1

Grc Risk Analyst Jobs in Florida (NOW HIRING)

Analyst - Compliance

Sunrise, FL · On-site

$65K - $102K/yr

The Global Risk & Compliance (GRC) organization serves as American Express' independent risk ... The Analyst will provide compliance advisory, support compliance risk assessments, perform ...

The Global Risk & Compliance (GRC) organization serves as American Express' independent risk ... The Analyst will provide compliance advisory, support compliance risk assessments, perform ...

This position requires a highly analytical, detail-oriented professional with experience ... What You'll Do: * Assist with Annual Risk Assessment & Audit Planning * Attend interviews with ...

Showing results 21-40

Grc Risk Analyst information

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What is a GRC Risk Analyst?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.
What job categories do people searching Grc Risk Analyst jobs in Florida look for? The top searched job categories for Grc Risk Analyst jobs in Florida are:
What cities in Florida are hiring for Grc Risk Analyst jobs? Cities in Florida with the most Grc Risk Analyst job openings:
Infographic showing various Grc Risk Analyst job openings in Florida as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 9% Part Time, and 3% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.

GRC Specialist Senior

City National Bank of Florida

Coral Gables, FL • On-site, Remote

$94K/yr

Full-time

Re-posted 21 days ago


Job description

The GRC Specialist Senior is responsible for conducting security assessments, control testing, issues management, and the development of metrics and compliance reports in alignment with the Bank's technology risk management framework, regulatory requirements, and departmental policies, while collaborating with auditors and risk management to safeguard the Bank's assets and sensitive information. This role also leads efforts to automate cybersecurity and GRC processes using approved AI-enabled technologies to improve efficiency and reduce manual workload. The position exercises discretion and independent judgment to evaluate risk, interpret regulatory requirements, and establish automated control procedures aligned with applicable frameworks and governance standards.


What You'll Do:
  • Lead risk and control self-assessments with IT and cybersecurity subject matter experts and the enterprise risk management team.
  • Evaluate control design and operating effectiveness, determining risk exposure and recommending corrective actions to address identified gaps.
  • Collaborate with GRC, engineering, SecOps, IT operations, and BCP teams to define requirements and ensure scalable, secure, and maintainable AI-driven automation solutions. Identify opportunities to develop automated solutions using Microsoft Copilot, Power Automate, or another approved automation tool.
  • Develop and maintain cybersecurity and IT policies, standards, procedures, and program metrics; and develop automated compliance reports and risk metrics for executive leadership to improve decision-making and reduce operational risk.
  • Own engagement with process and control owners, auditors, and consultants by assessing issue severity and ensuring appropriate risk-based remediation actions are defined, prioritized, and implemented.
  • Advise internal stakeholders on internal control design for ongoing risk mitigation of information systems based on regulatory requirements and best practices.
  • Communicate security issues and risks effectively to diverse audiences and ensure compliance with applicable controls based on a unified framework.
  • Identify and address process gaps proactively, recommending improvements to advance the Bank’s information security program maturity in alignment with company goals.
  • Guide program leaders on risk remediation efforts, ensuring adequacy of response and timeliness based on risk severity.
  • Perform major assignments related to GRC program operations, including evaluation of high-risk processes and applications, strategic planning inputs, and execution of automation initiatives.
  • Work independently on complex programs and assignments with diverse teams and perform other duties as assigned.

  • 5-7 years of of applied work experience in cyber security compliance management, cyber security programs, data engineering, analytics or integration, audits, assessments, risk and remediation.
  • Knowledge of AI concepts (LLMs, prompt design, limitations, hallucinations, etc.)
  • Knowledge of information security management, governance, and compliance principles, practices, laws, rules, regulations, and frameworks such as GLBA, FFIEC, and NIST.
  • Knowledge of IT systems and processes, network infrastructure, data architecture, and protocols.
  • Skills in using AI/ML platforms and automation frameworks, such as Microsoft AI solutions (Power Automate, Copilot Studio) and AI Foundry, for developing agents, workflow automation, and predictive analytics in cybersecurity and GRC environments (desirable).
  • Skill in applying cyber and cloud security frameworks, architecture, design, operations, controls, and service orchestration.
  • Proficiency in Microsoft Office products (Word, Excel, PowerPoint).
  • Ability to develop and implement enterprise governance, risk, and compliance strategies and solutions.
  • Ability to research and locate information related to internal and external organizations using online and other sources.
  • Skill in security project management and planning.
  • Ability to maintain confidentiality and handle sensitive information appropriately.
  • Ability to troubleshoot and operate computers and various software packages.
  • Ability to define problems, collect and analyze data, establish facts, and draw valid conclusions.
  • Ability to use judgment and ingenuity in maintaining objectives and technical standards.
  • Ability to communicate technical issues effectively to diverse audiences, both in writing and verbally.
  • Ability to apply a risk-based approach to planning, executing, and reporting on audit engagements and auditing processes.
 

  • Bachelor's Degree in Business Administration, Information Systems, Accounting, Finance, or a related field, preferred.
  • Or;an equivalent combination of education and/or relevant professional experience may be considered in lieu of a degree.

Certification in any of the following is preferred but not required:

  • Microsoft certifications such as Power Platform Fundamentals (PL-900) or Copilot Studio Applied Skills (APL-7008)
  • CISA (Certified Information Systems Auditor), CRISC (Certified in Risk and Information Systems Control), or CISSP (Certified Information Systems Security Professional).

Equal Opportunity

City National Bank of Florida is an Equal Opportunity Employer. We do not discriminate based on race, color, religion, sex, national origin, age, disability, genetic information, protected veteran status, or any status protected by federal, state, or Florida law. We comply with the ADA and applicable Florida laws.

Interview Guidelines

To ensure a fair interview process, the use of AI wearables, AT tools, AI applications, or other external assistance is strickly prohibited. 

Accommodations

If you require a reasonable accommodation to apply or participate in the hiring process, please contact our Talent Attraction team at talent.attraction@citynational.com