1

Governance Risk And Compliance Analyst Jobs in Raleigh, NC

Job Summary - Risk Analysis (Raleigh, NC) - Identify, assess, and mitigate risks across business ... governance, risk, and compliance (GRC) initiatives, policy reviews, audit readiness, issue ...

The Opportunity: This Compliance Analyst position assists the Marketing Review (MR) team with ... ACA Group is the leading governance, risk, and compliance (GRC) advisor in financial services. We ...

Risk Analysis

Raleigh, NC ยท On-site

$100K - $120K/yr

Risk Analysis Must Have Technical/Functional Skills โ€ข Risk identification, assessment, mitigation ... governance, risk, and compliance (GRC) initiatives, policy adherence reviews, audit readiness ...

The Opportunity: This Compliance Analyst position assists the Marketing Review (MR) team with ... ACA Group is the leading governance, risk, and compliance (GRC) advisor in financial services. We ...

next page

Showing results 1-20

Governance Risk And Compliance Analyst information

See Raleigh, NC salary details

$14

$39

$64

How much do governance risk and compliance analyst jobs pay per hour?

As of Aug 14, 2026, the average hourly pay for governance risk and compliance analyst in Raleigh, NC is $39.35, according to ZipRecruiter salary data. Most workers in this role earn between $28.99 and $47.88 per hour, depending on experience, location, and employer.

What is the difference between Governance Risk And Compliance Analyst vs Compliance Analyst?

AspectGovernance Risk And Compliance AnalystCompliance Analyst
CertificationsISO 31000, CRISC, CISAISO 37001, CCEP, CCEP
Work EnvironmentCorporate, financial, or regulatory sectorsHealthcare, finance, manufacturing
Employer & Industry UsageUsed in organizations with complex risk management needsUsed in organizations ensuring regulatory compliance

The Governance Risk And Compliance Analyst focuses on managing overall governance frameworks, assessing risks, and ensuring compliance with policies and regulations. In contrast, the Compliance Analyst primarily concentrates on adhering to specific laws and standards. While both roles require understanding of regulations and certifications, the Governance Risk And Compliance Analyst has a broader scope involving risk management and governance strategies.

What is a Governance Risk and Compliance analyst?

A Governance, Risk, and Compliance (GRC) Analyst is a professional responsible for helping organizations manage risks, ensure compliance with laws and regulations, and implement governance frameworks. They assess internal processes, identify potential risks, and recommend strategies to mitigate those risks. GRC Analysts also develop and monitor policies to ensure that business operations align with regulatory requirements and industry standards. Their work is essential in protecting an organization from financial, legal, and reputational harm.

What are the key skills and qualifications needed to thrive as a Governance Risk and Compliance analyst, and why are they important?

To thrive as a Governance Risk and Compliance (GRC) Analyst, you need a solid understanding of risk management frameworks, regulatory requirements, and compliance standards, often supported by a degree in information security, business, or a related field. Familiarity with GRC software platforms, risk assessment tools, and certifications such as CISA or CRISC is typically required. Exceptional analytical skills, attention to detail, and strong communication abilities help you effectively interpret regulations and collaborate across departments. These competencies ensure that organizations can identify risks, maintain compliance, and build a strong foundation for operational resilience.

How does a Governance Risk and Compliance analyst typically collaborate with other departments within an organization?

GRC Analysts work closely with various departments such as IT, legal, finance, and operations to ensure that organizational policies and procedures align with regulatory requirements and internal controls. They often facilitate cross-functional meetings to assess risks, discuss compliance gaps, and implement corrective measures. Effective communication and coordination are key, as GRC Analysts must translate complex regulations into actionable steps for different teams, ensuring a unified approach to risk management and compliance throughout the organization.

What are popular job titles related to Governance Risk And Compliance Analyst jobs in Raleigh, NC?

For Governance Risk And Compliance Analyst jobs in Raleigh, NC, the most frequently searched job titles are:

What job categories do people searching Governance Risk And Compliance Analyst jobs in Raleigh, NC look for?

