1

Governance Risk Compliance Jobs in Georgia (NOW HIRING)

The role is responsible for supporting Supply Chain Management governance, compliance, and risk monitoring activities, while also leading and/or coordinating project-based initiatives that strengthen ...

The role is responsible for supporting Supply Chain Management governance, compliance, and risk monitoring activities, while also leading and/or coordinating project-based initiatives that strengthen ...

Experience you'll need to have: * 2+ years of experience in cybersecurity, technology risk management, governance, risk, and compliance, software engineering, data analytics, or a related field ...

Experience you'll need to have: * 2+ years of experience in cybersecurity, technology risk management, governance, risk, and compliance, software engineering, data analytics, or a related field ...

Showing results 21-40

Governance Risk Compliance information

What are jobs in governance risk compliance?

Governance risk compliance (GRC) is a method for managing and strategizing an organization's regulations regarding governance, financial or physical risk, and regulatory compliance. It aligns the IT aspects with business objectives and works to improve the efficiency of a company. There are GRC consultants and GRC analysts who provide an assessment of a business’s GRC, identify risks, analyze the data, develop policies to benefit the workplace, and consult on the best choice of action. Your duties may involve optimizing GRC systems, implementing tactics to lower risk, providing internal audits, assisting with cybersecurity, creating routine reports, and ensuring regulatory compliance.

What is the work of governance risk compliance?

Governance, Risk, and Compliance (GRC) professionals develop and implement policies to ensure organizations adhere to legal and regulatory requirements, manage risks, and maintain ethical standards. They analyze business processes, conduct audits, and use tools like risk management software to identify vulnerabilities and ensure compliance across departments.

What is governance risk compliance?

Governance, Risk, and Compliance (GRC) is a coordinated strategy that organizations use to manage overall governance, enterprise risk management, and compliance with regulations and standards. GRC professionals help organizations align their business objectives with risk management practices and regulatory requirements. This role involves identifying potential risks, implementing policies to mitigate those risks, and ensuring that the organization adheres to legal, ethical, and internal standards. Effective GRC management can improve decision-making, optimize processes, and protect the organization from financial or reputational harm.

How does a governance risk compliance professional typically collaborate with other departments within an organization?

GRC professionals work closely with a variety of departments, including IT, legal, finance, and operations, to ensure that organizational policies and regulatory requirements are consistently met. Collaboration often involves leading risk assessments, facilitating compliance training, and coordinating audits to identify and mitigate potential risks. Effective communication and relationship-building are key, as GRC teams must translate complex regulations into actionable steps for different business units. This cross-functional approach helps embed a culture of compliance and risk awareness throughout the organization.

What is the difference between Governance Risk Compliance vs Risk Analyst?

AspectGovernance Risk ComplianceRisk Analyst
CertificationsCRISC, CISA, CISSPCFA, FRM, CRISC
Work EnvironmentCorporate, regulated industriesFinancial, consulting firms
Employer & Industry UsageFinancial institutions, healthcare, governmentBanking, investment firms, insurance

Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing enterprise-wide risks. Risk Analysts primarily assess specific financial or operational risks through data analysis. While both roles involve risk management, Governance Risk Compliance has a broader scope related to organizational compliance and governance frameworks, whereas Risk Analysts concentrate on analyzing and quantifying particular risks.

What are the key skills and qualifications needed to thrive as a governance risk compliance professional?

To thrive as a Governance Risk Compliance professional, you need a solid understanding of regulatory frameworks, risk management principles, and policy development, often supported by a degree in business, law, or information security. Familiarity with GRC software platforms, compliance management systems, and certifications like CISA, CRISC, or CISSP is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this field. These competencies are essential for ensuring organizational compliance, minimizing risks, and maintaining robust corporate governance.
What are the most commonly searched types of Governance Risk Compliance jobs in Georgia? The most popular types of Governance Risk Compliance jobs in Georgia are:
What job categories do people searching Governance Risk Compliance jobs in Georgia look for? The top searched job categories for Governance Risk Compliance jobs in Georgia are:
What cities in Georgia are hiring for Governance Risk Compliance jobs? Cities in Georgia with the most Governance Risk Compliance job openings:
Infographic showing various Governance Risk Compliance job openings in Georgia as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 11% Part Time, and 4% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution.

Senior Security Risk & Compliance Analyst

APCO Holdings

Norcross, GA

Full-time

Re-posted 18 days ago


APCO Holdings rating

8.0

Company rating: 8.0 out of 10

Based on 10 frontline employees who took The Breakroom Quiz

163rd of 304 rated insurance


Job description

APCO Holdings partners with dealerships across North America to deliver innovative vehicle protection products and services that enhance the ownership experience for customers and drive growth for our partners. Through our family of brands, we bring together industry expertise, technology, and data-driven insights to help dealers strengthen their finance and insurance performance and build lasting relationships with their customers.

Our teams work collaboratively across operations, technology, risk, finance, marketing, and sales to deliver solutions that create measurable value and support the continued growth of APCO and the partners we serve.

We are looking for a Senior Security Risk & Compliance Analyst to support and strengthen APCO’s security governance, risk, and compliance (GRC) initiatives. In this role, you will help drive compliance efforts, assess security controls, identify risks, and support the organization’s ongoing commitment to maintaining a strong security posture and regulatory compliance.

What You'll Do

Audit & Compliance

  • Support the planning, coordination, and execution of compliance audits, including readiness assessments and external audit engagements
  • Partner with control owners to document, implement, and maintain compliance controls aligned control requirements.
  • Collect, review, and validate audit evidence to ensure completeness and accuracy
  • Track audit findings, exceptions, and remediation efforts through closure
  • Act as a liaison between internal stakeholders and external auditors

Internal Audit

  • Perform internal audits and control assessments to evaluate the effectiveness of security and compliance controls
  • Develop audit plans, testing procedures, and audit reports
  • Identify control gaps and recommend remediation actions
  • Monitor and track remediation efforts to ensure timely resolution

GRC Platform Management

  • Administer and maintain the organization’s GRC platform
  • Configure audit workflows and maintain accurate, up-to-date due diligence responses within the GRC platform.
  • Ensure data integrity and accuracy within the system
  • Generate dashboards and reports for compliance status, audit tracking, and risk posture

Risk Registration & Management

  • Maintain the enterprise risk register, including identification, classification, and documentation of risks
  • Facilitate risk assessments with business and IT stakeholders
  • Evaluate risk severity based on likelihood and impact
  • Track risk treatment plans (remediation, acceptance, transfer, avoidance)
  • Provide regular reporting on risk posture to leadership

Governance & Cross-Functional Collaboration

  • Collaborate with IT, Security, Legal, and business units to ensure alignment with compliance requirements
  • Assist in the development and maintenance of security policies, standards, and procedures
  • Support other compliance initiatives as needed (e.g., regulatory, customer security questionnaires)
Qualifications
  • Bachelor’s degree in Information Security, Information Systems, or related field (or equivalent experience)
  • At least 5 years of experience in security compliance, audit, or GRC
  • Hands-on experience with SOC 2 audits and Trust Services Criteria and New York 23 NYCRR 500, or other regulatory compliance.
  • Experience with performing internal audits and control testing
  • Familiarity with GRC tools (e.g., ServiceNow GRC, Archer GRC)
  • Strong understanding of risk management principles and frameworks
  • Knowledge of common frameworks (e.g., AICPA SOC 2, ISO 27001, NIST)
  • Experience with leading cybersecurity due diligence activities, including responding to customer and partner security questionnaires accurately and in a timely manner
  • Strong analytical, organizational, and communication skills
Preferred Certifications
  • Certified Information Systems Auditor (CISA) or
  • Certified in Risk and Information Systems Control (CRISC) or
  • Certified Information Systems Security Professional (CISSP)
This Role Might Be a Great Fit If You…
  • Enjoy identifying risks and improving security processes
  • Thrive in cross-functional, collaborative environments
  • Like balancing technical security concepts with governance and compliance
  • Are motivated by protecting systems, data, and organizational integrity
What We Offer
  • Competitive compensation
  • Comprehensive medical, dental, and vision benefits
  • 401(k) with company match
  • Paid time off and company holidays
  • Opportunities for professional growth and certification support
  • A collaborative and security-focused work environment
At APCO, the way we work matters just as much as the results we deliver. Our values guide how we work, how we partner, and how we deliver results.
 
We C.A.R.E.
Committed – We build strong, high-trust relationships with our partners and each other.
Accountable – We take ownership of outcomes and hold ourselves to the highest standards of performance and integrity.
Results-Driven – We focus on delivering measurable outcomes that create value for our partners and our business.
Excellent – We strive for excellence in everything we do while balancing short-term performance with long-term success.
 
If you're excited about joining a team that values collaboration, accountability, and continuous improvement, we'd love to hear from you.
 
 
By submitting your application, you acknowledge that you have read and understand our Privacy Policy and Terms & Conditions. APCO Holdings may collect personal information (such as name, contact details, and employment history) to evaluate your candidacy. We may share this data with our subsidiaries, affiliates, and service providers. We retain applicant data only as long as necessary for the hiring process or as required by law.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.


What APCO Holdings employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom