1

Governance Risk Compliance Jobs in Rochester, NY

... compliance with these requirements. * Regular and reliable attendance is expected and required ... and risk. * Directs formal governance framework to drive improvement for quality, delivery and ...

... compliance with these requirements. * Regular and reliable attendance is expected and required ... and risk. * Directs formal governance framework to drive improvement for quality, delivery and ...

... compliance with these requirements. * Regular and reliable attendance is expected and required ... and risk. * Directs formal governance framework to drive improvement for quality, delivery and ...

Cyber Data Protection Manager

Rochester, NY · Remote

$109K - $148K/yr

If so, consider joining Deloitte & Touche LLP's growing Cyber Risk Digital Trust & Privacy practice ... Knowledge of AI security and governance concepts, including data protection considerations for ...

... governance. This individual will serve as a key contributor in enhancing the reliability ... compliance, and integrated audits in accordance with the risk based internal audit plan. * Assist ...

Sr. Internal Auditor

Rochester, NY · On-site

$90K - $105K/yr

... governance. This individual will serve as a key contributor in enhancing the reliability ... compliance, and integrated audits in accordance with the risk based internal audit plan. * Assist ...

Sr. Internal Auditor

Rochester, NY · On-site

$90K - $105K/yr

... governance. This individual will serve as a key contributor in enhancing the reliability ... compliance, and integrated audits in accordance with the risk based internal audit plan. * Assist ...

... governance. This individual will serve as a key contributor in enhancing the reliability ... compliance, and integrated audits in accordance with the risk based internal audit plan. * Assist ...

VP of Finance

Rochester, NY · On-site

$175K - $220K/yr

... and risk governance, while modernizing financial systems, analytics, and operating cadence to ... Financial governance, controls, and compliance, ensuring audit-ready rigor * Operating discipline ...

AI Data Engineer - Senior Consultant

Rochester, NY · Hybrid

$103K - $141K/yr

You will work with an AI Data Engineer (data ingestion, curation, governance, platform foundations ... and risk stakeholders. * Establish data/model reliability and cost-performance discipline (data ...

next page

Showing results 1-20

Governance Risk Compliance information

See Rochester, NY salary details

$31.1K

$67.8K

$110.5K

How much do governance risk compliance jobs pay per year?

As of Jun 16, 2026, the average yearly pay for governance risk compliance in Rochester, NY is $67,815.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,300.00 and $85,300.00 per year, depending on experience, location, and employer.

Is governance risk and compliance a good career?

Governance, Risk, and Compliance (GRC) is a growing field that offers opportunities in managing organizational policies, regulatory requirements, and risk mitigation. It often requires knowledge of industry standards, certifications like CISA or CRISC, and strong analytical skills. The role provides stability and advancement potential in various industries, including finance, healthcare, and technology.

What is the work of governance risk and compliance?

Governance, Risk, and Compliance (GRC) professionals develop and implement policies to ensure organizations adhere to laws, regulations, and internal standards. They identify potential risks, monitor compliance activities, and use tools like audits and risk assessments to manage organizational risks effectively.

What Are Jobs in Governance, Risk and Compliance?

Governance risk compliance (GRC) is a method for managing and strategizing an organization's regulations regarding governance, financial or physical risk, and regulatory compliance. It aligns the IT aspects with business objectives and works to improve the efficiency of a company. There are GRC consultants and GRC analysts who provide an assessment of a business’s GRC, identify risks, analyze the data, develop policies to benefit the workplace, and consult on the best choice of action. Your duties may involve optimizing GRC systems, implementing tactics to lower risk, providing internal audits, assisting with cybersecurity, creating routine reports, and ensuring regulatory compliance.

What is the salary of governance risk compliance?

The average salary for a Governance, Risk, and Compliance (GRC) professional typically ranges from $70,000 to $130,000 annually, depending on experience, location, and certifications such as CISA or CRISC. Entry-level roles may start lower, while senior positions or those in high-demand industries can earn higher salaries.

What is Governance, Risk, and Compliance (GRC)?

Governance, Risk, and Compliance (GRC) is a coordinated strategy that organizations use to manage overall governance, enterprise risk management, and compliance with regulations and standards. GRC professionals help organizations align their business objectives with risk management practices and regulatory requirements. This role involves identifying potential risks, implementing policies to mitigate those risks, and ensuring that the organization adheres to legal, ethical, and internal standards. Effective GRC management can improve decision-making, optimize processes, and protect the organization from financial or reputational harm.

