compliance (GRC) program across NIST SP 800-53 Rev. 5, CMMC, ISO 27001, SOC 2, HIPAA, and customer-specific security requirements.
The successful candidate will contribute to the continued maturity of NORC's security compliance program by improving continuous monitoring processes, strengthening governance practices, developing compliance metrics, and identifying opportunities to automate and streamline compliance activities.
Citizenship: U.S. Citizenship required due to federal project requirements.
DEPARTMENT: Digital Data Services & Solutions (DDS)
NORC's Digital Services & Solutions (DSS) organization provides enterprise technology services that enable research, innovation, and client success. The Security & Compliance team partners across the organization to strengthen cybersecurity, reduce organizational risk, and maintain compliance with government, client, and industry security requirements.
RESPONSIBILITIES:
  • Serve as a primary contributor to NORC's FedRAMP Continuous Monitoring Program, coordinating recurring activities required to maintain FedRAMP authorization.
  • Coordinate monthly, quarterly, annual, and ongoing FedRAMP Continuous Monitoring activities, including evidence collection, security control assessments, vulnerability management, POA&M management, metrics reporting, and security documentation updates.
  • Monitor the effectiveness of administrative, technical, and operational security controls across cloud and enterprise environments.
  • Partner with engineering, cloud, infrastructure, and operations teams to validate security controls, resolve compliance findings, and improve overall security posture.
  • Track security findings, vulnerabilities, and remediation efforts to ensure compliance with FedRAMP and other applicable security requirements.
  • Develop, review, validate, and maintain security documentation, including policies, standards, procedures, System Security Plans (SSPs), control implementation statements, and supporting compliance evidence.
  • Support internal and external audits by coordinating evidence requests, responding to assessor questions, and managing remediation activities.
  • Assist in developing compliance dashboards, metrics, and executive reporting that measure security posture, control effectiveness, and continuous monitoring performance.
  • Support governance and compliance initiatives across NIST SP 800-53 Rev. 5, CMMC, ISO 27001, SOC 2, HIPAA, and customer-specific requirements.
  • Identify opportunities to improve compliance processes through automation, standardization, and continuous improvement.
  • Provide guidance to technical and business teams regarding security requirements, compliance obligations, and cybersecurity best practices.
  • Support Authorization to Operate (ATO) activities, annual assessments, and significant system changes as needed.

REQUIRED SKILLS:
Education & Certifications
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent professional experience).
  • CAP, CGRC, CISSP, CISM, CISA or other cybersecurity certification preferred.

1. FedRAMP Continuous Monitoring & Compliance (Primary Focus)
  • Minimum of two years of experience supporting cybersecurity, governance, risk, or compliance programs.
  • Experience supporting or maintaining a FedRAMP Authorized or FedRAMP Ready cloud environment is strongly preferred.
  • Knowledge of FedRAMP Continuous Monitoring requirements, including monthly, quarterly, annual, and significant change activities.
  • Experience coordinating evidence collection, security control assessments, vulnerability management, remediation tracking, POA&M management, and compliance reporting.
  • Experience monitoring security control effectiveness and partnering with technical teams to resolve compliance findings.
  • Experience supporting internal or external assessments and audit activities.
  • Familiarity with FedRAMP templates, documentation, assessment processes, and security reporting.
  • Familiarity with vulnerability management platforms, cloud security technologies, configuration compliance tools, endpoint security, and security monitoring solutions.

2. Security Governance & Compliance
  • Strong understanding of cybersecurity governance principles and security compliance frameworks including NIST SP 800-53 Rev. 5, CMMC, ISO 27001, SOC 2, HIPAA, and related industry standards.
  • Experience developing, reviewing, or maintaining security documentation including policies, standards, procedures, security plans, control documentation, and compliance evidence.
  • Experience supporting governance processes that improve compliance consistency, audit readiness, and operational maturity.
  • Experience using Governance, Risk, and Compliance (GRC) platforms such as CSAM, ServiceNow GRC, Archer, or similar solutions.
  • Experience supporting internal and external audits and working with customers, assessors, auditors, or Third-Party Assessment Organizations (3PAOs) is preferred.

3. Risk Management
  • Experience conducting or supporting security risk assessments, security impact analyses, and control gap assessments.
  • Ability to identify security risks, assess business impact, and recommend practical remediation strategies.
  • Experience reviewing vulnerability findings and supporting remediation activities.
  • Understanding of enterprise risk management methodologies and cybersecurity risk management principles.

4. Communication & Collaboration
  • Strong written and verbal communication skills.
  • Ability to communicate technical security concepts to both technical and non-technical audiences.
  • Experience collaborating with engineering, infrastructure, cloud operations, software development, business stakeholders, and leadership teams.
  • Strong organizational skills with the ability to manage multiple priorities in a fast-paced, highly regulated environment.
  • Experience coordinating cross-functional initiatives and driving remediation efforts to completion.

5. Authorization to Operate (ATO) Support
  • Familiarity with the Authorization to Operate (ATO) process, NIST Risk Management Framework (RMF), FISMA, and FedRAMP authorization processes.
  • Experience assisting with System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), or related authorization documentation.
  • Experience supporting annual assessments, ongoing authorization activities, or significant system changes is preferred.

SALARY AND BENEFITS:
The pay range for this position is $77,000 - $95,000.
This position is classified as regular. Regular staff are eligible for NORC's comprehensive benefits program. Benefits include, but are not limited to:
  • Generously subsidized health insurance, effective on the first day of employment
  • Dental and vision insurance
  • A defined contribution retirement program, along with a separate voluntary 403(b) retirement program
  • Group life insurance, long-term and short-term disability insurance
  • Benefits that promote work/life balance, including generous paid time off, holidays; paid parental leave, bereavement leave, tuition assistance, and an Employee Assistance Program (EAP).

NORC is committed to equity and transparency in its pay practices. We publish salary ranges and benefit information for every job. The listed hiring range reflects what we, in good faith, expect to pay at the time of posting, though actual compensation may vary and may be adjusted over time. A candidate's placement within the range depends on factors such as competencies, education, qualifications, experience, skills, performance, and organizational needs.
WHAT WE DO:
NORC at the University of Chicago is an objective, non-partisan research institution that delivers reliable data and rigorous analysis to guide critical programmatic, business, and policy decisions. Since 1941, our teams have conducted groundbreaking studies, created and applied innovative methods and tools, and advanced principles of scientific integrity and collaboration. Today, government, corporate, and nonprofit clients around the world partner with us to transform increasingly complex information into useful knowledge.
WHO WE ARE:
For over 80 years, NORC has evolved in many ways, moving the needle with research methods, technical applications and groundbreaking research findings. But our tradition of excellence, passion for innovation, and commitment to collegiality have remained constant components of who we are as a brand, and who each of us is as a member of the NORC team. With world-class benefits, a business casual environment, and an emphasis on continuous learning, NORC is a place where people join for the stellar research and analysis work for which we're known, and stay for the relationships they form with their colleagues who take pride in the impact their work is making on a global scale.
EEO STATEMENT:
NORC is an equal opportunity employer. NORC evaluates qualified applicants without regard to race, color, religion, sex, gender, national origin, disability, status as a protected veteran, sexual orientation, and other legally protected characteristics.
Advertised: July 20, 2026 Central Daylight Time Applications close:
Whatsapp Facebook LinkedIn Email App