1

Governance Risk And Compliance Jobs in Raleigh, NC

... governance, risk, and compliance (GRC) initiatives, policy reviews, audit readiness, issue management, control monitoring, and reporting for senior leadership. - Develop and maintain risk dashboards ...

Risk Analysis

Raleigh, NC · On-site

$100K - $120K/yr

... governance, risk, and compliance (GRC) initiatives, policy adherence reviews, audit readiness, issue management, control monitoring, and risk reporting for senior leadership. • Adept at developing ...

SUMMARY The AI Governance & Compliance Analyst drives the strategic adoption, governance, and ... Analyzes risk to business activities and operations - including financial, cyber, and regulatory ...

Familiar with GRC (Governance, Risk & Compliance) tools * Service delivery and/or contractual compliance experience a positive Security Engineer Start Date ASAP Security Engineer Assignment Length 6+ ...

next page

Showing results 1-20

Governance Risk And Compliance information

See Raleigh, NC salary details

$96.2K

$186.4K

$373.3K

How much do governance risk and compliance jobs pay per year?

As of Aug 10, 2026, the average yearly pay for governance risk and compliance in Raleigh, NC is $186,399.00, according to ZipRecruiter salary data. Most workers in this role earn between $163,800.00 and $185,200.00 per year, depending on experience, location, and employer.

What are governance risk and compliance roles?

Governance, Risk, and Compliance (GRC) roles are positions within organizations focused on ensuring that business operations align with legal standards, manage risk effectively, and follow internal policies. Professionals in GRC help organizations set up frameworks to oversee compliance with laws and regulations, identify and mitigate potential risks, and establish governance structures to guide decision-making. These roles are essential for protecting organizations from financial, legal, and reputational harm while promoting ethical practices and efficient processes.

What is the work of governance risk and compliance?

Governance, Risk, and Compliance (GRC) professionals develop and implement policies to ensure organizations adhere to legal and regulatory requirements, manage risks effectively, and maintain ethical standards. They often use tools like risk assessments, audits, and compliance frameworks to identify vulnerabilities and ensure organizational integrity.

Is governance risk and compliance a good career?

Governance, Risk, and Compliance (GRC) is a growing field that offers opportunities in industries such as finance, healthcare, and technology. It requires skills in regulatory knowledge, risk assessment, and often certifications like CISA or CRISC, making it a stable and in-demand career path for those interested in organizational integrity and security.

What are the key skills and qualifications needed to thrive as a governance risk and compliance professional?

To thrive as a Governance, Risk, and Compliance (GRC) professional, you need a solid understanding of regulatory frameworks, risk assessment methodologies, and compliance requirements, often supported by a degree in business, finance, or a related field. Familiarity with GRC platforms (like RSA Archer or MetricStream), audit management tools, and relevant certifications such as CISA, CRISC, or CISSP is highly beneficial. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this field. These skills are crucial for identifying risks, ensuring organizational compliance, and supporting informed decision-making to protect the business.

What are some common challenges faced by professionals in governance risk and compliance roles, and how can they be addressed?

Professionals in Governance, Risk, and Compliance (GRC) roles often face challenges such as staying updated with changing regulations, ensuring company-wide adherence to policies, and managing cross-functional collaboration. To address these, GRC specialists must develop strong communication skills to educate and train staff, leverage technology to automate compliance tracking, and build effective relationships with departments such as IT, legal, and operations. Regular professional development and proactive engagement with regulatory updates are also key to overcoming these challenges and maintaining effective governance.

What is the difference between Governance Risk And Compliance vs Compliance Analyst?

AspectGovernance Risk And ComplianceCompliance Analyst
CertificationsISO 31000, ISO 27001, Certified Risk Management ProfessionalCertified Compliance & Ethics Professional (CCEP), ISO 19600
Work EnvironmentCorporate, regulated industries, risk management departmentsLegal, audit, compliance departments within organizations
Employer & Industry UsageFinancial services, healthcare, energy, governmentFinancial institutions, healthcare, manufacturing, retail

Governance Risk And Compliance professionals focus on establishing frameworks, managing risks, and ensuring overall compliance strategies across organizations. Compliance Analysts primarily focus on implementing and monitoring specific compliance policies, often within legal or audit teams. While both roles require understanding regulations and certifications, Governance Risk And Compliance roles have a broader scope involving risk management and governance structures.

