Corporate
Irvine, CA · On-site
$90K - $95K/yr
The GRC-RegulatoryCompliance Senior Analyst require proficient knowledge and understanding of compliancestandards and frameworks to include end-to-endbusiness process, security frameworks (including ...
Irvine, CA · On-site
$90K - $95K/yr
The GRC-RegulatoryCompliance Senior Analyst require proficient knowledge and understanding of compliancestandards and frameworks to include end-to-endbusiness process, security frameworks (including ...
Irvine, CA · On-site
$90K - $95K/yr
The GRC-RegulatoryCompliance Senior Analyst require proficient knowledge and understanding of compliancestandards and frameworks to include end-to-endbusiness process, security frameworks (including ...
Santa Ana, CA · Hybrid
What We Do First American is seeking a Risk Analyst to help strengthen our risk management and ... GRC platforms such asAuditBoard, ServiceNow, or similar systems. Pay Range: $64,300.00 - $85,700.00 ...
New
Santa Ana, CA · Hybrid
What We Do First American is seeking a Risk Analyst to help strengthen our risk management and ... GRC platforms such asAuditBoard, ServiceNow, or similar systems. Pay Range: $64,300.00 - $85,700.00 ...
New
Drive enhancements to ERM methodologies, processes, reporting, analytics, governance, GRC technology, and tools, including opportunities for standardization and automation. * Independently lead ...
Drive enhancements to ERM methodologies, processes, reporting, analytics, governance, GRC technology, and tools, including opportunities for standardization and automation. * Independently lead ...
Santa Ana, CA · On-site
$98 - $130/hr
Drive enhancements to ERM methodologies, processes, analytics, governance GRC technology, and tools, including opportunities for standardization and automation. * Independently lead complex ...
New
Santa Ana, CA · On-site
$98 - $130/hr
Drive enhancements to ERM methodologies, processes, analytics, governance GRC technology, and tools, including opportunities for standardization and automation. * Independently lead complex ...
New
Orange, CA · On-site
$54.25 - $73.75/hr
Skills should include Oracle eBS 12i, Oracle database 10g/11i, GRC Controls, GRC Manager, Hyperion and OBIEE is a plus. Day to day duties will include the systems analysis, documentation ...
Orange, CA · On-site
$54.25 - $73.75/hr
Skills should include Oracle eBS 12i, Oracle database 10g/11i, GRC Controls, GRC Manager, Hyperion and OBIEE is a plus. Day to day duties will include the systems analysis, documentation ...
Orange, CA · On-site
$54.25 - $73.75/hr
Skills should include Oracle eBS 12i, Oracle database 10g/11i, GRC Controls, GRC Manager, Hyperion and OBIEE is a plus. Day to day duties will include the systems analysis, documentation ...
Orange, CA · On-site
$54.25 - $73.75/hr
Skills should include Oracle eBS 12i, Oracle database 10g/11i, GRC Controls, GRC Manager, Hyperion and OBIEE is a plus. Day to day duties will include the systems analysis, documentation ...
Drive enhancements to ERM methodologies, processes, reporting, analytics, governance, GRC technology, and tools, including opportunities for standardization and automation. * Independently lead ...
Drive enhancements to ERM methodologies, processes, reporting, analytics, governance, GRC technology, and tools, including opportunities for standardization and automation. * Independently lead ...
Tustin, CA · On-site
$108 - $132/hr
Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar ... Strong analytical, troubleshooting, and communication skills. Preferred Qualifications * Experience ...
Tustin, CA · On-site
$108 - $132/hr
Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar ... Strong analytical, troubleshooting, and communication skills. Preferred Qualifications * Experience ...
Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar ... Strong analytical, troubleshooting, and communication skills. Preferred Qualifications * Experience ...
Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar ... Strong analytical, troubleshooting, and communication skills. Preferred Qualifications * Experience ...
Tustin, CA · On-site
Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar ... Strong analytical, troubleshooting, and communication skills. Preferred Qualifications * Experience ...
Tustin, CA · On-site
Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar ... Strong analytical, troubleshooting, and communication skills. Preferred Qualifications * Experience ...
Tustin, CA · On-site
Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar ... Strong analytical, troubleshooting, and communication skills. Preferred Qualifications * Experience ...
Quick apply
Tustin, CA · On-site
Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar ... Strong analytical, troubleshooting, and communication skills. Preferred Qualifications * Experience ...
Irvine, CA · On-site
Working with the QA TCOE Manager, delivery teams, vendors, and IT GRC, this role reduces manual ... Analyze automation gaps and recommend priorities based on risk, criticality, defect trends, and ...
Irvine, CA · On-site
Working with the QA TCOE Manager, delivery teams, vendors, and IT GRC, this role reduces manual ... Analyze automation gaps and recommend priorities based on risk, criticality, defect trends, and ...
Irvine, CA · On-site
Working with the QA TCOE Manager, delivery teams, vendors, and IT GRC, this role reduces manual ... Analyze automation gaps and recommend priorities based on risk, criticality, defect trends, and ...
Irvine, CA · On-site
Working with the QA TCOE Manager, delivery teams, vendors, and IT GRC, this role reduces manual ... Analyze automation gaps and recommend priorities based on risk, criticality, defect trends, and ...
Irvine, CA · On-site
Working with the QA TCOE Manager, delivery teams, vendors, and IT GRC, this role reduces manual ... Analyze automation gaps and recommend priorities based on risk, criticality, defect trends, and ...
Quick apply
Irvine, CA · On-site
Working with the QA TCOE Manager, delivery teams, vendors, and IT GRC, this role reduces manual ... Analyze automation gaps and recommend priorities based on risk, criticality, defect trends, and ...
... cause analysis to prevent recurrence of incidents. • Collaborate with governance, risk, and compliance (GRC) teams to meet regulatory and framework requirements (e.g., NIST CSF 2.0, ISO 27001 ...
... cause analysis to prevent recurrence of incidents. • Collaborate with governance, risk, and compliance (GRC) teams to meet regulatory and framework requirements (e.g., NIST CSF 2.0, ISO 27001 ...
Lead the evaluation and implementation of a Governance, Risk, and Compliance (GRC) platform aligned ... Leverage data analytics and AI-enabled tools to identify trends, anomalies, and control gaps ...
Lead the evaluation and implementation of a Governance, Risk, and Compliance (GRC) platform aligned ... Leverage data analytics and AI-enabled tools to identify trends, anomalies, and control gaps ...
Irvine, CA · On-site
$169K/yr
Lead the evaluation and implementation of a Governance, Risk, and Compliance (GRC) platform aligned ... Leverage data analytics and AI-enabled tools to identify trends, anomalies, and control gaps ...
Irvine, CA · On-site
$169K/yr
Lead the evaluation and implementation of a Governance, Risk, and Compliance (GRC) platform aligned ... Leverage data analytics and AI-enabled tools to identify trends, anomalies, and control gaps ...
Pomona, CA · On-site +1
$40/hr
Provide analysis and trending of security log data from a large number of various security devices * Collaborate with other teams to gather information regarding security problems, issues, and ideas ...
Pomona, CA · On-site +1
$40/hr
Provide analysis and trending of security log data from a large number of various security devices * Collaborate with other teams to gather information regarding security problems, issues, and ideas ...
Pomona, CA · On-site
$40/hr
Provide analysis and trending of security log data from a large number of various security devices * Collaborate with other teams to gather information regarding security problems, issues, and ideas ...
Pomona, CA · On-site
$40/hr
Provide analysis and trending of security log data from a large number of various security devices * Collaborate with other teams to gather information regarding security problems, issues, and ideas ...
Irvine, CA · On-site
$102 - $134/hr
Identify key business and operational risks and conduct risk impact analysis. * Develop risk mitigation plans and monitor execution status. * Design and maintain the enterprise GRC / ERM framework ...
Irvine, CA · On-site
$102 - $134/hr
Identify key business and operational risks and conduct risk impact analysis. * Develop risk mitigation plans and monitor execution status. * Design and maintain the enterprise GRC / ERM framework ...
$38.1K - $56.3K
24% of jobs
$56.9K is the 25th percentile. Wages below this are outliers.
$56.3K - $74.5K
16% of jobs
The median wage is $84.1K / yr.
$74.5K - $92.7K
18% of jobs
$109.3K is the 75th percentile. Wages above this are outliers.
$92.7K - $110.9K
18% of jobs
$110.9K - $129.1K
11% of jobs
$129.1K - $147.3K
4% of jobs
$147.3K - $165.5K
1% of jobs
$165.5K - $183.8K
1% of jobs
$183.8K - $202K
2% of jobs
$202K - $220.2K
2% of jobs
$220.2K - $238.4K
2% of jobs
$38.1K
$101.9K
$238.4K
A GRC (Governance, Risk, and Compliance) Analyst is responsible for ensuring that an organization adheres to regulatory requirements, industry standards, and internal policies. They assess risks, implement compliance programs, and monitor security controls to protect data and systems. Their role often involves working with various departments to identify vulnerabilities, develop risk mitigation strategies, and prepare reports for audits. GRC Analysts play a key role in maintaining regulatory compliance and enhancing an organization's overall security posture.
GRC Analysts are responsible for monitoring and assessing organizational policies, procedures, and controls to ensure compliance with internal and external regulations. Their daily tasks often include performing risk assessments, maintaining documentation, supporting audits, analyzing data for potential security gaps, and preparing reports for management. They regularly collaborate with IT, legal, and business teams to remediate vulnerabilities and strengthen compliance programs. This dynamic role requires both independent research and cross-departmental communication to help organizations proactively manage risk and regulatory obligations.
To thrive as a GRC Analyst, you need a solid understanding of governance, risk management, and compliance frameworks, often complemented by a degree in information security, business, or a related field. Experience with GRC platforms (like RSA Archer, ServiceNow, or LogicManager), and certifications such as CISA, CRISC, or CISSP are highly valued. Strong analytical thinking, attention to detail, effective communication, and collaboration skills set outstanding GRC Analysts apart. These capabilities are vital for ensuring organizations meet regulatory requirements, identify and mitigate risks, and foster a culture of compliance.
For Grc Analyst jobs in Riverside, CA, the most frequently searched job titles are:
The top searched job categories for Grc Analyst jobs in Riverside, CA are:
Cities near Riverside, CA with the most Grc Analyst job openings:

$90K - $95K/yr
Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted 14 days ago
7.3
Based on 24 frontline employees who took The Breakroom Quiz
Kura Sushi USA is a publicly traded U.S. company established in 2008 as a subsidiary of Kura Sushi, Inc. We are an innovative and tech interactive Japanese restaurant chain serving up the ultimate eater-tainment dining experience with a combination of premium ingredients, advanced technology, and affordable prices to create a one-of-a-kind revolving sushi dining experience.Come join the Kura Krew!
This position is based in Irvine, CA and requires candidates to reside within a reasonable commuting distance of our Irvine office. Team members are expected to work onsite a minimum of one day per week, with additional in-office presence required based on division responsibilities and business needs. This is not a remote position.
The GRC Senior Regulatory ComplianceAnalyst, who has proficient knowledge in regulatory compliance rulesand regulations will be responsible for assisting the Integrated GRC Senior Manager (JurisDoctorate) for ensuring Kura meets all applicable legal, regulatory,and internal regulatory compliance requirements and facilitating centralizedmonitoring. This includes but not limited to:
In addition, the GRC RegulatoryCompliance Senior Analyst will partner with/provide guidance to the GRC SeniorSecurity Analyst and the Head of Information Technology, when applicable, indesigning/implementing information services (IT and security) solutioncomponents used throughout Kura Sushi's environment as well as liaising withthe Internal Audit team for in-scope SOX systems.The GRC Regulatory Compliance SeniorAnalyst will be responsible for assisting the Integrated GRC Senior Manager in facilitatingKura's vendor relationships with several outsourced service providers as needed in establishing a scalable and compliant environment to support the Company'scompliance landscape to include security and technological components. The GRC-RegulatoryCompliance Senior Analyst require proficient knowledge and understanding of compliancestandards and frameworks to include end-to-endbusiness process, security frameworks (including domains such as accessmanagement and data protection), regulatory compliance (e.g., SOX, PCI, CPRA, etc.)and technology standards, procedures, guidelines and; and be able to prepareand communicate compliance issues to the Integrated GRC Senior Manager, VP of ACASand others as directed by the VP of ACAS.
Key Responsibilities
RegulatoryCompliance:
1.Ensurestheorganizationcomplieswithallapplicablelaws,regulations,andinternalpolicies.Thisincludesmonitoringbusinessoperationsandreportinganyinfractions.
2.Partners with General Counsel and other managementmembers, as needed
3.PolicyDevelopment:Create,modify,andimplementcompanypoliciesandprocedurestoalignwithlegalrequirementsandethicalstandards.
4.RiskManagement:Developriskmanagementstrategiesandconductregularauditstoidentifyareasofpotentialnon-compliance.
5.Managethe operational processes for Data Subject Requests (DRS) such as rights toaccess or delete personal data.
6.Maintainup-to-date Records of Processing Activities (RoPA) across departments.
7.Adviseoperational personnel on appropriate responses to recurring confidentiality anddata disclosure inquiries.
8.LiaisonwithRegulatoryBodies:Actasthepointofcontactbetweentheorganizationandregulatoryagencies,handlinginspectionsandaudits.
9.IncidentManagement:Investigatecompliancebreaches,conductrootcauseanalysis,andimplementcorrectiveactionstopreventrecurrence
10.Reporting:Provideregularreportstothe Integrated GRC Senior Manager, VP of ACAS and otherseniormanagementonthestatusofthecomplianceprogramandanyissuesthatarise.
11.Conductsannual regulatory compliance risk assessments
12.Reviewsand main contracts containing PII and system/AI components to ensure DPAs areissued to 3rd party vendors.
13.Performscompliance assessments/reviews, monitors compliance deficiencies/remediationefforts, conducting investigations,
GRC Activities
1.Providesguidance to the Information Services (Security and Technology) management inbuilding a strong IT/Security compliant environment including guiding andmentoring direct and indirect team members.
2.Providingguidance and facilitating coordination with cross-functional members inimplementing processes such as Security and IT governance, risk, and compliance activities toautomate and facilitate continuous monitoringof information security controls, exceptions, risks, and testing.
3.PerformPrivacy Impact Assessment (PIA) and Data Protection Impact Assessment (DPIA)for new system implementations.
4.Liaise with InternalAudit members to ensure appropriate controls over business and IT/Securitydesign while working with the IT management and cross-functional members tofacilitate operational efficiencies and effectiveness.
5.Evaluate third partyvendor contracts, performing privacy and security due diligence on businessassociates and service providers.
6.Developsreporting metrics, dashboards, and obtains and retains evidence and provides tothe Integrated GRC Senior Manager, VP of ACAS or other leadership, as neededfor review.
7.Provides guidance tothe Security Senior Analyst for building the organization's cybersecuritystrategy to ensure Kura Security team is proactively identifying/addressingrelevant security gaps, compliant with internal policies and externalregulatory requirements, and improving Kura's overall security posture andprogram.
8.Collaborates with cross-functionalbusiness, security and the information technology team to ensure securitystrategies and initiatives align with business objectives and regulatorycompliance requirements.
9.Provides guidance to theSecurity Manager in developing the system-wide information security complianceprogram, ensuring IT activities, processes, and procedures meet definedrequirements, policies, and regulations.
10.Collaborates with the IntegratedGRC Senior Analyst, GRC-Senior Security Analysts, Internal Audit and other keymembers who will at a minimum, facilitate and monitor compliance enterprisewide.
11. Facilitation and the coordination, development and implementation of security awareness compliance programs and education while partnering with the Security Manager.
12.Facilitates,guides coordinates, and partners with the Security Manager during the systemsdevelopment life cycle activities and new processes to ensure they are properlyimplemented in conjunction with guidance from the Internal Audit team.
13.Evaluates IT control/processdeficiencies issued by the Internal Audit team and provides remediation plans tothe Internal Audit Team for recommended design improvements while partneringwith the IT/Security team on remediation plan.
14.Facilitates and providesguidance to the IT HOD in the development of IT policies and procedures andensures alignment with company goals and regulatory requirements.
15.Presents issues of IT non-complianceto the Integrated GRC Senior Manager and VP of ACAS
16.Attends continuing professionaleducation to keep abreast of security and technology regulations, emergingrisks and strategies.
17.Presents progress andinitiatives on a monthly basis based on annual plan to the Integrated GRCSenior Manager and VP of ACA
Education/Experience:
1.Bachelor's degree in business, Finance, Law, Accounting, or related field; MBA, Juris Doctorate,Information Technology or advanced degree preferred
2.Prefer Juris Doctorate degreewith compliance certifications such as:CertifiedInformationPrivacyProfessional(CIPP/US),Certified Regulatory Compliance Manager (CRCM),Certified Compliance& Ethics Professional (CCEP); desirable to possess CIA/CISA/CPAcertifications.
3.5 years of experiencein regulatory compliance with legal, compliance and/internal audit role andprefer multi-location restaurant and/or retail businesses background.
4.Big 4 consultingexperience
5.Proficiency with Office365 (O365), particularly: PowerPoint, Outlook, Excel, and Word
6.Proficient with regulatoryrequirements related toCCPA/CPRA, PCI, ESG,Information Security (Cybersecurity), Information Technology, SOX, ADA, FDAetc.
7.Proficient with Optro(formerly Audit Board)-Cross Comply, Risk Oversight, BigID, Contract ManagementSystems, NAVEX
8.Strong regulatorycompliance background.
9.Excellent leadershipand people management skills.
10.Skills in documenting risk,and regulatory compliance activities
11.Familiar with dashboardcreation
12.Communicatesconfidently with executive management, corporate support personnel,cross-functional peers, and product/services providers at appropriate technicallevels for each and liaises with different ACAS functional areas, e.g.,Security, GRC and Internal Audit to ensure appropriate compliance controls. Demonstratesability to articulate business cases for identified technology solutions.
13.Demonstrates ability toarticulate regulatory compliance and information services activities to theAudit Committee or the Board, at the request of the VP of ACAS, if needed.
14.Excellent analyticaland troubleshooting skills.
Benefits & Perks
We're proud to offer a competitive benefits package designed to support our members, including:
401(k) Plan - Available to eligible members, with company matching up to 3% and a 50% match on contributions up to 5%.
Health & Wellness Benefits - Medical, dental, and vision coverage, with additional voluntary ancillary plan options available.
Paid Time Off - Vacation accrual and sick time in accordance with eligibility and applicable requirements.
Performance Bonus - Eligible positions may participate in our performance-based bonus program.
Long-Term Investment Opportunity - Eligible members may have access to a long-term investment program.
Get the full story on Breakroom
Sourced by ZipRecruiter
Traveler accommodation
1,001 - 5,000 Employees
Irvine, CA, US