1

Governance Risk Compliance Jobs in Georgia (NOW HIRING)

Partner with information security, technology, risk, audit, and business teams to complete assigned compliance initiatives * Provide consistent project support while following established governance ...

New

The ideal candidate possesses a strong blend of technical IT auditing skills, experience with Governance, Risk, and Compliance (GRC) frameworks, and a proactive attitude focused on improving ...

Experience you'll need to have * 8+ years of combined experience across governance, risk, compliance, cybersecurity engineering, or adjacent technical disciplines in complex enterprise environments ...

Experience you'll need to have * 8+ years of combined experience across governance, risk, compliance, cybersecurity engineering, or adjacent technical disciplines in complex enterprise environments ...

Support day-to-day operations of IT Governance, Risk and Compliance functions. Execute technology risk management processes and provide input to support continuous improvement of process and program ...

The position is primarily focused on IT risk management but also plays a key part in assisting the Director of Business Continuity with all aspects of the IT Governance, Risk and Compliance (GRC ...

Showing results 41-60

Governance Risk Compliance information

What are jobs in governance risk compliance?

Governance risk compliance (GRC) is a method for managing and strategizing an organization's regulations regarding governance, financial or physical risk, and regulatory compliance. It aligns the IT aspects with business objectives and works to improve the efficiency of a company. There are GRC consultants and GRC analysts who provide an assessment of a business’s GRC, identify risks, analyze the data, develop policies to benefit the workplace, and consult on the best choice of action. Your duties may involve optimizing GRC systems, implementing tactics to lower risk, providing internal audits, assisting with cybersecurity, creating routine reports, and ensuring regulatory compliance.

What is the work of governance risk compliance?

Governance, Risk, and Compliance (GRC) professionals develop and implement policies to ensure organizations adhere to legal and regulatory requirements, manage risks, and maintain ethical standards. They analyze business processes, conduct audits, and use tools like risk management software to identify vulnerabilities and ensure compliance across departments.

What is governance risk compliance?

Governance, Risk, and Compliance (GRC) is a coordinated strategy that organizations use to manage overall governance, enterprise risk management, and compliance with regulations and standards. GRC professionals help organizations align their business objectives with risk management practices and regulatory requirements. This role involves identifying potential risks, implementing policies to mitigate those risks, and ensuring that the organization adheres to legal, ethical, and internal standards. Effective GRC management can improve decision-making, optimize processes, and protect the organization from financial or reputational harm.

How does a governance risk compliance professional typically collaborate with other departments within an organization?

GRC professionals work closely with a variety of departments, including IT, legal, finance, and operations, to ensure that organizational policies and regulatory requirements are consistently met. Collaboration often involves leading risk assessments, facilitating compliance training, and coordinating audits to identify and mitigate potential risks. Effective communication and relationship-building are key, as GRC teams must translate complex regulations into actionable steps for different business units. This cross-functional approach helps embed a culture of compliance and risk awareness throughout the organization.

What is the difference between Governance Risk Compliance vs Risk Analyst?

AspectGovernance Risk ComplianceRisk Analyst
CertificationsCRISC, CISA, CISSPCFA, FRM, CRISC
Work EnvironmentCorporate, regulated industriesFinancial, consulting firms
Employer & Industry UsageFinancial institutions, healthcare, governmentBanking, investment firms, insurance

Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing enterprise-wide risks. Risk Analysts primarily assess specific financial or operational risks through data analysis. While both roles involve risk management, Governance Risk Compliance has a broader scope related to organizational compliance and governance frameworks, whereas Risk Analysts concentrate on analyzing and quantifying particular risks.

What are the key skills and qualifications needed to thrive as a governance risk compliance professional?

To thrive as a Governance Risk Compliance professional, you need a solid understanding of regulatory frameworks, risk management principles, and policy development, often supported by a degree in business, law, or information security. Familiarity with GRC software platforms, compliance management systems, and certifications like CISA, CRISC, or CISSP is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this field. These competencies are essential for ensuring organizational compliance, minimizing risks, and maintaining robust corporate governance.
What are the most commonly searched types of Governance Risk Compliance jobs in Georgia? The most popular types of Governance Risk Compliance jobs in Georgia are:
What job categories do people searching Governance Risk Compliance jobs in Georgia look for? The top searched job categories for Governance Risk Compliance jobs in Georgia are:
What cities in Georgia are hiring for Governance Risk Compliance jobs? Cities in Georgia with the most Governance Risk Compliance job openings:
Infographic showing various Governance Risk Compliance job openings in Georgia as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 11% Part Time, and 4% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution.

Senior Security Third Party Risk (TPRM) Analyst

OneTrust

Atlanta, GA • On-site

Other

Re-posted 2 days ago


Job description

The Challenge

We are looking for a dynamic Senior Information Security GRC Analyst to support IT and InfoSec by performing various governance, risk, and compliance activities as part of the OneTrust InfoSec GRC team.

Your Mission

This role will support InfoSec by performing various governance, risk, and compliance activities as part of the OneTrust InfoSec GRC team.  In addition, this role will collaborate with architecture, legal, compliance, and privacy as part of our TPRM (Third Party Risk Management) process.  This role will help review risk assessments for customers/vendors, data flow diagrams, architecture diagrams, certifications, questionnaires, etc.   

You Are

This a team player who can work well within the GRC team. 

  • Collaborate with IT, InfoSec, and within the GRC team to mature the compliance process
  • Review vendor due diligence documentation, including SOC reports, ISO certifications, penetration testing reports, policies, and security questionnaires.
  • Evaluate supplier control environments against established risk management standards and frameworks.
  • Document risk findings and communicate recommendations to business stakeholders.
  • Execute risk assessments of third-party vendors
  • Mentor Junior Security Analysts, and work with them to evaluate and remediate complex security incidents 
  • Responsible for generation and continued delivery of relevant KPIs and metrics 
  • Provide feedback on solutions and processes to mature overall capabilities 
  • Impart expertise on the OneTrust environment and security best practices to others on the team
  • BA/BS in Computer Science, Cybersecurity, Information assurance or related subject 
You Experience Includes
  • 5+ years, hands on experience in cybersecurity/risk management  
  • Experience reviewing SOC 1, SOC 2 reports & ISO 27001 certifications
  • Experience reviewing security questionnaires, business continuity and disaster recovery plans as well as vendor contracts and security requirements
  • Understanding of information security best practices around confidentiality, integrity and availability 
  • Cloud experience in at least one cloud provider 
  • Understanding of applicable laws and regulations, including but not limited to, GDPR, CCPA, PCI-DSS, SOC 2, ISO, and FedRAMP
  • Understanding of the standards for the processing practice of third-party management
  • Understanding of technology domains including governance, risk management, security, privacy, and information technology and business continuity
Preferred Experience
  • Certifications: CRISC, Security+, CISSP, CISM, CCSP, CISA, Azure
  • Knowledge of OneTrust security/GRC products.