Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote Overview System One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC Analyst is ...
Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid - onsite and remote Overview System One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC Analyst is ...
Risk & Compliance Analyst
Boulder, CO ยท On-site +1
Knowledge of Governance, Risk, and Compliance (GRC) and Audit practices and experience with ... Exceptional analytical, investigative, and problem-solving skills * High integrity with the ability ...
Quick apply
Risk & Compliance Analyst
Boulder, CO ยท On-site +1
Knowledge of Governance, Risk, and Compliance (GRC) and Audit practices and experience with ... Exceptional analytical, investigative, and problem-solving skills * High integrity with the ability ...
AI Governance & Risk Analyst
Broomfield, CO ยท On-site
$87K - $97K/yr
The ideal candidate brings strong governance, risk, or compliance fundamentals, along with enough ... Strong analytical thinking and attention to detail - you spot the issue others miss and ask the ...
AI Governance & Risk Analyst
Broomfield, CO ยท On-site
$87K - $97K/yr
The ideal candidate brings strong governance, risk, or compliance fundamentals, along with enough ... Strong analytical thinking and attention to detail - you spot the issue others miss and ask the ...
AI Governance & Risk Analyst
Broomfield, CO ยท On-site
$87K - $97K/yr
The ideal candidate brings strong governance, risk, or compliance fundamentals, along with enough ... Strong analytical thinking and attention to detail - you spot the issue others miss and ask the ...
AI Governance & Risk Analyst
Broomfield, CO ยท On-site
$87K - $97K/yr
The ideal candidate brings strong governance, risk, or compliance fundamentals, along with enough ... Strong analytical thinking and attention to detail - you spot the issue others miss and ask the ...
Manager, Governance Risk Reporting
Arvada, CO ยท On-site
$110K - $138K/yr
... governance, risk ... and compliance program integrity, and the reporting, data analytics, and strategic-insights ...
Manager, Governance Risk Reporting
Arvada, CO ยท On-site
$110K - $138K/yr
... governance, risk ... and compliance program integrity, and the reporting, data analytics, and strategic-insights ...
Drive CMMC readiness activities across the organization, including scoping, gap analysis, control ... AI Governance, Risk & Compliance (AI-GRC) * Serve as the organizational AI compliance SME - the ...
Drive CMMC readiness activities across the organization, including scoping, gap analysis, control ... AI Governance, Risk & Compliance (AI-GRC) * Serve as the organizational AI compliance SME - the ...
Senior Manager, Governance, Risk, and Compliance
Denver, CO ยท On-site
$162 - $209/hr
If you are passionate about driving risk governance, designing automated evidence collection, and enabling employees with frictionless SaaS reviews and compliance workflows, this role is your ...
Senior Manager, Governance, Risk, and Compliance
Denver, CO ยท On-site
$162 - $209/hr
If you are passionate about driving risk governance, designing automated evidence collection, and enabling employees with frictionless SaaS reviews and compliance workflows, this role is your ...
Cyber Risk & Compliance Specialist
Greenwood Village, CO ยท On-site
$115K - $125K/yr
Administer governance, risk, and compliance platforms, including Hyperproof * Support CMMC Level 2 compliance and assessment readiness activities * Coordinate with control owners across the ...
Cyber Risk & Compliance Specialist
Greenwood Village, CO ยท On-site
$115K - $125K/yr
Administer governance, risk, and compliance platforms, including Hyperproof * Support CMMC Level 2 compliance and assessment readiness activities * Coordinate with control owners across the ...
The individual will partner closely with Product, Technology, Operations, Compliance, Risk, and ... Data Analysis and Governance Reporting: Analyze governance data, identify trends and gaps, and ...
The individual will partner closely with Product, Technology, Operations, Compliance, Risk, and ... Data Analysis and Governance Reporting: Analyze governance data, identify trends and gaps, and ...
The individual will partner closely with Product, Technology, Operations, Compliance, Risk, and ... Data Analysis and Governance Reporting: Analyze governance data, identify trends and gaps, and ...
The individual will partner closely with Product, Technology, Operations, Compliance, Risk, and ... Data Analysis and Governance Reporting: Analyze governance data, identify trends and gaps, and ...
Administer governance, risk, and compliance platforms, including Hyperproof * Support CMMC Level 2 compliance and assessment readiness activities * Coordinate with control owners across the ...
Administer governance, risk, and compliance platforms, including Hyperproof * Support CMMC Level 2 compliance and assessment readiness activities * Coordinate with control owners across the ...
Senior Compliance Engineer, AI Governance with Security Clearance
Denver, CO ยท On-site
$109K - $148K/yr
Drive CMMC readiness activities across the organization, including scoping, gap analysis, control ... AI Governance, Risk & Compliance (AI-GRC) * Serve as the organizational AI compliance SME - the ...
Senior Compliance Engineer, AI Governance with Security Clearance
Denver, CO ยท On-site
$109K - $148K/yr
Drive CMMC readiness activities across the organization, including scoping, gap analysis, control ... AI Governance, Risk & Compliance (AI-GRC) * Serve as the organizational AI compliance SME - the ...
Enterprise Risk and Compliance Analyst
Denver, CO ยท On-site
$80K - $90K/yr
The Analyst's key responsibilities include maintaining risk and control documentation, facilitating risk analyses, and tracking risk and compliance issues from identification through remediation. The ...
Enterprise Risk and Compliance Analyst
Denver, CO ยท On-site
$80K - $90K/yr
The Analyst's key responsibilities include maintaining risk and control documentation, facilitating risk analyses, and tracking risk and compliance issues from identification through remediation. The ...
The Analyst's key responsibilities include maintaining risk and control documentation, facilitating risk analyses, and tracking risk and compliance issues from identification through remediation. The ...
The Analyst's key responsibilities include maintaining risk and control documentation, facilitating risk analyses, and tracking risk and compliance issues from identification through remediation. The ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber ... analytics and dashboards. * Implementing data quality checks, lineage, metadata, and access ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber ... analytics and dashboards. * Implementing data quality checks, lineage, metadata, and access ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber ... analytics and dashboards. * Implementing data quality checks, lineage, metadata, and access ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber ... analytics and dashboards. * Implementing data quality checks, lineage, metadata, and access ...
Governance Risk and Compliance * It Security * Risk Management Additional Information Webcam interview is acceptable.
Governance Risk and Compliance * It Security * Risk Management Additional Information Webcam interview is acceptable.
Business Risk Analyst is responsible for leading enterprise technology risk management, business continuity, governance, compliance coordination, and operational resilience activities across the ...
Business Risk Analyst is responsible for leading enterprise technology risk management, business continuity, governance, compliance coordination, and operational resilience activities across the ...
The Senior Technology & Business Risk Analyst is responsible for leading enterprise technology risk management, business continuity, governance, compliance coordination, and operational resilience ...
The Senior Technology & Business Risk Analyst is responsible for leading enterprise technology risk management, business continuity, governance, compliance coordination, and operational resilience ...
Senior Analyst, Operational Risk Management (Hybrid)
Denver, CO ยท Hybrid
$80K - $95K/yr
Navigate company Governance Risk & Compliance (GRC) tool to record, update and report on various ... Data Analytics experience, particularly Power BI or advanced Excel * CPA * CIA * CISA Working ...
Senior Analyst, Operational Risk Management (Hybrid)
Denver, CO ยท Hybrid
$80K - $95K/yr
Navigate company Governance Risk & Compliance (GRC) tool to record, update and report on various ... Data Analytics experience, particularly Power BI or advanced Excel * CPA * CIA * CISA Working ...
Governance Risk And Compliance Analyst information
See Colorado salary details
$16.18 - $21
3% of jobs
$21 - $25.83
7% of jobs
$25.83 - $30.65
12% of jobs
$31.60 is the 25th percentile. Wages below this are outliers.
$30.65 - $35.48
15% of jobs
$35.48 - $40.31
13% of jobs
The median wage is $40.47 / hr.
$40.31 - $45.13
16% of jobs
$45.13 - $49.96
8% of jobs
$50.56 is the 75th percentile. Wages above this are outliers.
$49.96 - $54.78
11% of jobs
$54.78 - $59.61
6% of jobs
$59.61 - $64.43
6% of jobs
$64.43 - $69.26
3% of jobs
$16
$42
$69
How much do governance risk and compliance analyst jobs pay per hour?
What is a Governance Risk and Compliance analyst?
How does a Governance Risk and Compliance analyst typically collaborate with other departments within an organization?
What are the key skills and qualifications needed to thrive as a Governance Risk and Compliance analyst, and why are they important?
What is the difference between Governance Risk And Compliance Analyst vs Compliance Analyst?
| Aspect | Governance Risk And Compliance Analyst | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, CRISC, CISA | ISO 37001, CCEP, CCEP |
| Work Environment | Corporate, financial, or regulatory sectors | Healthcare, finance, manufacturing |
| Employer & Industry Usage | Used in organizations with complex risk management needs | Used in organizations ensuring regulatory compliance |
The Governance Risk And Compliance Analyst focuses on managing overall governance frameworks, assessing risks, and ensuring compliance with policies and regulations. In contrast, the Compliance Analyst primarily concentrates on adhering to specific laws and standards. While both roles require understanding of regulations and certifications, the Governance Risk And Compliance Analyst has a broader scope involving risk management and governance strategies.
What are popular job titles related to Governance Risk And Compliance Analyst jobs in Colorado?
For Governance Risk And Compliance Analyst jobs in Colorado, the most frequently searched job titles are:
What job categories do people searching Governance Risk And Compliance Analyst jobs in Colorado look for?
The top searched job categories for Governance Risk And Compliance Analyst jobs in Colorado are:
What cities in Colorado are hiring for Governance Risk And Compliance Analyst jobs?
Cities in Colorado with the most Governance Risk And Compliance Analyst job openings:

Full-time
Medical, Dental, Vision, Life, Retirement
Re-posted 18 days ago
Job description
Location: Lakewood, CO
Work Model: Hybrid - onsite and remote
Overview
System One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC Analyst is a member of the Governance, Risk & Compliance function within the Global Information Security Office and supports the implementation of company?wide security governance, risk management, and compliance programs. Under the direction of the GRC Functional Leader, the analyst contributes to policy development, risk oversight, and continuous improvement of the organization's security posture. The role also works closely with regional Information Security Officers (ISOs) and cross?functional teams to support the deployment of global standards and local regulatory requirements.
Responsibilities
- Support information security risk assessments for new projects, systems, and business processes.
- Assist in conducting internal control reviews (e.g., J?SOX), preparing audit materials, and coordinating responses to internal and external auditors.
- Track and follow up on remediation actions to ensure timely closure of identified risks.
- Contribute to drafting, updating, and maintaining global information security policies, standards, and procedures.
- Review relevant laws, regulations, and industry frameworks (e.g., ISO 27001, NIS2) and incorporate stakeholder feedback into documentation.
- Support the rollout and implementation of policies across regions.
- Monitor adherence to security and regulatory requirements, including ISO 27001, NIS2, and GDPR.
- Collect and organize compliance evidence, track corrective actions, and support certification and regulatory readiness efforts such as ISO 27001/42001 and NIS2 programs.
- Conduct third party security risk assessments by distributing questionnaires, analyzing responses, verifying controls, and documenting results in the GRC tracking systems.
- Identify and escalate high risk findings to the GRC Functional Leader and support follow up mitigation activities.
- Participate in the planning and implementation of security awareness programs for all associates.
- Create e-learning materials and training materials, conduct phishing email exercises, and distribute disseminated content on internal portals.