How does a Governance, Risk, and Compliance (GRC) professional typically collaborate with other departments within an organization?

GRC professionals work closely with a variety of departments, including IT, legal, finance, and operations, to ensure that organizational policies and regulatory requirements are consistently met. Collaboration often involves leading risk assessments, facilitating compliance training, and coordinating audits to identify and mitigate potential risks. Effective communication and relationship-building are key, as GRC teams must translate complex regulations into actionable steps for different business units. This cross-functional approach helps embed a culture of compliance and risk awareness throughout the organization.

What is the difference between Governance Risk Compliance vs Risk Analyst?

AspectGovernance Risk ComplianceRisk Analyst
CertificationsCRISC, CISA, CISSPCFA, FRM, CRISC
Work EnvironmentCorporate, regulated industriesFinancial, consulting firms
Employer & Industry UsageFinancial institutions, healthcare, governmentBanking, investment firms, insurance

Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing enterprise-wide risks. Risk Analysts primarily assess specific financial or operational risks through data analysis. While both roles involve risk management, Governance Risk Compliance has a broader scope related to organizational compliance and governance frameworks, whereas Risk Analysts concentrate on analyzing and quantifying particular risks.

What are the key skills and qualifications needed to thrive as a Governance Risk Compliance (GRC) professional, and why are they important?

To thrive as a Governance Risk Compliance professional, you need a solid understanding of regulatory frameworks, risk management principles, and policy development, often supported by a degree in business, law, or information security. Familiarity with GRC software platforms, compliance management systems, and certifications like CISA, CRISC, or CISSP is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this field. These competencies are essential for ensuring organizational compliance, minimizing risks, and maintaining robust corporate governance.

What are governance risk and compliance jobs?

Governance, Risk, and Compliance (GRC) jobs involve managing an organization’s policies, procedures, and controls to ensure legal and regulatory adherence, mitigate risks, and support corporate governance. These roles often require knowledge of industry standards, risk assessment tools, and compliance frameworks such as ISO, SOX, or GDPR, and may involve audits, policy development, and monitoring activities.
What are the most commonly searched types of Governance Risk Compliance jobs in Rochester, NY? The most popular types of Governance Risk Compliance jobs in Rochester, NY are:
What are popular job titles related to Governance Risk Compliance jobs in Rochester, NY? For Governance Risk Compliance jobs in Rochester, NY, the most frequently searched job titles are:
What cities near Rochester, NY are hiring for Governance Risk Compliance jobs? Cities near Rochester, NY with the most Governance Risk Compliance job openings:
Infographic showing various Governance Risk Compliance job openings in Rochester, NY as of June 2026, with employment types broken down into 2% As Needed, 68% Full Time, 26% Part Time, 1% Temporary, 2% Contract, and 1% Nights. Highlights an 82% Physical, 7% Hybrid, and 11% Remote job distribution, with an average salary of $67,815 per year, or $32.6 per hour.

Vendor Manager I/II

Lthc

Rochester, NY

Full-time

Medical, Dental, Retirement

Posted 10 days ago


Job description

Job Description:

Summary:

The Vendor Manager (VM) is responsible for strategically managing vendor portfolios and vendor relationships which may vary in complexity, risk, size, and spend, etc. The incumbent acts as a strategic trusted advisor to the business unit and business partners and leads sourcing, selection, negotiations, contracting, and governance activities through proactive collaborative engagement with the business unit, cross functional stakeholders, and leaders.


The Vendor Manager focuses on delivering improved vendor performance, competitive costs, balanced risk, enhanced vendor alignment, on-time execution, and optimal business partner alignment and satisfaction.


Essential Accountabilities:

All Levels:

  • Manages vendor portfolios and vendor relationships for small size business units / vendor portfolios with low complexity and risk. Owns all aspects of the vendor relationship for designated business area to ensure vendor performance meets contractual obligations and business partner expectations.
  • Performs monthly reviews with business unit regarding vendor current activity and future plans and requirements for new vendor activity; share industry vendor insight on cost drivers, negotiation levers, competitors, and industry trends. Provides required vendor management support for business unit ongoing operational activities and projects.
  • Annually updates and formally reviews a business unit's vendor portfolio summary report covering overall portfolio vendor activity volumes, financials, dates, plans, issues, risks, opportunities, trending and industry insight. Facilitates upfront early engagement and initial planning with business units for ongoing renewals and new agreements.
  • Directs activities for business unit vendor portfolio agreements, including renewals, amendments, and new contracts to drive quality, on-time delivery, competitive costs, contract execution; identifies key issues and required corrective actions while facilitating and escalating as needed.
  • Leads, structures, and guides business units on major vendor sourcing, selection, negotiations, and contracting plan in partnership with internal stakeholders (Business Units, Legal, Finance, Security, EPMO, Sourcing, and Purchasing); facilitates management review and approval of plan scope, timing, costs, and sourcing approach; oversees overall plan execution per schedule.
  • Leads sourcing and selection activities as planned through RFx competition and/or direct negotiations with industry advisement, as necessary.
  • Leads commercial negotiations focused on vendor product and service obligations and competitive pricing by leveraging industry/benchmark pricing and advisement; formally tracks and reports negotiation results.
  • Facilitates Legal, Finance, Executive Management, and Purchasing timely review and approvals; identifies key on-time execution issues and required corrective actions while facilitating and escalating as needed.
  • Supports supplier diversity efforts with direct engagement of Minority and Woman owned businesses (MWBE) or through the development and capturing of second tier MWBE reporting.
  • Supports formal governance framework to drive improvement for quality, delivery and support, flexibility and ease, cost and financials, risks and compliances, strategic partnership alignment and innovation for select vendors.
  • Leads vendor escalations and contractual dispute resolutions by understanding the vendor's contractual obligations and communicating appropriately with its stakeholders.
  • Provides required vendor management support for Corporate Enterprise projects.
  • Supports optimization of Vendor Management framework, process, data, system, reporting, and analytics.
  • Complies and understands corporate privacy policies and procedures that impacts member demographic information and internal stakeholders.
  • Consistently demonstrates high standards of integrity by supporting the Lifetime Healthcare Companies' mission and values, adhering to the Corporate Code of Conduct, and leading to the Lifetime Way values and beliefs.
  • Maintains high regard for member privacy in accordance with the corporate privacy policies and procedures.
  • Maintains knowledge of all relevant legislative and regulatory mandates and ensures that all activities are in compliance with these requirements.
  • Regular and reliable attendance is expected and required.
  • Performs other functions as assigned by management.


Level II (in addition to Level I):

  • Manages vendor portfolios and vendor relationships for medium sized units / vendor portfolios with moderate complexity and risk.
  • Directs formal governance framework to drive improvement for quality, delivery and support, flexibility and ease, cost and financials, risks and compliances, strategic partnership alignment and innovation for select vendors.
  • Supports management and team in review of current processes and implementation of improved processes, procedures, techniques and standards.
  • Serves as a consultant on matters pertaining to budget development, procurement and vendor management.
  • Manages multiple ongoing vendor related projects as assigned to meet business-driven deadlines and commitments while maintaining a high level of quality.
  • Drives continuous improvement, cross-functional customer relations and team building.
  • Assists in coaching and mentoring Level I Vendor Managers and Vendor Analysts.


Level III (in addition to Level II):

  • Manages complex vendor portfolios and vendor relationships for large size business units / vendor portfolios with high risk.
  • In partnership with business unit executives, leads the development and execution of cost model optimization strategies including alternative sourcing and vendor rationalization.
  • Leads vendor management optimization activities and initiatives.
  • Provides vendor management leadership for Corporate Enterprise priority projects.
  • Leads team in review of current processes and implementation of improved processes, procedures, techniques and standards.
  • May direct some of the activities of Level I and II Vendor Managers and Vendor Analysts including coaching & mentoring.


Level IV (in addition to Level III):

  • Manages highly complex vendor portfolios and vendor relationships for large size business units / vendor portfolios with very high risk.
  • Accountable for recommendations, development, and implementation of new processes, procedures, techniques, and standards.
  • Champions Supplier Diversity initiatives internally and externally and influences others to drive greater supplier diversity spend.
  • Directs some of the activities of Level I-III Vendor Managers and Vendor Analysts including coaching & mentoring.
  • Proactively seeks out and drives continuous improvement in vendor management practices, processes, and policies, as well as departmental initiatives.


Minimum Qualifications:

NOTE:

We include multiple levels of classification differentiated by demonstrated knowledge, skills, and the ability to manage increasingly independent and/or complex assignments, broader responsibility, additional decision making, and in some cases, becoming a resource to others. In addition to using this differentiated approach to place new hires, it also provides guideposts for employee development and promotional opportunities.


All Levels:

  • Two (2) or more years of experience with vendors in the areas of sourcing, negotiating, contracting, and vendor governance.
  • Bachelor's degree in Supply Chain Management, Business, Finance, IT, or related field preferred.
  • Working knowledge of procurement modules of an Enterprise Resource Planning (ERP) tool.
  • Previous experience driving and leading negotiations for low to medium complexity agreements.
  • Experience executing competitive bids and negotiations with a track record of delivering cost efficiencies and value.
  • Persuasive effective communication with a demonstrated ability to build, influence, and execute in all facets of relationship building, sourcing, negotiations, contracting, and governing vendors.
  • Full cycle project management support experience. Ability to manage multiple projects simultaneously.
  • Proven ability to secure alignment and commitment with partners and/or stakeholders, ensuring deadlines are met, while communicating risks and necessary adjustments in a timely manner.
  • Demonstrated ability to think strategically and create, develop, and drive robust operational action plans.
  • Ability to perform work with minimal oversight and as part of a team.
  • Ability to support or lead cross-functional teams.
  • Basic skills in Microsoft Office programs.


Level II (in addition to Level I):

  • Five (5) or more years of experience with vendors in the areas of sourcing, negotiating, contracting, and vendor governance.
  • Proficiency with procurement modules of an Enterprise Resource Planning (ERP) tool.
  • Experience driving and leading negotiations for moderate to complex agreements.
  • Experience executing strategic competitive bids and negotiations with a track record of delivering cost efficiencies and value across a diverse portfolio of enterprise sourcing activities.
  • Strong data analysis and strategic thinking skills.
  • Project leadership experience that involves management of projects from inception to completion.
  • Ability to work independently, including exercising considerable decision-making skills in determining objectives and approaches.
  • Ability to lead cross-functional teams, possibly directing the work of others.
  • Strong skills in Microsoft Office programs.


Level III (in addition to Level II):

  • Seven (7) or more years of experience with top tier enterprise vendors in the areas of sourcing, negotiating, contracting, and vendor governance.
  • Advanced proficiency with procurement modules of an Enterprise Resource Planning (ERP) tool.
  • Demonstrated experience driving and leading negotiations for complex agreements with top tier enterprise vendors.
  • Advanced experience executing strategic competitive bids and negotiations with a track record of delivering significant cost efficiencies and value across a diverse portfolio of enterprise sourcing activities.
  • Demonstrated tact and poise in dealing with senior-level management and contract professionals.
  • Advanced presentation skills and advanced teambuilding skills.
  • Subject matter expert in one or more categories / commodities.
  • Advanced skills in Microsoft Office programs.


Level IV (in addition to Level III):

  • Ten (10) or more years of experience with top tier enterprise vendors in the areas of sourcing, negotiating, contracting, and vendor governance.
  • Expertise with procurement modules of an Enterprise Resource Planning (ERP) tool.
  • Demonstrated experience driving and leading negotiations for large complex agreements with top tier enterprise vendors.
  • Proven expertise executing strategic competitive bids and negotiations with a track record of delivering benchmark cost efficiencies and value across a diverse portfolio of enterprise sourcing activities.
  • Demonstrated tact and poise in dealing with executive level management and contract professionals.
  • Exceptional ability to think strategically and create, develop, and drive robust operational action plans.
  • Subject matter expert in multiple categories / commodities.
  • Highly polished presentation skills, expert teambuilding and robust leadership skills.
  • Expertise in Microsoft Office programs.
  • Previous experience in mentoring and training.


Physical Requirements:

  • Ability to work while sitting and/or standing at a workstation viewing a computer and using a keyboard, mouse and/or phone for three (3) or more hours at a time.
  • Ability to travel across the Health Plan service region for meetings and/or trainings as needed.


************


In support of the Americans with Disabilities Act, this job description lists only those responsibilities and qualifications deemed essential to the position.


Equal Opportunity Employer

Compensation Range(s):

Level I (E3): Minimum: $62,400 - Maximum: $106,929

Level II (E5): Minimum: $71,880 - Maximum: $129,384

The salary range indicated in this posting represents the minimum and maximum of the salary range for this position. Actual salary will vary depending on factors including, but not limited to, budget available, prior experience, knowledge, skill and education as they relate to the position's minimum qualifications, in addition to internal equity. The posted salary range reflects just one component of our total rewards package. Other components of the total rewards package may include participation in group health and/or dental insurance, retirement plan, wellness program, paid time away from work, and paid holidays.

Please note: There may be opportunity for remote work within all jobs posted by the Excellus Talent Acquisition team. This decision is made on a case-by-case basis.


All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.