1

Grc Risk Analyst Jobs in Arizona (NOW HIRING)

SaaS - GRC Location: Phoenix, Arizona (3 days a week). Duration: Contract Position Key ... Strong experience in SaaS assessments, vendor risk management, or cloud security. * Good ...

This role sits at the intersection of cloud security , GRC , risk management , and automation . Minimum Qualifications * 5+ years cloud security, platform security, or security engineering experience ...

Within ProStratus, the CMMC Compliance Analyst operates our Governance, Risk, and Compliance (GRC) platform--managing, generating, and auditing policies, procedures, and supporting evidence required ...

Within ProStratus, the CMMC Compliance Analyst operates our Governance, Risk, and Compliance (GRC) platform--managing, generating, and auditing policies, procedures, and supporting evidence required ...

next page

Showing results 1-20

Grc Risk Analyst information

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What are GRC Risk Analysts?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst, and why are they important?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.
What cities in Arizona are hiring for Grc Risk Analyst jobs? Cities in Arizona with the most Grc Risk Analyst job openings:
Infographic showing various Grc Risk Analyst job openings in Arizona as of June 2026, with employment types broken down into 1% As Needed, 89% Full Time, 9% Part Time, and 1% Contract. Highlights an 76% Physical, 10% Hybrid, and 14% Remote job distribution.
GRC Enterprise Risk Management Director

GRC Enterprise Risk Management Director

Western Alliance Bank

Phoenix, AZ

Full-time

Medical, Dental, Retirement

Posted 15 days ago


Job description

Job Title:

GRC Enterprise Risk Management Director

Location:

CityScape

What you'll do:

As an ERM GRC Director you will lead a team that develops and implements programs to identify, measure, monitor, and control risks throughout the organization. You'll play a key role in the Bank's Enterprise and Operational Risk Management Team, who is responsible for several enterprise wide programs, including Integrated Risk Management/ Governance Risk and Compliance (GRC) and Policy Framework.
  • The GRC Director is responsible for overseeing a team that develops and executes the bank's enterprise-wide Integrated Risk Management strategy. This includes methodology, policies and standards, reporting, training, and continuous improvement.
  • Provide enterprise ownership of integrated risk and governance capabilities. Own the enterprise GRC / Integrated Risk Management capabilities, setting clear governance, standards, and priorities to simplify how risk, controls, and risk program data are managed across the organization. Ensure the platform evolves in a way that reduces complexity, supports consistent execution, and delivers reliable enterprise insight.
  • Enable a coordinated, enterprise wide approach to risk and assurance. Serve as a central connector across the Second Line of Defense teams and other stakeholders (SOX, Third Party Risk, First Line of Defense Testing, IT First Line Risk, and Internal Audit) to align needs, eliminate duplication, and enable a more streamlined, integrated risk operating model.
  • Establish clear data, metrics, and reporting that support decision making. Lead GRC data and reporting strategy to ensure GRC information is complete, trusted, and decision useful. Translate risk and control information into clear, actionable insights for management, regulators, and risk management committees.
  • Lead and develop a high performing GRC team and stakeholder model. Build and lead a strong GRC team and stakeholder network focused on clarity, consistency, and adoption. Drive effective communication, training, and change management so risk and governance processes are easy to understand and execute across the enterprise.
  • Manage a medium to large team (6-16) and help develop, train, and drive continuous improvement.

What you'll need:

  • 10+ years of related experience in Risk Management, Internal Audit, SOX, and Financial Institutions or similar field.
  • Bachelor's degree in related field required.
  • Previous leadership experience required.
  • Advanced to expert knowledge of general banking operations, including deposit operations, loan administration, treasury management and/or other commercial banking products and services.
  • Advanced to expert Knowledge of applicable regulatory and legal compliance obligations, rules and regulations, industry standards and practices.
  • Advanced to expert knowledge and experience with risk and control frameworks (COSO ERM Framework, Basel etc)
  • Advanced to expert knowledge of industry and professional experience across one or more of the three lines of defense (e.g., banking operations, information technology, SOX, compliance, risk management, audit).
  • Advanced to expert technical knowledge of risk frameworks and industry best practices related to COSO Risk Frameworks with advanced certifications in fields related to integrated risk management, technology, and risk data management.
  • Advanced to expert knowledge of data analysis tools and techniques and decision-making abilities.
  • Expert speaking and writing communication skills

Benefits you'll love:
We offer all the important things you'd want - like competitive salaries, an ownership stake in the company, medical and dental insurance, time off, a great 401k matching program, tuition assistance program, an employee volunteer program, and a wellness program. In addition, you'll have the opportunity to bolster your business knowledge, learning the ins and outs of how successful companies operate and manage their finances, giving you invaluable hands-on experience to help grow your career!

About the company:

Western Alliance Bank is a wholly owned subsidiary of Western Alliance Bancorporation. Alliance Bank of Arizona, Alliance Association Bank, Bank of Nevada, Bridge Bank, First Independent Bank, and Torrey Pines Bank are divisions of Western Alliance Bank; Member FDIC. AmeriHome Mortgage is a Western Alliance Bank company.

Western Alliance Bancorporation is committed to equal employment and will consider all qualified applicants without regard to race, sex, color, religion, age, nation origin, marital status, disability, protected veteran status, sexual orientation, gender identity or genetic information. Western Alliance Bancorporation is committed to working with and providing reasonable accommodations for individuals with disabilities. If you are an individual with a disability and require a reasonable accommodation to complete any part of the application process and/or need an alternative method of applying, please email HR@westernalliancebank.com or call 602-386-2488. When contacting us, please provide your contact information and state the nature of your accessibility issue. We will only respond to inquiries concerning requests that involve a reasonable accommodation in the application process.

Western Alliance Bancorporation