What are popular job titles related to Governance Risk And Compliance jobs in Raleigh, NC? For Governance Risk And Compliance jobs in Raleigh, NC, the most frequently searched job titles are:
What cities near Raleigh, NC are hiring for Governance Risk And Compliance jobs? Cities near Raleigh, NC with the most Governance Risk And Compliance job openings:
Infographic showing various Governance Risk And Compliance job openings in Raleigh, NC as of August 2026, with employment types broken down into 5% Internship, 90% Full Time, and 5% Contract. Highlights an 73% In-person, 16% Hybrid, and 11% Remote job distribution, with an average salary of $186,399 per year, or $89.6 per hour.

Director Governance Risk and Compliance

Advance Auto Parts

Raleigh, NC • Hybrid

Full-time

Re-posted 24 days ago


Job description

Job Description

The Director of Governance and Risk will report to the CISO within Advance Auto Parts and will focus on the defining and deploying governance and risk management frameworks across Advance Auto Parts.

The Director of Governance and Risk will oversee cybersecurity policy, standards, procedures, compliance, ensuring the company adheres to relevant regulations, industry standards, and internal and 3rd party risk management. The ideal candidate will combine expertise in both cybersecurity and risk management disciplines and have exceptional communication and stakeholder management skills.

This position is 4 days in office, 1 day remote per week, based at our corporate headquarters in Raleigh, North Carolina (North Hills)

The key responsibilities of the role include:

  • Develop a short term and long-term comprehensive Governance and Risk Management Strategy
  • Develop, communicate, and implement enterprise-wide security policy, standards, procedures, and guidelines.
  • Provide strategic guidance to the CISO for the representation of risks to the Board, Audit committee, and ERM
  • Lead a team of cyber specialists, providing direction and supporting their development
  • Conduct regular risk assessments, including PCI-DSS and SOX, and develop comprehensive risk management plans for various business units and projects
  • Support Internal Audit with engagements requiring technology support.
  • Vendor Risk Management (VRM): Oversee the VRM integration, including risk reviews, contract management, and ongoing monitoring to manage risks associated with third-party vendors and suppliers
  • Support the identification, evaluation, and prioritization of cyber risks across the organization
  • Oversee production, reporting and evolution of cyber risk metrics, including Key Performance Indicators (KPIs), scorecards, and Key Risk Indicators (KRIs)
  • Conduct risk analysis, providing insights on issues and direction on risk mitigation strategies
  • Drive automation, analytics, and continuous improvement of processes
  • Engage with a range of senior stakeholders across Lines of Defense to ensure appropriate oversight and reporting of cybersecurity risks and vulnerabilities
  • Collaborate with cross-functional teams on cyber risk remediation activities
  • Ensure regulatory compliance with frameworks in NIST, SOC 1&2, PCI, SOX, CCPA
  • Maintain the database and reporting platform to ensure compliance to our security policies and standards.

Skills/ Qualifications:

  • Bachelor's degree in information security, Computer Science, or a related field; Master's degree preferred
  • Minimum of 12 years of experience in cybersecurity, with a focus on risk management
  • Expert in the implementation and operational management of OneTrust, working knowledge of Service Now, and Auditboard.
  • Process driven with an extensive knowledge of cyber risk management frameworks, tools, and methodologies
  • Master in the ability to "tell a story" through PowerPoint leveraging metrics and creativity for various levels of the enterprise (Board, ERM, Steerco, Business and/or tech leaders)
  • Proven experience in senior leadership roles, managing teams, and influencing executive stakeholders, driving outcomes
  • Experience in establishing and managing regulatory compliance in NIST, PCI-DSS, SOX, SOC 1/2, CCPA, HIPAA
  • Deep understanding in cybersecurity metrics programs that are meaningful and risk/risk posture reporting
  • Strategic thinker with a strong understanding of cyber risks, vulnerabilities, and risk mitigation options
  • Innovative thinker, adaptable to change, self-driven, aggressive, and detail oriented with the ability to establish true partnerships that drives business enablement while managing risk
  • Exceptional communication and executive level presentation skills, capable of translating technical risk into business terms
  • Must have the ability to drive enterprise aligned roadmaps focusing on top cyber risks, cyber priorities, industry threats that align to the business
  • Excellent analytical, problem-solving, and decision-making skills
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age national origin, religion, sexual orientation, gender identity, status as a veteran and basis of disability or any other federal, state or local protected class. We comply with all applicable federal, state, and local laws.

California Residents click below for Privacy Notice:

https://jobs.advanceautoparts.com/us/en/disclosures

Advance Auto Parts logo

About Advance Auto Parts

Sourced by ZipRecruiter

At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.

Industry

Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools

Company size

10,000+ Employees

Headquarters location

Raleigh, NC, US