1

Grc Risk Analyst Jobs in Arizona (NOW HIRING)

Primary point of contact for AI-specific incident response## What we're looking for* 3+ years in IT governance, security GRC, or comparable risk-analysis role* Strong written communication and policy ...

The analyst transforms the risk register from a static document into a dynamic governance ... Engages as necessary in all GRC functions to maintain an understanding of process and procedures

The analyst transforms the risk register from a static document into a dynamic governance ... Engages as necessary in all GRC functions to maintain an understanding of process and procedures

The analyst transforms the risk register from a static document into a dynamic governance ... Engages as necessary in all GRC functions to maintain an understanding of process and procedures

The analyst transforms the risk register from a static document into a dynamic governance ... Engages as necessary in all GRC functions to maintain an understanding of process and procedures

The analyst transforms the risk register from a static document into a dynamic governance ... Engages as necessary in all GRC functions to maintain an understanding of process and procedures

The analyst transforms the risk register from a static document into a dynamic governance ... Engages as necessary in all GRC functions to maintain an understanding of process and procedures

Senior GRC Analyst

Phoenix, AZ · On-site

$90 - $130/hr

... the Sr. GRC Analyst, Third‑Party & Human Risk Management (TPHRM) is a risk focused, highly ... This role will assume ownership of the Third‑Party Risk Management (TPRM) process to gather ...

What you'll do The IT Risk Senior Analyst is a strategic advisor responsible for integrating IT ris ... GRC) frameworks, and a proactive attitude focused on improving documentation quality and ...

SaaS - GRC Location: Phoenix, Arizona (3 days a week). Duration: Contract Position Key ... Strong experience in SaaS assessments, vendor risk management, or cloud security. * Good ...

next page

Showing results 1-20

Grc Risk Analyst information

What is a GRC Risk Analyst?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What job categories do people searching Grc Risk Analyst jobs in Arizona look for?

The top searched job categories for Grc Risk Analyst jobs in Arizona are:

What cities in Arizona are hiring for Grc Risk Analyst jobs?

Cities in Arizona with the most Grc Risk Analyst job openings:

Infographic showing various Grc Risk Analyst job openings in Arizona as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.

AI Governance & Risk Analyst

Unió Digital

Tucson, AZ • On-site

$90 - $120/hr

Other

Posted 4 days ago


Job description

# AI Governance & Risk AnalystOperates the Managed AI program for our clients on a recurring cadence. Maintains AI Acceptable Use Policy templates, runs DNS-layer shadow AI monitoring, manages Data Processing Agreements and BAA inventories, and packages quarterly evidence for client audit and insurance review.Full-TimeTucson, AZ or RemoteMid-SeniorApply for this RoleView All Roles## Location & TravelHiring locations: * Tucson, AZ * RemoteTravel requirement: No regular travel required.International travel: Not required.## About this roleThe AI Governance & Risk Analyst operates the Managed AI program for our clients on a recurring cadence. You'll own AI policy maintenance, vendor risk monitoring, DPA management, and quarterly evidence packaging. Primary point of contact for AI-specific incident response.## What you'll do* Maintain AI Acceptable Use Policy templates with vertical addenda (construction, mining, healthcare)* Run DNS-layer shadow AI monitoring and produce the monthly AI Usage Report* Manage Data Processing Agreements and BAA inventories with AI vendors* Package quarterly evidence for client audit and insurance review* Primary point of contact for AI-specific incident response## What we're looking for* 3+ years in IT governance, security GRC, or comparable risk-analysis role* Strong written communication and policy-drafting discipline* Familiarity with regulatory frameworks (HIPAA, SOC 2, NIST CSF, NIST AI RMF, ISO 42001)* Comfortable with technical security data (DNS logs, M365 audit, SIEM extracts)* Eligible to work in the U.S.You'll always hear from usEvery applicant gets a status update within 5 business days. See our 4-stage hiring process on the careers page.## Ready to apply?Submit your resume and a few details. We review every application personally. #J-18808-Ljbffr