The top searched job categories for Governance Risk And Compliance Analyst jobs in Raleigh, NC are:

Infographic showing various Governance Risk And Compliance Analyst job openings in Raleigh, NC as of August 2026, with employment types broken down into 1% As Needed, 81% Full Time, 14% Part Time, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $81,854 per year, or $39.4 per hour.

Director Governance Risk and Compliance

Advance Auto Parts

Raleigh, NC โ€ข Hybrid

Full-time

Re-posted 29 days ago


Job description

Job Description

The Director of Governance and Risk will report to the CISO within Advance Auto Parts and will focus on the defining and deploying governance and risk management frameworks across Advance Auto Parts.

The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and 3rd party risk management. The ideal candidate will combine expertise in both cybersecurity and risk management disciplines and have exceptional communication and stakeholder management skills.

This position is 4 days in office, 1 day remote per week, based at our corporate headquarters in Raleigh, North Carolina (North Hills)

The key responsibilities of the role include:

  • Develop a short term and long-term comprehensive Governance and Risk Management Strategy
  • Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
  • Provide strategic guidance to the CISO for the representation of risks to the Board, Audit committee, and ERM
  • Lead a team of cyber specialists, providing direction and supporting their development
  • Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk management plans for various business units and projects
  • Support Internal Audit with engagements requiring technology support.
  • Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
  • Support the identification, evaluation, and prioritization of cyber risks across the organization
  • Oversee production, reporting and evolution of cyber risk metrics, including Key Performance Indicators (KPIs), scorecards, and Key Risk Indicators (KRIs)
  • Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
  • Drive automation, analytics, and continuous improvement of processes
  • Engage with a range of senior stakeholders across Lines of Defense to ensure appropriate oversight and reporting of cybersecurity risks and vulnerabilities
  • Collaborate with cross-functional teams on cyber risk remediation activities
  • Ensure regulatory compliance with frameworks in NIST, SOC 1&2, PCI, SOX, CCPA
  • Maintain the database and reporting platform to ensure compliance to our security policies and standards.

Skills/ Qualifications:

  • Bachelor's degree in information security, Computer Science, or a related field; Master's degree preferred
  • Minimum of 12 years of experience in cybersecurity, with a focus on risk management
  • Expert in the implementation and operational management of OneTrust, working knowledge of Service Now, and Auditboard.
  • Process driven with an extensive knowledge of cyber risk management frameworks, tools, and methodologies
  • Master in the ability to "tell a story" through PowerPoint leveraging metrics and creativity for various levels of the enterprise (Board, ERM, Steerco, Business and/or tech leaders)
  • Proven experience in senior leadership roles, managing teams, and influencing executive stakeholders, driving outcomes
  • Experience in establishing and managing regulatory compliance in NIST, PCI-DSS, SOX, SOC 1/2, CCPA, HIPAA
  • Deep understanding in cybersecurity metrics programs that are meaningful and risk/risk posture reporting
  • Strategic thinker with a strong understanding of cyber risks, vulnerabilities, and risk mitigation options
  • Innovative thinker, adaptable to change, self-driven, aggressive, and detail oriented with the ability to establish true partnerships that drives business enablement while managing risk
  • Exceptional communication and executive level presentation skills, capable of translating technical risk into business terms
  • Must have the ability to drive enterprise aligned roadmaps focusing on top cyber risks, cyber priorities, industry threats that align to the business
  • Excellent analytical, problem-solving, and decision-making skills
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age national origin, religion, sexual orientation, gender identity, status as a veteran and basis of disability or any other federal, state or local protected class. We comply with all applicable federal, state, and local laws.

California Residents click below for Privacy Notice:

https://jobs.advanceautoparts.com/us/en/disclosures

Advance Auto Parts logo

About Advance Auto Parts

Sourced by ZipRecruiter

At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.

Industry

Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools

Company size

10,000+ Employees

Headquarters location

Raleigh, NC, US