... Risk Management, and Compliance (GRC) areas such as Audits, Information Security Certifications ... Furthermore, the Senior Analyst, Cybersecurity and Compliance will guide stakeholders in ...
New
... Risk Management, and Compliance (GRC) areas such as Audits, Information Security Certifications ... Furthermore, the Senior Analyst, Cybersecurity and Compliance will guide stakeholders in ...
New
... Risk Management, and Compliance (GRC) areas such as Audits, Information Security Certifications ... Furthermore, the Senior Analyst, Cybersecurity and Compliance will guide stakeholders in ...
New
... Risk Management, and Compliance (GRC) areas such as Audits, Information Security Certifications ... Furthermore, the Senior Analyst, Cybersecurity and Compliance will guide stakeholders in ...
New
... Risk Management, and Compliance (GRC) areas such as Audits, Information Security Certifications ... Furthermore, the Senior Analyst, Cybersecurity and Compliance will guide stakeholders in ...
New
Tallahassee, FL · On-site
$83K - $108K/yr
This role is responsible for supporting enterprise security governance, risk, compliance (GRC), and ... Strong analytical, documentation, and technical writing skills. Excellent communication and ...
Tallahassee, FL · On-site
$83K - $108K/yr
This role is responsible for supporting enterprise security governance, risk, compliance (GRC), and ... Strong analytical, documentation, and technical writing skills. Excellent communication and ...
Tampa, FL · Hybrid
$104K - $141K/yr
... Compliance (GRC) team.Theposition requires adeep understanding of how cloud environments ... Monitor and analyze risk trends (internal and external) to proactively mitigate potential ...
New
Tampa, FL · Hybrid
$104K - $141K/yr
... Compliance (GRC) team.Theposition requires adeep understanding of how cloud environments ... Monitor and analyze risk trends (internal and external) to proactively mitigate potential ...
New
IT Security Compliance Analyst Contract: 12-Months (No C2C or Third-Party Vendors) Location ... Provide Governance, Risk & Compliance (GRC) oversight while supporting day-to-day information ...
Quick apply
IT Security Compliance Analyst Contract: 12-Months (No C2C or Third-Party Vendors) Location ... Provide Governance, Risk & Compliance (GRC) oversight while supporting day-to-day information ...
Tallahassee, FL · On-site +1
$91K - $119K/yr
The Senior Security & Compliance Analyst will provide, but not be limited to, the following ... the GRC/audit core). * CRISC - Certified in Risk and Information Systems Control. * CGRC ...
Tallahassee, FL · On-site +1
$91K - $119K/yr
The Senior Security & Compliance Analyst will provide, but not be limited to, the following ... the GRC/audit core). * CRISC - Certified in Risk and Information Systems Control. * CGRC ...
Tallahassee, FL · On-site
$91K - $119K/yr
The Senior Security & Compliance Analyst will provide, but not be limited to, the following ... the GRC/audit core). * CRISC -- Certified in Risk and Information Systems Control. * CGRC ...
Quick apply
Tallahassee, FL · On-site
$91K - $119K/yr
The Senior Security & Compliance Analyst will provide, but not be limited to, the following ... the GRC/audit core). * CRISC -- Certified in Risk and Information Systems Control. * CGRC ...
Tallahassee, FL · On-site
$83K - $108K/yr
Security Analyst (Advanced) Location: 4040 Esplanade Way Tallahassee, FL Duration: 10 months with a ... the GRC/audit core). * CRISC - Certified in Risk and Information Systems Control. * CGRC ...
Tallahassee, FL · On-site
$83K - $108K/yr
Security Analyst (Advanced) Location: 4040 Esplanade Way Tallahassee, FL Duration: 10 months with a ... the GRC/audit core). * CRISC - Certified in Risk and Information Systems Control. * CGRC ...
Tallahassee, FL · On-site
$91K - $119K/yr
The Senior Security & Compliance Analyst will provide, but not be limited to, the following ... the GRC/audit core). * CRISC - Certified in Risk and Information Systems Control. * CGRC ...
Tallahassee, FL · On-site
$91K - $119K/yr
The Senior Security & Compliance Analyst will provide, but not be limited to, the following ... the GRC/audit core). * CRISC - Certified in Risk and Information Systems Control. * CGRC ...