- Monitor and analyze global regulatory developments related to cybersecurity with a focus on industrial control systems (ICS), IT environments, and critical infrastructure.
- Assist in evaluating how new or updated regulations (e.g., NIS2, FDA cybersecurity expectations, industrial cybersecurity standards, or country specific critical infrastructure laws) impact company operations.
- Track emerging obligations, document requirements, and support gap assessments to ensure timely compliance.
- Assist in the preparation, maintenance, and continuous improvement of the CISO Dashboard by collecting, validating, and analyzing security metrics across the Global GRC function.
- Compile key performance indicators (KPIs) and key risk indicators (KRIs) related to compliance status, audit findings, supplier risk, incident trends, training completion, regulatory readiness, and other relevant security domains.
- Support the visualization and communication of security posture to senior leadership by ensuring data accuracy, timely updates, and clarity in reporting.
- Support the development and enforcement of governance controls for the secure use of artificial intelligence technologies across the organization.
- Identify risks related to AI systems-such as model security, algorithmic integrity, and misuse-and contribute to risk assessments and mitigation plans.
- Help evaluate third party AI tools.
- Support the development and improvement of GRC processes, tools, and documentation to enhance operational efficiency and standardization.
- Assist in preparing reports, presentations, and materials for leadership reviews, steering committees, and cross functional meetings.
- Participate in internal security projects and initiatives, including process automation, metrics development, and enhancements to governance workflows.
- Provide coordination and administrative support for security committees, working groups, and regional GRC activities.
- Perform additional duties as assigned to support the Global Information Security Office and the broader GRC program.
Requirements
- 3 to 5+ years of experience in information security, governance, risk management, compliance, IT audit, or a related discipline.
- Experience supporting security programs in global or regulated environments is a plus.
- Understanding of global and regional information security regulations (e.g., data protection laws, cybersecurity requirements) and familiarity with security frameworks such as ISO 27001.
- Knowledge of internal control frameworks (e.g., JSOX) and IT governance practices is highly desirable.
- Experience supporting audit activities is preferred.
- Experience with risk assessment methodologies, control evaluation, and vulnerability or issue management processes.
- Strong analytical and problem-solving skills, with the ability to identify risks, assess impacts, and support the development and tracking of corrective actions.
- Ability to communicate security requirements, policies, and audit findings clearly and persuasively with stakeholders across regions and business units.
- Strong coordination skills to build consensus and drive compliance.
- Industry certifications such as CISSP, CISA, CISM, ISO 27001 Lead Implementer/Auditor, or similar are preferred but not required.
- Bachelor's degree in information security, Cybersecurity, Information Systems, Computer Science, or a related field; or equivalent professional experience.
- Familiarity with governance, risk, and compliance tools (e.g., BitSight, Drata, OneTrust, Archer, or similar) for managing risks, audits, and compliance workflows.
- Working knowledge of cybersecurity concepts such as identity and access management, endpoint protection, vulnerability management, cloud security, and secure system design.
- Experience supporting cross-functional security or compliance initiatives, including requirements gathering, documentation, and progress tracking.
- Ability to interpret risk metrics, compliance data, and audit results.
- Experience with dashboards, KPI/KRI reporting, or data visualization tools is a plus.
- Awareness of emerging cybersecurity regulations (e.g., NIS2, AI governance frameworks, critical infrastructure rules) and their potential impact on enterprise operations.
System One, and its subsidiaries including Joulรฉ and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.
System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.
#M-1
#LI-SG1
Ref: #558-Scientific
About System One
Sourced by ZipRecruiter
System One helps employers get work done more efficiently and economically without compromising quality. Over our 35+ year history, we've helped connect thousands of talented people with innovative companies. The excitement of a perfect fit motivates us every single day.
Industry
Business consulting services and recruiting and staffing services
Company size
5,001 - 10,000 Employees
Headquarters location
Pittsburgh, PA, US