1

Grc Risk Analyst Jobs in Minnesota (NOW HIRING)

Experience leading a financial or risk-related reporting process, including development of analytical capabilities using Tableau, Power BI, and/or GRC tools. * Demonstrated ability to build strong ...

Experience leading a financial or risk-related reporting process, including development of analytical capabilities using Tableau, Power BI, and/or GRC tools. * Demonstrated ability to build strong ...

Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension ... 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC Demonstrate ...

next page

Showing results 1-20

Grc Risk Analyst information

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What is a GRC Risk Analyst?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.
What job categories do people searching Grc Risk Analyst jobs in Minnesota look for? The top searched job categories for Grc Risk Analyst jobs in Minnesota are:
Infographic showing various Grc Risk Analyst job openings in Minnesota as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution.

Principal Analyst Clinical Risk Management

Mayo Clinic

Rochester, MN

Full-time

Medical, Dental, Vision, Retirement

Posted 7 days ago


Mayo Clinic rating

7.8

Company rating: 7.8 out of 10

Based on 694 frontline employees who took The Breakroom Quiz

109th of 887 rated healthcare providers


Job description

Mayo Clinic is seeking an experienced healthcare professional to join the newly established Rochester Clinical Risk Management team as a Principal Risk Analyst. This is a unique opportunity to help build a strategic program advancing patient safety, transparency, organizational learning, and enterprise risk management at one of the world's leading healthcare organizations.

Reporting to the Senior Manager of Clinical Risk Management, the Principal Risk Analyst serves as a senior clinical risk expert who proactively identifies, assesses, and mitigates the clinical, operational, regulatory, financial, legal, and reputational risks associated with patient care. This includes leading the organization's response to complex patient care events, supporting communication and resolution efforts, guiding event review and mitigation activities, and advancing systems, processes, and education that strengthen safety, accountability, and trust.

Key Responsibilities
    Partner with physicians, administrators, patient safety professionals, legal counsel, accreditation leaders, and operational teams to manage complex matters involving patient care events.
    Support patient-centered communication and caregiver support following patient care events, in alignment with Mayo Clinic's Communication and Resolution approach.
    Apply a broad healthcare risk management lens across the five ASHRM/CPHRM domains: Clinical/Patient Safety, Risk Financing, Legal and Regulatory, Health Care Operations, and Claims and Litigation.
    Identify emerging risk trends and support claims-informed organizational learning.
    Partner with insurance and risk financing colleagues when clinical events carry financial or coverage implications.
    Translate complex clinical events into practical mitigation strategies, education, and system-level improvements.

A professional with deep clinical, operational, regulatory, or risk management expertise, sound judgment, and exceptional communication skills is desired. The successful candidate demonstrates the ability to assess risk, build trusted relationships, navigate sensitive situations, facilitate difficult conversations, and support leaders and care teams through challenging events - developing practical solutions that balance patient-centered care with organizational priorities while strengthening organizational resilience.

In addition, Principal Risk Analyst responsibilities may include:
Receives direction and reports to the Director or Senior Manager in the Risk Department (RD). Works in partnership with other department members as well as various physicians, administrative colleagues, and committees. Will collaborate with a wide range of Mayo Clinic departments including, but not limited to: Office of Information Security, Legal, Health Information Management and Human Resources. Interacts, supports and consults with individuals within Mayo Clinic and outside Mayo Clinic including external business partners, government agencies, and organizations.

The incumbent will lead risk business operations, special projects, investigations, legal litigation, mitigation development, non-employee access and end user awareness/education. Incumbent will provide guidance to the RD unit for day-to-day operational support, including project management. Incumbent will demonstrate leadership and represent the RD on project teams, committees, strike teams and workgroups. Job Duties and Responsibilities: Supports and develops RD initiatives. Responsible for the design of enterprise business operations, including operational growth and development. Leads multi-disciplinary workgroups and projects.
Responsible for development of policies and procedures to support the organization's risk tolerance. Gathers and organizes information from a cross-functional investigative team. Works directly with Legal and Human Resources on high risk internal and external investigations. Works directly with Legal and External Counsel on policy, regulatory and/or litigation matters (using eDiscovery protocols). Completes documentation to support findings including legal reports, SBARs, and executive summaries. Responsible for peer review of work unit documentation. Develops and presents Risk training(s) geared towards Mayo Clinic Leadership. Has extensive experience in regulatory compliance and investigations that includes:

    Deep subject matter expertise in relevant compliance laws and regulations such as privacy compliance, investigations, revenue cycle compliance, device manufacturing compliance, general compliance, conflict of interest;
    Understanding of and ability to apply the Seven Elements of an Effective Compliance Program;
    Ability to carry out audits, assessments and investigations; and
    Ability to use relevant compliance tools including GRC software, monitoring tools, and issue management software.

Ability to follow and apply holds and execute proper preservation of evidence and chain of custody protocols. Depending on role this may include the ability to follow proper computer forensic evidence handling, advanced knowledge of data preservation, acquisition of computing and storage devices either fixed or mobile and more technical forensic investigation.
Must have technical and nontechnical communication skills (verbal and written), analytical aptitude and project management skills. Demonstrates high level integrity and ability to use discretion and maintain confidential information. Other functions and projects as assigned. Some travel may be required to other Mayo Clinic Sites and/or training conferences.
Mayo Clinic will not sponsor or transfer visas for this position including F1 OPT STEM.

This is a hybrid position and incumbent must live within 100 miles of the Rochester, MN campus.
 

Why Mayo Clinic

Mayo Clinic is top-ranked in more specialties than any other care provider according to U.S. News & World Report. As we work together to put the needs of the patient first, we are also dedicated to our employees, investing in competitive compensation and comprehensive benefit plans - to take care of you and your family, now and in the future. And with continuing education and advancement opportunities at every turn, you can build a long, successful career with Mayo Clinic.

Benefits Highlights
  • Medical: Multiple plan options.
  • Dental: Delta Dental or reimbursement account for flexible coverage.
  • Vision: Affordable plan with national network.
  • Pre-Tax Savings: HSA and FSAs for eligible expenses.
  • Retirement: Competitive retirement package to secure your future.
Just as our reputation has spread beyond our Minnesota roots, so have our locations. Today, our employees are located at our three major campuses in Phoenix/Scottsdale, Arizona, Jacksonville, Florida, Rochester, Minnesota, and at Mayo Clinic Health System campuses throughout Midwestern communities, and at our international locations. Each Mayo Clinic location is a special place where our employees thrive in both their work and personal lives. Learn more about what each unique Mayo Clinic campus has to offer, and where your best fit is. 

Equal Opportunity

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, protected veteran status or disability status. Learn more about the "EOE is the Law".  Mayo Clinic participates in E-Verify and may provide the Social Security Administration and, if necessary, the Department of Homeland Security with information from each new employee's Form I-9 to confirm work authorization.

Bachelor's degree and 9 years' experience in business analysis,  insider threat, information security, compliance, privacy, risk management, information science, business administration, health or science-related fields OR Master's degree and 6 years' experience in business analysis, insider threat, information security, compliance, privacy, risk management, information science, business administration, health or science-related fields. JD or Masters degree preferred.  Certified as CHC, CHPC, CCEP, CISSP, CISM, CITPM or relevant equivalent certification; or will obtain certification within 2 years of hire.
Preferred Qualifications
Certified Professional in Health Care Risk Management (CPHRM) 
Certified in Healthcare Risk Management (CHRM)
 


What Mayo Clinic employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Mayo Clinic logo

About Mayo Clinic

Sourced by ZipRecruiter

Mayo Clinic is the largest integrated, not-for-profit medical group practice in the world. We're building the future, one where the best possible care is available to everyone — and more people can heal at home. Our relentless research turns into earlier diagnoses and new cures. That's how we inspire hope in those who need it most. At Mayo Clinic, experts work together to solve the most challenging unmet needs of patients. Our history of innovation dates back almost 150 years, when brothers Will and Charlie Mayo pioneered an integrated, team-based approach to medicine. Today, that trailblazing spirit drives innovations like Mayo Clinic Platform — which powers new technologies to change how care is delivered to all.

Industry

Hospitals

Company size

10,000+ Employees

Headquarters location

Rochester, MN, US

Year founded

1919