Experience 5+ years in QA/testing with GRC or Archer exposure Must Have Skills • Experience ... Risk Management~RSA Archer Engage Experience Required: 10 & Above
Experience 5+ years in QA/testing with GRC or Archer exposure Must Have Skills • Experience ... Risk Management~RSA Archer Engage Experience Required: 10 & Above
Miami, FL · On-site
Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.
Miami, FL · On-site
Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.
Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.
Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.
Tallahassee, FL · On-site
$91K - $119K/yr
A.C.). - Conduct security risk assessments, control gap analyses, and third-party/vendor risk ... GRC and hands-on operations. - Preferred: Florida state government/public sector experience ...
Quick apply
Tallahassee, FL · On-site
$91K - $119K/yr
A.C.). - Conduct security risk assessments, control gap analyses, and third-party/vendor risk ... GRC and hands-on operations. - Preferred: Florida state government/public sector experience ...
Miami, FL · On-site
Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.
Miami, FL · On-site
Develop and maintain the GRC framework, ensuring alignment with business objectives and industry ... Create and present risk posture discovery and recommendation reports to risk management leadership.
Altamonte Springs, FL · On-site
$50.50 - $69.50/hr
ServiceNow CIS - Vendor Risk Management (VRM) * ServiceNow Certified Application Developer (CAD) * Performance Analytics for GRC dashboards and KPI/KRI reporting * AI/Generative AI implementation for ...
Quick apply
Altamonte Springs, FL · On-site
$50.50 - $69.50/hr
ServiceNow CIS - Vendor Risk Management (VRM) * ServiceNow Certified Application Developer (CAD) * Performance Analytics for GRC dashboards and KPI/KRI reporting * AI/Generative AI implementation for ...
Tampa, FL · Hybrid
$130K - $165K/yr
Risk reporting and analytics experience * Participate in and oversee that GRC system developments align with program requirements. * Lead or support the engagement with Internal or External Auditors ...
Tampa, FL · Hybrid
$130K - $165K/yr
Risk reporting and analytics experience * Participate in and oversee that GRC system developments align with program requirements. * Lead or support the engagement with Internal or External Auditors ...
Altamonte Springs, FL · On-site
$50.50 - $69.50/hr
... Risk, and Compliance (GRC), and Third-Party Risk Management (TPRM). This role involves working ... Analytics for GRC dashboards and KRI/KPI reporting. * Familiarity with responsible AI practices ...
Quick apply
Altamonte Springs, FL · On-site
$50.50 - $69.50/hr
... Risk, and Compliance (GRC), and Third-Party Risk Management (TPRM). This role involves working ... Analytics for GRC dashboards and KRI/KPI reporting. * Familiarity with responsible AI practices ...
Tampa, FL · On-site
The goal of this program is to build a new Supplier Risk management capability to better support ... GRC platforms (Metricstream, OpenPages, Archer) a plus Additional Information To know more about ...
Tampa, FL · On-site
The goal of this program is to build a new Supplier Risk management capability to better support ... GRC platforms (Metricstream, OpenPages, Archer) a plus Additional Information To know more about ...
Orlando, FL · On-site +1
Information Security Analyst - GRC Job Title: Information Security Analyst - GRC Position Type ... risk assessments, exception tracking, and remediation documentation related to administrative ...
Orlando, FL · On-site +1
Information Security Analyst - GRC Job Title: Information Security Analyst - GRC Position Type ... risk assessments, exception tracking, and remediation documentation related to administrative ...
Populate the Risk Model tab: apply the NIST 800-30 semi-quantitative formula (Likelihood × Impact ... Prior GRC, IT audit support, or data-QA experience in a government or regulated-industry setting.
Quick apply
Populate the Risk Model tab: apply the NIST 800-30 semi-quantitative formula (Likelihood × Impact ... Prior GRC, IT audit support, or data-QA experience in a government or regulated-industry setting.
| Aspect | Grc Risk Analyst | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, FRM, CRISC | ISO 19600, CCEP, CISA |
| Work Environment | Risk management teams, corporate offices | Regulatory departments, corporate offices |
| Industry Usage | Finance, banking, insurance, corporate risk | Financial services, healthcare, manufacturing |
| Job Focus | Identifying, assessing, and mitigating risks across enterprise | Ensuring compliance with laws and regulations |
While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

Other
Medical, Dental, Vision, Life, Retirement, PTO
Posted 2 days ago
New
Position Summary
The Senior Analyst, Cybersecurity and Compliance plays a pivotal role in protecting the firm against cybersecurity threats. This position is tasked with identifying, evaluating, and monitoring potential cybersecurity risks. They will collaborate with various teams within the firm to ensure that Governance, Risk Management, and Compliance (GRC) areas such as Audits, Information Security Certifications, and Vendor Management Risks are effectively managed. This includes adhering to industry and cybersecurity standards, as well as client and government regulations.
Furthermore, the Senior Analyst, Cybersecurity and Compliance will guide stakeholders in incorporating appropriate security measures into business operations, system designs, and software development processes. This role is responsible for enhancing and implementing processes that assist in planning remediation strategies to ensure compliance with policies and regulations. By providing valuable insights for risk prioritization, the Analyst will prepare reports that highlight trends, risk levels, and metrics. They will focus on building trust and fostering cross-functional partnerships to elevate awareness and successfully implement cybersecurity controls across the firm.
Duties and Accountabilities
The roles and responsibilities of this job include:
Maintain and improve the GRC function
Provide support for internal assessments and audits at planned intervals and on an ad hoc basis to evaluate and validate the design and operational effectiveness of technical, and administrative controls to help reduce risk in the organization
Mentor junior GRC Analysts on the team
Assist with monitoring open audit items from internal audits and external compliance/client/certification audits to ensure completion of remediation activities defined in the agreed action plans and risk treatment plans
Support continuous monitoring processes to assess compliance with information security policies and standards, legal and regulatory compliance
Provide compliance subject matter expertise support to various departments
Assist with conducting third-party vendor information security assessment and ongoing third-party assurance activities
Design, manage, and update company's compliance related documentation and reports
Create any necessary road maps for regulatory compliance
Qualifications
The qualifications for this job include:
5-7+ years of experience within GRC, specifically vendor & risk management standards and frameworks
Possessing any cybersecurity certifications, CRISC, CISM, CGEIT, CISA,CISSP, etc.
Possessing an understanding of industry standards, certifications, and regulations including NIST800/CSF, ISO 27001
Experience with compliance programs related to SSAE16 SOC1, SOC2, PCI, and/or NIST-800-53
Working knowledge in Cloud Security assessments, systems, tools, and web application reviews including Secure SDLC life cycle assessments.
Working knowledge of enterprise infrastructure and application monitoring tools.
Proficient in Microsoft Office applications; SME in Excel and data manipulation
Attention to detail. Clear logical and analytical thinker.
Able to prioritize and manage multiple tasks under pressure
Good verbal, written and numeric skills
Ability to travel or work overtime, as needed
This role reports to
Senior Manager, Security and Business ContinuityEqual Opportunities
White & Case is an Equal Employment Opportunity (EEO) employer and is committed to creating a fair workplace. It is our Firm's policy to recruit, employ, train, compensate and promote without regard to race, color, religion, creed, national origin, age, gender, sexual orientation, marital status, military or veteran status, disability, genetic information, or any other category protected by applicable law.
Applicants who are interested in applying for a position and require an accommodation during the process should contact talent.acquisition@whitecase.com.
Benefits at White & Case
White & Case LLP offers a comprehensive suite of benefit programs to all eligible employees, including medical, dental, and vision insurance, life and disability coverage, 401(k) retirement savings, vacation time, and leave programs (including parental leave). Exempt roles are also performance bonus eligible.
The Firm may modify and amend any job description at any time in its sole discretion. Nothing herein creates a contract of employment or otherwise modifies the at-will nature of employment.
The above is only a general description of the essential duties associated with this position and does not represent an exhaustive or comprehensive list of all duties.
Note to Recruitment Agencies
Our internal Recruitment team manages all aspects of lateral hiring. All agencies must have signed terms of business-specific to the relevant office-before submitting any candidates. CVs or applications sent directly to White & Case partners or employees will also not be considered formal introductions. If you have questions, please contact the relevant Recruitment team. We work with our preferred suppliers when engaging agencies.
Sourced by ZipRecruiter
Law firms
1,001 - 5,000 Employees
New York, NY, US
1901