1

Grc Analyst Jobs in Raleigh, NC (NOW HIRING)

The IT GRC Analyst II assess, tests, documents, and monitors the SECU technology ecosystem to ensure the IT control environment effectively mitigates risks associated with an everchanging threat ...

As a Security Analyst at Lucid Software, you will protect our corporate assets, world-class web ... You will focus on the execution of day-to-day GRC (Governance, Risk, and Compliance) operations ...

As a Security Analyst at Lucid Software, you will protect our corporate assets, world-class web ... You will focus on the execution of day-to-day GRC (Governance, Risk, and Compliance) operations ...

Job Summary - Risk Analysis (Raleigh, NC) - Identify, assess, and mitigate risks across business ... GRC) initiatives, policy reviews, audit readiness, issue management, control monitoring, and ...

Risk Analysis

Raleigh, NC · On-site

$100K - $120K/yr

Risk Analysis Must Have Technical/Functional Skills • Risk identification, assessment, mitigation ... GRC) initiatives, policy adherence reviews, audit readiness, issue management, control monitoring ...

Preparing various reports by collecting, analyzing, visualizing, and summarizing source data. * This role is responsible for contributing to all aspects of the Bank's GRC platform, including design ...

Contract Analyst

Raleigh, NC · Hybrid

$67K - $81K/yr

Experience with Archer governance, risk, and compliance (GRC) platform Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully ...

As a security analyst at Lucid you will be helping to protect corporate assets, including our world ... party risk management, GRC, customer due diligence, etc. * Understanding of common security ...

next page

Showing results 1-20

Grc Analyst information

See Raleigh, NC salary details

$35.5K

$94.9K

$222.1K

How much do grc analyst jobs pay per year?

As of Aug 21, 2026, the average yearly pay for grc analyst in Raleigh, NC is $94,928.00, according to ZipRecruiter salary data. Most workers in this role earn between $53,500.00 and $107,900.00 per year, depending on experience, location, and employer.

What is a GRC analyst?

A GRC (Governance, Risk, and Compliance) Analyst is responsible for ensuring that an organization adheres to regulatory requirements, industry standards, and internal policies. They assess risks, implement compliance programs, and monitor security controls to protect data and systems. Their role often involves working with various departments to identify vulnerabilities, develop risk mitigation strategies, and prepare reports for audits. GRC Analysts play a key role in maintaining regulatory compliance and enhancing an organization's overall security posture.

What does a GRC analyst do?

GRC Analysts are responsible for monitoring and assessing organizational policies, procedures, and controls to ensure compliance with internal and external regulations. Their daily tasks often include performing risk assessments, maintaining documentation, supporting audits, analyzing data for potential security gaps, and preparing reports for management. They regularly collaborate with IT, legal, and business teams to remediate vulnerabilities and strengthen compliance programs. This dynamic role requires both independent research and cross-departmental communication to help organizations proactively manage risk and regulatory obligations.

What are the key skills and qualifications needed to thrive as a GRC analyst?

To thrive as a GRC Analyst, you need a solid understanding of governance, risk management, and compliance frameworks, often complemented by a degree in information security, business, or a related field. Experience with GRC platforms (like RSA Archer, ServiceNow, or LogicManager), and certifications such as CISA, CRISC, or CISSP are highly valued. Strong analytical thinking, attention to detail, effective communication, and collaboration skills set outstanding GRC Analysts apart. These capabilities are vital for ensuring organizations meet regulatory requirements, identify and mitigate risks, and foster a culture of compliance.

Is GRC analyst an entry level job?

A GRC analyst role can be entry-level or require some experience, depending on the organization. Entry-level positions typically focus on basic compliance, risk management, and using tools like GRC software, often requiring relevant certifications or a related degree. More advanced roles may demand several years of experience and specialized knowledge.

Is GRC analyst in high demand?

GRC analysts are in high demand due to increasing focus on governance, risk management, and compliance across industries. Organizations seek professionals with skills in cybersecurity frameworks, regulatory standards, and tools like GRC software to manage risks effectively.

What are the most commonly searched types of Grc Analyst jobs in Raleigh, NC?

The most popular types of Grc Analyst jobs in Raleigh, NC are:

What cities near Raleigh, NC are hiring for Grc Analyst jobs?

Cities near Raleigh, NC with the most Grc Analyst job openings:

Infographic showing various Grc Analyst job openings in Raleigh, NC as of August 2026, with employment types broken down into 86% Full Time, and 14% Contract. Highlights an 90% In-person, 5% Hybrid, and 5% Remote job distribution, with an average salary of $94,928 per year, or $45.6 per hour.

Full-time

Posted 11 days ago


State Employees' Credit Union (North Carolina) rating

8.2

Company rating: 8.2 out of 10

Based on 23 frontline employees who took The Breakroom Quiz


Job description

If you are motivated and believe in the credit union philosophy of "People Helping People," join our team!
Position Overview: The IT GRC Analyst II assess, tests, documents, and monitors the SECU technology ecosystem to ensure the IT control environment effectively mitigates risks associated with an everchanging threat landscape. The IT GRC Analyst will possess a wide range of technical and interpersonal skills to bridge the gap between technology organizations and the business. Must have a big-picture perspective, ability to execute end-to-end risk management processes, and ability to quickly establish trust and build productive relationships across multiple departments. The IT GRC Analyst will require expertise to perform technology risk assessments, provide input to and/or document IT policies, standards, and guidelines, develop, monitor, and track risk remediation plans, and aggregate and report key risk metrics to senior stakeholders.
Responsibilities:
20% Identify, document, and monitor technology risks present across both internal and external (vendor / cloud) environments
20% Quantify inherent and residual IT risk levels to enhance analytics, inform prioritizations, and for use in management reporting
20% Work with risk remediation owners to establish remediation plans with milestones and target dates, and monitor progress towards remediation, escalating as appropriate
20% Execute technology risk management processes and provide input to support continuous improvement of process and program design
10% Perform risk and controls assessments while aggregating reporting for Audit and/or Regulatory issues.
10% Partner with relevant stakeholders to establish clear and consistent IT risk reporting, metrics, KRIs, and KPIs to inform decision making
Required Relevant Experience: Minimum 5 years
Required Knowledge, Abilities, Skills:
  • Teamwork, collaboration, self-driven and effective communication skills - both written and verbal.
  • 5 years of IT Security and/or IT Risk Management experience working in a mid-to-large size company

Basic proficiency or ability to learn one or more of the following:
  • Risk and controls assessments
  • Documenting and maintaining IT Policies / Standards
  • IT Risk aggregation, reporting, KPI/KRIs
  • Issues management
  • Third party risk management

Working knowledge of various industry security standards and frameworks including: NIST, ISO 27001, ISF Standard of Good Practice (SoGP), etc.
Desired Knowledge, Abilities, Skills:
  • 5+ years working in a financial institution.
  • Knowledge of modern enterprise and security architectures, their challenges, common approaches to overcome their challenges, and their inherent security strengths and weaknesses.
  • Professional certifications such as: CISSP, CISA, CISM, GIAC, CGEIT, CRISC, OSCE, or other relevant industry certification
  • Experience working within a DevOps environment

SECU provides equal employment opportunity to all qualified persons regardless of race, color, religion, age, sex, sexual orientation, gender identity, national origin, genetic information, disability, veteran status, or other classification protected by law.
Disclaimer
State Employees' Credit Union reserves the right to fill this role at a higher/lower level based on business need.

What State Employees' Credit Union (North Carolina) employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom