1

Grc Analyst Jobs (NOW HIRING)

Senior GRC Analyst Salary: $120k-$140k + bonus Location: Chicago, IL or Austin, TX Hybrid: 3 days onsite, 2 days remote *We are unable to provide sponsorship for this role* Qualifications * Bachelor ...

We are seeking an experienced Cybersecurity GRC Analyst for a 6-month engagement to support our ongoing security compliance and governance initiatives. The ideal candidate will have strong hands-on ...

The IT GRC Analyst II assess, tests, documents, and monitors the SECU technology ecosystem to ensure the IT control environment effectively mitigates risks associated with an everchanging threat ...

SaaS - GRC Location: Phoenix, Arizona (3 days a week). Duration: Contract Position Key ... Analyze shared responsibility models and identify security gaps. * Review controls across IAM ...

What You Will Do As an Entry Level GRC Analyst at Hotman Group you will work side by side with senior team members and partners to help our clients strengthen their cybersecurity and compliance ...

The Opportunity We are hiring a Security GRC & Risk Analyst to own the governance, risk, and compliance execution layer across a holding company and portfolio of businesses. This is a build-oriented ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

GRC Analyst

San Francisco, CA · On-site +1

$134K - $202K/yr

We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance with security and privacy frameworks ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

Senior GRC Analyst

San Francisco, CA · On-site

$183K - $205K/yr

A data-informed mindset, with the ability to use analytics to assess GRC performance and maturity. * One or more relevant professional certifications: * CISA, CRISC, or GRCP preferred * CGEIT, CRMA ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

GRC Analyst

San Francisco, CA · On-site

$95K - $150K/yr

As a GRC Analyst at Zip, you'll be a key driver for ensuring the success of compliance programs at a fast-growing company. Your contributions will be pivotal to the overall growth and competitive ...

Showing results 41-60

Grc Analyst information

See salary details

$36.5K

$97.7K

$228.5K

How much do grc analyst jobs pay per year?

As of Sep 3, 2026, the average yearly pay for grc analyst in the United States is $97,659.00, according to ZipRecruiter salary data. Most workers in this role earn between $55,000.00 and $111,000.00 per year, depending on experience, location, and employer.

What is a GRC analyst?

A GRC (Governance, Risk, and Compliance) Analyst is responsible for ensuring that an organization adheres to regulatory requirements, industry standards, and internal policies. They assess risks, implement compliance programs, and monitor security controls to protect data and systems. Their role often involves working with various departments to identify vulnerabilities, develop risk mitigation strategies, and prepare reports for audits. GRC Analysts play a key role in maintaining regulatory compliance and enhancing an organization's overall security posture.

What does a GRC analyst do?

GRC Analysts are responsible for monitoring and assessing organizational policies, procedures, and controls to ensure compliance with internal and external regulations. Their daily tasks often include performing risk assessments, maintaining documentation, supporting audits, analyzing data for potential security gaps, and preparing reports for management. They regularly collaborate with IT, legal, and business teams to remediate vulnerabilities and strengthen compliance programs. This dynamic role requires both independent research and cross-departmental communication to help organizations proactively manage risk and regulatory obligations.

What are the key skills and qualifications needed to thrive as a GRC analyst?

To thrive as a GRC Analyst, you need a solid understanding of governance, risk management, and compliance frameworks, often complemented by a degree in information security, business, or a related field. Experience with GRC platforms (like RSA Archer, ServiceNow, or LogicManager), and certifications such as CISA, CRISC, or CISSP are highly valued. Strong analytical thinking, attention to detail, effective communication, and collaboration skills set outstanding GRC Analysts apart. These capabilities are vital for ensuring organizations meet regulatory requirements, identify and mitigate risks, and foster a culture of compliance.

Is GRC analyst an entry level job?

A GRC analyst role can be entry-level or require some experience, depending on the organization. Entry-level positions typically focus on basic compliance, risk management, and using tools like GRC software, often requiring relevant certifications or a related degree. More advanced roles may demand several years of experience and specialized knowledge.

Is GRC analyst in high demand?

GRC analysts are in high demand due to increasing focus on governance, risk management, and compliance across industries. Organizations seek professionals with skills in cybersecurity frameworks, regulatory standards, and tools like GRC software to manage risks effectively.

What cities are hiring for Grc Analyst jobs?

Cities with the most Grc Analyst job openings:

What are the most commonly searched types of Grc Analyst jobs?

The most popular types of Grc Analyst jobs are:

What states have the most Grc Analyst jobs?

States with the most job openings for Grc Analyst jobs include:

What job categories do people searching Grc Analyst jobs look for?

The top searched job categories for Grc Analyst jobs are:

Infographic showing various Grc Analyst job openings in the United States as of August 2026, with employment types broken down into 89% Full Time, 6% Part Time, and 5% Contract. Highlights an 82% Physical, 7% Hybrid, and 11% Remote job distribution, with an average salary of $97,659 per year, or $47 per hour.

Other

Posted 9 days ago


Job description

Senior GRC Analyst

Salary: $120k-$140k + bonus

Location: Chicago, IL or Austin, TX

Hybrid: 3 days onsite, 2 days remote

*We are unable to provide sponsorship for this role*

Qualifications

  • Bachelor s degree and 4+ years of Information Security experience
  • Strong working knowledge of security frameworks and standards such as ISO 27001, National Institute of Standards and Technology (NIST), System and Organization Controls (SOC), and Standardized Information Gathering (SIG)
  • Experience leading risk assessments, vendor security reviews, and client-facing security discussions with professionalism and tact.
  • Familiarity with GRC platforms, role-based access controls, and a broad range of security technologies and tools.
  • Working knowledge of areas such as authentication, encryption, firewalls, SIEM, intrusion detection/prevention, vulnerability management, mobile security, and privileged access management.

Responsibilities

  • Lead responses to client security assessments, questionnaires, and audits, documenting evidence and performing risk assessments as needed.
  • Create, maintain, and evolve security policies, standards, guidelines, and support documentation through strong technical writing.
  • Manage and support processes that ensure Information Technology (IT) systems meet cybersecurity, risk, and compliance requirements.
  • Serve as an Information Security subject matter expert, advising technical and non-technical stakeholders across the organization.
  • Manage the third-party Security Vendor Risk Management program, including assessments, remediation tracking, and lifecycle oversight.
  • Oversee the security exception request process and provide guidance on appropriate risk treatment decisions.
  • Manage the full lifecycle of the Security Awareness program, including roadmap development, training evaluation, and effectiveness measurement.
  • Support and optimize Governance, Risk, and Compliance (GRC) technology platforms and associated workflows.
  • Conduct evaluations of IT programs and components to confirm alignment with published security standards and frameworks.