As a Senior Governance Risk and Compliance (GRC) Analyst at C2 Labs you will lead a team of security analysts and engineers to implement regulatory frameworks such as the Federal Information Security ...
Quick apply
As a Senior Governance Risk and Compliance (GRC) Analyst at C2 Labs you will lead a team of security analysts and engineers to implement regulatory frameworks such as the Federal Information Security ...
Quick apply
As a Senior Governance Risk and Compliance (GRC) Analyst at C2 Labs you will lead a team of security analysts and engineers to implement regulatory frameworks such as the Federal Information Security ...
The Transportation, Risk, & Compliance team is looking for an experienced Sr. Risk Manager to own and advance Amazon's transportation risk management, governance strategy and policy lifecycle ...
The Transportation, Risk, & Compliance team is looking for an experienced Sr. Risk Manager to own and advance Amazon's transportation risk management, governance strategy and policy lifecycle ...
The Transportation, Risk, & Compliance team is looking for an experienced Sr. Risk Manager to own and advance Amazon's transportation risk management, governance strategy and policy lifecycle ...
The Transportation, Risk, & Compliance team is looking for an experienced Sr. Risk Manager to own and advance Amazon's transportation risk management, governance strategy and policy lifecycle ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
POSITION PURPOSE The Director of IT Governance, Risk and Compliance provides strategic leadership and oversight of the organization's IT risk posture, governance frameworks, and regulatory compliance ...
The Transportation, Risk, & Compliance team is looking for an experienced Sr. Risk Manager to own and advance Amazon's transportation risk management, governance strategy and policy lifecycle ...
The Transportation, Risk, & Compliance team is looking for an experienced Sr. Risk Manager to own and advance Amazon's transportation risk management, governance strategy and policy lifecycle ...
Support maintenance of the Regulatory Relations governance framework, procedures, playbooks, and communication standards. * Assist with enterprise compliance risk assessments and control evaluations ...
Support maintenance of the Regulatory Relations governance framework, procedures, playbooks, and communication standards. * Assist with enterprise compliance risk assessments and control evaluations ...
Support maintenance of the Regulatory Relations governance framework, procedures, playbooks, and communication standards. * Assist with enterprise compliance risk assessments and control evaluations ...
Support maintenance of the Regulatory Relations governance framework, procedures, playbooks, and communication standards. * Assist with enterprise compliance risk assessments and control evaluations ...
Nashville, TN · On-site
Contribute to the development and delivery of research and advisory services across governance, risk, compliance and cybersecurity technologies * Support Research Directors in conducting and ...
Quick apply
Nashville, TN · On-site
Contribute to the development and delivery of research and advisory services across governance, risk, compliance and cybersecurity technologies * Support Research Directors in conducting and ...
Nashville, TN · On-site
Contribute to the development and delivery of research and advisory services across governance, risk, compliance and cybersecurity technologies * Support Research Directors in conducting and ...
Nashville, TN · On-site
Contribute to the development and delivery of research and advisory services across governance, risk, compliance and cybersecurity technologies * Support Research Directors in conducting and ...
Contribute to the development and delivery of research and advisory services across governance, risk, compliance and cybersecurity technologies * Support Research Directors in conducting and ...
Contribute to the development and delivery of research and advisory services across governance, risk, compliance and cybersecurity technologies * Support Research Directors in conducting and ...
Brentwood, TN · On-site
$105K - $141K/yr
Governance, Risk & Compliance * Maintain security policies, standards, risk registers, and governance documentation. * Support SOC 2, HIPAA, CMMC, and other compliance initiatives. * Conduct access ...
Quick apply
Brentwood, TN · On-site
$105K - $141K/yr
Governance, Risk & Compliance * Maintain security policies, standards, risk registers, and governance documentation. * Support SOC 2, HIPAA, CMMC, and other compliance initiatives. * Conduct access ...
Governance, Risk & Compliance * Maintain security policies, standards, risk registers, and governance documentation. * Support SOC 2, HIPAA, CMMC, and other compliance initiatives. * Conduct access ...
Quick apply
Governance, Risk & Compliance * Maintain security policies, standards, risk registers, and governance documentation. * Support SOC 2, HIPAA, CMMC, and other compliance initiatives. * Conduct access ...
Brentwood, TN · On-site
$160K - $200K/yr
Governance, Risk & Compliance * Maintain security policies, standards, risk registers, and governance documentation. * Support SOC 2, HIPAA, CMMC, and other compliance initiatives. * Conduct access ...
Brentwood, TN · On-site
$160K - $200K/yr
Governance, Risk & Compliance * Maintain security policies, standards, risk registers, and governance documentation. * Support SOC 2, HIPAA, CMMC, and other compliance initiatives. * Conduct access ...
$105K - $141K/yr
Governance, Risk & Compliance * Maintain security policies, standards, risk registers, and governance documentation. * Support SOC 2, HIPAA, CMMC, and other compliance initiatives. * Conduct access ...
$105K - $141K/yr
Governance, Risk & Compliance * Maintain security policies, standards, risk registers, and governance documentation. * Support SOC 2, HIPAA, CMMC, and other compliance initiatives. * Conduct access ...
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
... Compliance, and Audit stakeholders to identify risks, strengthen controls, and support regulatory and governance requirements. ESSENTIAL RESPONSIBILITIES MAY INCLUDE * Leads the enterprise IT risk ...
$28.6K - $35.2K
12% of jobs
$35.2K - $41.9K
7% of jobs
$44.2K is the 25th percentile. Wages below this are outliers.
$41.9K - $48.5K
17% of jobs
$48.5K - $55.2K
10% of jobs
The median wage is $56.9K / yr.
$55.2K - $61.8K
16% of jobs
$61.8K - $68.4K
9% of jobs
$72.7K is the 75th percentile. Wages above this are outliers.
$68.4K - $75.1K
7% of jobs
$75.1K - $81.7K
5% of jobs
$81.7K - $88.4K
7% of jobs
$88.4K - $95K
5% of jobs
$95K - $101.7K
4% of jobs
$28.6K
$62.4K
$101.7K
Governance risk compliance (GRC) is a method for managing and strategizing an organization's regulations regarding governance, financial or physical risk, and regulatory compliance. It aligns the IT aspects with business objectives and works to improve the efficiency of a company. There are GRC consultants and GRC analysts who provide an assessment of a business’s GRC, identify risks, analyze the data, develop policies to benefit the workplace, and consult on the best choice of action. Your duties may involve optimizing GRC systems, implementing tactics to lower risk, providing internal audits, assisting with cybersecurity, creating routine reports, and ensuring regulatory compliance.
| Aspect | Governance Risk Compliance | Risk Analyst |
|---|---|---|
| Certifications | CRISC, CISA, CISSP | CFA, FRM, CRISC |
| Work Environment | Corporate, regulated industries | Financial, consulting firms |
| Employer & Industry Usage | Financial institutions, healthcare, government | Banking, investment firms, insurance |
Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing enterprise-wide risks. Risk Analysts primarily assess specific financial or operational risks through data analysis. While both roles involve risk management, Governance Risk Compliance has a broader scope related to organizational compliance and governance frameworks, whereas Risk Analysts concentrate on analyzing and quantifying particular risks.

Full-time
Posted 24 days ago
Job Summary:
As a Senior Governance Risk and Compliance (GRC) Analyst at C2 Labs you will lead a team of security analysts and engineers to implement regulatory frameworks such as the Federal Information Security Modernization Act (FISMA), the Federal Risk Authorization Management Program (FedRAMP) and the State Risk Authorization Management Program (StateRAMP). You will leverage GRC tools to develop security authorization package documentation such as the System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), and the Plan of Actions & Milestones (POA&M) in human readable and machine-readable formats. You will serve as a Subject Matter Expert (SME) at key stakeholder meetings and will develop and maintain client relationships. You will draft security control implementation statements with enough detail to facilitate the testing of the controls and will develop supporting documentation including the Contingency Plan (CP), Incident Response Plan (IRP), and Configuration Management Plan (CMP). As a Senior GRC Analyst your primary responsibility will be to ensure the timely development of the security authorization package in accordance with C2 Labs quality standards. You will be expected to lead multiple teams and will work on up to 2 packages at a time.
Job Responsibilities:
Categorize systems in accordance with Federal Information Processing Standards (FIPS) 199 and National Institute of Standards and Technology (NIST) Special Publication (SP) 800-60. Select and tailor security controls by applying scoping guidance in accordance with NIST SP 800-53 and FedRAMP specific guidance. Document the implementation characteristics for security controls with enough detail to permit the testing of the security control by an independent assessor/Third Party Assessment Organization (3PAO).
Qualifications:
Working knowledge of:
EEO Statement
We are an equal opportunity employer. All qualified applicants will be considered without discrimination based on race, color, religion, sex, national origin, age, disability, or protected veteran status. Employment offers will be contingent on passing a pre-employment drug screen.
Practical AI Application