1

Grc Risk Analyst Jobs in Arizona (NOW HIRING)

Cyber Security Technical GRC - VP

Tempe, AZ · Hybrid

$106K - $143K/yr

... Compliance (GRC) team.Theposition requires adeep understanding of how cloud environments ... Monitor and analyze risk trends (internal and external) to proactively mitigate potential ...

Risk Treatment Specialist

Tempe, AZ · Hybrid

$108K - $185K/yr

Produce impactful and insightful thematic analysis to support proactive risk management * Maintain ... Engage with Data & Technology teams and Risk Enablement team for relevant GRC tooling enhancements ...

Washington St., Phoenix, AZ 85007 Closing Date: 08/18/2026 at 3:00 PM Position Overview The State of Arizona (AZDES) is seeking an experienced IT Security Analyst (Governance, Risk & Compliance - GRC ...

New

Duties and Responsibilities ● IT Security Risk and Privacy Assessments - Assess, document, and ... GRC tools ● Experience working with multiple security frameworks such as SOX, CMMC, NIST, SOC ...

The role requires analytical skills, a can-do attitude to decision-making and problem solving, and ... Knowledge of GRC/IT Assurance services. * Proficiency with HubSpot or a comparable marketing ...

Showing results 41-60

Grc Risk Analyst information

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What is a GRC Risk Analyst?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.

What job categories do people searching Grc Risk Analyst jobs in Arizona look for?

The top searched job categories for Grc Risk Analyst jobs in Arizona are:

What cities in Arizona are hiring for Grc Risk Analyst jobs?

Cities in Arizona with the most Grc Risk Analyst job openings:

Infographic showing various Grc Risk Analyst job openings in Arizona as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution.

Cybersecurity GRC Compliance Principal

Northern Trust

Tempe, AZ

Full-time

Re-posted 17 days ago


Northern Trust rating

8.2

Company rating: 8.2 out of 10

Based on 27 frontline employees who took The Breakroom Quiz


Job description

About Northern Trust:

Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.

Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.

This role will sit in the Cybersecurity Governance, Risk and Compliance (GRC) team within Northern Trust's Technology function (1st Line of Defense). The Cybersecurity GRC Compliance Principal will act as an experienced subject matter expert driving the operation and enhancement of the functions of the team, which include monitoring and adherence to cyber rules and regulations, controls oversight and assurance, and co-ordination of cyber controls information and evidence to regulators, auditors and clients. The ideal candidate will combine deep subject matter expertise in both cybersecurity and assurance (audit or compliance) disciplines, and have exceptional communication and stakeholder management skills. You'll join a growing Cybersecurity GRC team working closely with engineering, risk, and business leaders across the firm.

The key responsibilities of the role include:

This role plays a critical part in protecting client trust, enabling business growth, and ensuring Northern Trust can confidently operate in an increasingly complex regulatory environment.

  • Lead the technical direction and development of cyber compliance and assurance initiatives, providing expert guidance and support.
  • Act as a central point of coordination and subject matter expert for cyber controls information and evidence requests, including SOC2 and SOX testing and reporting for all cyber controls.
  • Support Cybersecurity audits, providing expertise, consolidation, and coordination.
  • Facilitate the production of information and evidence on cyber controls for regulatory requests.
  • Facilitate the production of information and evidence on cyber controls for client requests, supporting new client revenue generation and existing client retention.
  • Oversee adherence to all cyber-related regulatory requirements in all jurisdictions globally in which Northern Trust operates, leading action to address new requirements.
  • Provide oversight, tracking, analysis, and reporting of all cybersecurity issues and findings to ensure timely, complete, and compliant remediation.
  • Proactively work with the broader Cybersecurity team to ensure new products, services, and processes are built and operated in a controlled and compliant manner.
  • Engage with a range of senior stakeholders across Lines of Defense to ensure cybersecurity regulations and internal control requirements are well understood and embedded in business and technology practices.

Skills/Qualifications:

The company and our team support in role development with opportunities for in role development and professional training, we are looking for experience evidenced by some of the below:

  • Bachelor's or Master's degree in Information Security, Computer Science, or a related field.
  • Minimum of 10 years of experience in cybersecurity, with a focus on assurance or audit.
  • Extensive knowledge of cyber regulations, risk management frameworks, and methodologies.
  • Proven experience in technical leadership roles, influencing executive stakeholders.
  • Strategic thinker with a strong understanding of cyber threats, vulnerabilities, and risk mitigation options.
  • Innovative thinker and adaptable to change.
  • Exceptional communication and presentation skills, capable of translating technical risk into business terms.
  • Excellent analytical, problem-solving, and decision-making skills.
  • Relevant certifications such as CISSP, CISM, CRISC, or similar.

Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)

Working with Us:

As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.

Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.

We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater

Reasonable accommodation

Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com.

We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.

Apply today and talk to us about your flexible working requirements and together we can achieve greater.

About Our Tempe Office

The Northern Trust Tempe office opened in 2015 with 75 employees and now serves over 75 different business functions with more than 700 employees. The team is recognized as a Global Capability Center that delivers exceptional value, quality, expertise and innovation through our diverse talent.Learn more.


What Northern Trust employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom