1

Grc Risk Analyst Jobs in Florida (NOW HIRING)

Cyber Security Technical GRC - VP

Tampa, FL · Hybrid

$104K - $141K/yr

... Compliance (GRC) team.Theposition requires adeep understanding of how cloud environments ... Monitor and analyze risk trends (internal and external) to proactively mitigate potential ...

New

Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.

Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.

Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.

Sr. ServiceNow Developer

Altamonte Springs, FL · On-site

$50.50 - $69.50/hr

... Risk, and Compliance (GRC), and Third-Party Risk Management (TPRM). This role involves working ... Analytics for GRC dashboards and KRI/KPI reporting. * Familiarity with responsible AI practices ...

The goal of this program is to build a new Supplier Risk management capability to better support ... GRC platforms (Metricstream, OpenPages, Archer) a plus Additional Information To know more about ...

Information Security Analyst - GRC Job Title: Information Security Analyst - GRC Position Type ... risk assessments, exception tracking, and remediation documentation related to administrative ...

Populate the Risk Model tab: apply the NIST 800-30 semi-quantitative formula (Likelihood × Impact ... Prior GRC, IT audit support, or data-QA experience in a government or regulated-industry setting.

Showing results 41-60

Grc Risk Analyst information

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What is a GRC Risk Analyst?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.
What job categories do people searching Grc Risk Analyst jobs in Florida look for? The top searched job categories for Grc Risk Analyst jobs in Florida are:
What cities in Florida are hiring for Grc Risk Analyst jobs? Cities in Florida with the most Grc Risk Analyst job openings:
Infographic showing various Grc Risk Analyst job openings in Florida as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 9% Part Time, and 3% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.

Senior Analyst, Cybersecurity and Compliance

White & Case LLP

Tampa, FL • On-site

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 2 days ago

New


Job description

Technology Services team is integral to maintaining the Firm's overall technology, mobile and desktop devices, and core infrastructure to ensure reliable, secure and efficient operations. Technology Services is a single global operation with representation in each of the Firm's offices. Additionally, we have shared service centers in Tampa and Manila, supporting a wide range of technologies and operations. In addition to overseeing critical enterprise systems and providing world-class client service to our global user community, we are committed to achieving a balance between new and innovative technologies while constantly ensuring data security and compliance with legal and regulatory standards, resulting in realizing value from the latest developments in technology, such as generative artificial intelligence and cloud computing models, while safeguarding sensitive client information against cyber threats and other business interruption events. Technology Services plays a significant role in supporting the Firm's systems and people.


Position Summary

The Senior Analyst, Cybersecurity and Compliance plays a pivotal role in protecting the firm against cybersecurity threats. This position is tasked with identifying, evaluating, and monitoring potential cybersecurity risks. They will collaborate with various teams within the firm to ensure that Governance, Risk Management, and Compliance (GRC) areas such as Audits, Information Security Certifications, and Vendor Management Risks are effectively managed. This includes adhering to industry and cybersecurity standards, as well as client and government regulations.

Furthermore, the Senior Analyst, Cybersecurity and Compliance will guide stakeholders in incorporating appropriate security measures into business operations, system designs, and software development processes. This role is responsible for enhancing and implementing processes that assist in planning remediation strategies to ensure compliance with policies and regulations. By providing valuable insights for risk prioritization, the Analyst will prepare reports that highlight trends, risk levels, and metrics. They will focus on building trust and fostering cross-functional partnerships to elevate awareness and successfully implement cybersecurity controls across the firm.

Duties and Accountabilities

The roles and responsibilities of this job include:

  • Maintain and improve the GRC function

  • Provide support for internal assessments and audits at planned intervals and on an ad hoc basis to evaluate and validate the design and operational effectiveness of technical, and administrative controls to help reduce risk in the organization

  • Mentor junior GRC Analysts on the team

  • Assist with monitoring open audit items from internal audits and external compliance/client/certification audits to ensure completion of remediation activities defined in the agreed action plans and risk treatment plans

  • Support continuous monitoring processes to assess compliance with information security policies and standards, legal and regulatory compliance

  • Provide compliance subject matter expertise support to various departments

  • Assist with conducting third-party vendor information security assessment and ongoing third-party assurance activities

  • Design, manage, and update company's compliance related documentation and reports

  • Create any necessary road maps for regulatory compliance

Qualifications

The qualifications for this job include:

  • 5-7+ years of experience within GRC, specifically vendor & risk management standards and frameworks

  • Possessing any cybersecurity certifications, CRISC, CISM, CGEIT, CISA,CISSP, etc.

  • Possessing an understanding of industry standards, certifications, and regulations including NIST800/CSF, ISO 27001

  • Experience with compliance programs related to SSAE16 SOC1, SOC2, PCI, and/or NIST-800-53

  • Working knowledge in Cloud Security assessments, systems, tools, and web application reviews including Secure SDLC life cycle assessments.

  • Working knowledge of enterprise infrastructure and application monitoring tools.

  • Proficient in Microsoft Office applications; SME in Excel and data manipulation

  • Attention to detail. Clear logical and analytical thinker.

  • Able to prioritize and manage multiple tasks under pressure

  • Good verbal, written and numeric skills

  • Ability to travel or work overtime, as needed

This role reports to

Senior Manager, Security and Business Continuity

Equal Opportunities

White & Case is an Equal Employment Opportunity (EEO) employer and is committed to creating a fair workplace. It is our Firm's policy to recruit, employ, train, compensate and promote without regard to race, color, religion, creed, national origin, age, gender, sexual orientation, marital status, military or veteran status, disability, genetic information, or any other category protected by applicable law.

Applicants who are interested in applying for a position and require an accommodation during the process should contact talent.acquisition@whitecase.com.

Benefits at White & Case

White & Case LLP offers a comprehensive suite of benefit programs to all eligible employees, including medical, dental, and vision insurance, life and disability coverage, 401(k) retirement savings, vacation time, and leave programs (including parental leave). Exempt roles are also performance bonus eligible.

The Firm may modify and amend any job description at any time in its sole discretion. Nothing herein creates a contract of employment or otherwise modifies the at-will nature of employment.

The above is only a general description of the essential duties associated with this position and does not represent an exhaustive or comprehensive list of all duties.

Note to Recruitment Agencies

Our internal Recruitment team manages all aspects of lateral hiring. All agencies must have signed terms of business-specific to the relevant office-before submitting any candidates. CVs or applications sent directly to White & Case partners or employees will also not be considered formal introductions. If you have questions, please contact the relevant Recruitment team. We work with our preferred suppliers when engaging agencies.