... GRC software, monitoring tools, and issue management software. Ability to follow and apply holds ... business analysis, insider threat, information security, compliance, privacy, risk management ...
... GRC software, monitoring tools, and issue management software. Ability to follow and apply holds ... business analysis, insider threat, information security, compliance, privacy, risk management ...
... GRC software, monitoring tools, and issue management software. Ability to follow and apply holds ... business analysis, insider threat, information security, compliance, privacy, risk management ...
... GRC software, monitoring tools, and issue management software. Ability to follow and apply holds ... business analysis, insider threat, information security, compliance, privacy, risk management ...
... GRC software, monitoring tools, and issue management software. Ability to follow and apply holds ... business analysis, insider threat, information security, compliance, privacy, risk management ...
... GRC software, monitoring tools, and issue management software. Ability to follow and apply holds ... business analysis, insider threat, information security, compliance, privacy, risk management ...
... GRC software, monitoring tools, and issue management software, Ability to follow and apply legal ... Advanced analytical and problem-solving skills. Investigation and audit experience. Ability to work ...
... GRC software, monitoring tools, and issue management software, Ability to follow and apply legal ... Advanced analytical and problem-solving skills. Investigation and audit experience. Ability to work ...
The Principal Risk Analyst will lead risk business operations, special projects, investigations ... GRC software, monitoring tools, and issue management software, Ability to follow and apply legal ...
The Principal Risk Analyst will lead risk business operations, special projects, investigations ... GRC software, monitoring tools, and issue management software, Ability to follow and apply legal ...
The Principal Risk Analyst will lead risk business operations, special projects, investigations ... GRC software, monitoring tools, and issue management software, Ability to follow and apply legal ...
The Principal Risk Analyst will lead risk business operations, special projects, investigations ... GRC software, monitoring tools, and issue management software, Ability to follow and apply legal ...
The Principal Risk Analyst will lead risk business operations, special projects, investigations ... GRC software, monitoring tools, and issue management software, Ability to follow and apply legal ...
The Principal Risk Analyst will lead risk business operations, special projects, investigations ... GRC software, monitoring tools, and issue management software, Ability to follow and apply legal ...
Cybersecurity GRC Analyst
Minneapolis, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
Minneapolis, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
Edina, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
Edina, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
Edina, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
Cybersecurity GRC Analyst
Edina, MN · On-site
$66K - $114K/yr
Western National is seeking a Cybersecurity GRC Analyst to join our team! The individual in this ... Performs security risk assessments of third-party vendors and service providers and tracks ...
VP, Enterprise Risk
Saint Paul, MN · On-site
Experience leading a financial or risk-related reporting process, including development of analytical capabilities using Tableau, Power BI, and/or GRC tools. * Demonstrated ability to build strong ...
VP, Enterprise Risk
Saint Paul, MN · On-site
Experience leading a financial or risk-related reporting process, including development of analytical capabilities using Tableau, Power BI, and/or GRC tools. * Demonstrated ability to build strong ...
VP, Enterprise Risk
Saint Paul, MN · On-site
Experience leading a financial or risk-related reporting process, including development of analytical capabilities using Tableau, Power BI, and/or GRC tools. * Demonstrated ability to build strong ...
VP, Enterprise Risk
Saint Paul, MN · On-site
Experience leading a financial or risk-related reporting process, including development of analytical capabilities using Tableau, Power BI, and/or GRC tools. * Demonstrated ability to build strong ...
Thorough knowledge of Risk/Compliance/Audit competencies * Strong workflow coordinator, process facilitation, and analytical skills * Prior GRC Transformation experience * Effective procedure ...
Thorough knowledge of Risk/Compliance/Audit competencies * Strong workflow coordinator, process facilitation, and analytical skills * Prior GRC Transformation experience * Effective procedure ...
Thorough knowledge of Risk/Compliance/Audit competencies * Strong workflow coordinator, process facilitation, and analytical skills * Prior GRC Transformation experience * Effective procedure ...
Thorough knowledge of Risk/Compliance/Audit competencies * Strong workflow coordinator, process facilitation, and analytical skills * Prior GRC Transformation experience * Effective procedure ...
... analytics, GRC automation/implementation, security role design, security managed services, segregation of duties assessments, as well as ERP implementation risk reviews. Basic Qualifications:
... analytics, GRC automation/implementation, security role design, security managed services, segregation of duties assessments, as well as ERP implementation risk reviews. Basic Qualifications:
Thorough knowledge of Risk/Compliance/Audit competencies * Strong workflow coordinator, process facilitation, and analytical skills * Prior GRC Transformation experience * Effective procedure ...
Thorough knowledge of Risk/Compliance/Audit competencies * Strong workflow coordinator, process facilitation, and analytical skills * Prior GRC Transformation experience * Effective procedure ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
... SAP Governance, Risk, and Compliance (GRC) * 3+ years of experience designing or supporting role-based access controls, segregation of duties analysis, or sensitive access controls in SAP ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
... SAP Governance, Risk, and Compliance (GRC) * 3+ years of experience designing or supporting role-based access controls, segregation of duties analysis, or sensitive access controls in SAP ...
Maintain the risk register: track remediation owners and progress, and prepare quarterly risk ... analyst, GRC, IT audit, compliance, or similar role title and level will be commensurate with ...
Maintain the risk register: track remediation owners and progress, and prepare quarterly risk ... analyst, GRC, IT audit, compliance, or similar role title and level will be commensurate with ...
Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension ... 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC Demonstrate ...
Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension ... 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC Demonstrate ...
Grc Risk Analyst information
What is the difference between Grc Risk Analyst vs Compliance Analyst?
| Aspect | Grc Risk Analyst | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, FRM, CRISC | ISO 19600, CCEP, CISA |
| Work Environment | Risk management teams, corporate offices | Regulatory departments, corporate offices |
| Industry Usage | Finance, banking, insurance, corporate risk | Financial services, healthcare, manufacturing |
| Job Focus | Identifying, assessing, and mitigating risks across enterprise | Ensuring compliance with laws and regulations |
While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.
What is a GRC Risk Analyst?
What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?
What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

Full-time
Medical, Dental, Vision, Retirement
Posted 7 days ago
Mayo Clinic rating
7.8
Based on 694 frontline employees who took The Breakroom Quiz
109th of 887 rated healthcare providers
Job description
Mayo Clinic is seeking an experienced healthcare professional to join the newly established Rochester Clinical Risk Management team as a Principal Risk Analyst. This is a unique opportunity to help build a strategic program advancing patient safety, transparency, organizational learning, and enterprise risk management at one of the world's leading healthcare organizations.
Reporting to the Senior Manager of Clinical Risk Management, the Principal Risk Analyst serves as a senior clinical risk expert who proactively identifies, assesses, and mitigates the clinical, operational, regulatory, financial, legal, and reputational risks associated with patient care. This includes leading the organization's response to complex patient care events, supporting communication and resolution efforts, guiding event review and mitigation activities, and advancing systems, processes, and education that strengthen safety, accountability, and trust.
Key Responsibilities
Partner with physicians, administrators, patient safety professionals, legal counsel, accreditation leaders, and operational teams to manage complex matters involving patient care events.
Support patient-centered communication and caregiver support following patient care events, in alignment with Mayo Clinic's Communication and Resolution approach.
Apply a broad healthcare risk management lens across the five ASHRM/CPHRM domains: Clinical/Patient Safety, Risk Financing, Legal and Regulatory, Health Care Operations, and Claims and Litigation.
Identify emerging risk trends and support claims-informed organizational learning.
Partner with insurance and risk financing colleagues when clinical events carry financial or coverage implications.
Translate complex clinical events into practical mitigation strategies, education, and system-level improvements.
A professional with deep clinical, operational, regulatory, or risk management expertise, sound judgment, and exceptional communication skills is desired. The successful candidate demonstrates the ability to assess risk, build trusted relationships, navigate sensitive situations, facilitate difficult conversations, and support leaders and care teams through challenging events - developing practical solutions that balance patient-centered care with organizational priorities while strengthening organizational resilience.
In addition, Principal Risk Analyst responsibilities may include:
Receives direction and reports to the Director or Senior Manager in the Risk Department (RD). Works in partnership with other department members as well as various physicians, administrative colleagues, and committees. Will collaborate with a wide range of Mayo Clinic departments including, but not limited to: Office of Information Security, Legal, Health Information Management and Human Resources. Interacts, supports and consults with individuals within Mayo Clinic and outside Mayo Clinic including external business partners, government agencies, and organizations.
The incumbent will lead risk business operations, special projects, investigations, legal litigation, mitigation development, non-employee access and end user awareness/education. Incumbent will provide guidance to the RD unit for day-to-day operational support, including project management. Incumbent will demonstrate leadership and represent the RD on project teams, committees, strike teams and workgroups. Job Duties and Responsibilities: Supports and develops RD initiatives. Responsible for the design of enterprise business operations, including operational growth and development. Leads multi-disciplinary workgroups and projects.
Responsible for development of policies and procedures to support the organization's risk tolerance. Gathers and organizes information from a cross-functional investigative team. Works directly with Legal and Human Resources on high risk internal and external investigations. Works directly with Legal and External Counsel on policy, regulatory and/or litigation matters (using eDiscovery protocols). Completes documentation to support findings including legal reports, SBARs, and executive summaries. Responsible for peer review of work unit documentation. Develops and presents Risk training(s) geared towards Mayo Clinic Leadership. Has extensive experience in regulatory compliance and investigations that includes:
Deep subject matter expertise in relevant compliance laws and regulations such as privacy compliance, investigations, revenue cycle compliance, device manufacturing compliance, general compliance, conflict of interest;
Understanding of and ability to apply the Seven Elements of an Effective Compliance Program;
Ability to carry out audits, assessments and investigations; and
Ability to use relevant compliance tools including GRC software, monitoring tools, and issue management software.
Ability to follow and apply holds and execute proper preservation of evidence and chain of custody protocols. Depending on role this may include the ability to follow proper computer forensic evidence handling, advanced knowledge of data preservation, acquisition of computing and storage devices either fixed or mobile and more technical forensic investigation.
Must have technical and nontechnical communication skills (verbal and written), analytical aptitude and project management skills. Demonstrates high level integrity and ability to use discretion and maintain confidential information. Other functions and projects as assigned. Some travel may be required to other Mayo Clinic Sites and/or training conferences.
Mayo Clinic will not sponsor or transfer visas for this position including F1 OPT STEM.
This is a hybrid position and incumbent must live within 100 miles of the Rochester, MN campus.
Mayo Clinic is top-ranked in more specialties than any other care provider according to U.S. News & World Report. As we work together to put the needs of the patient first, we are also dedicated to our employees, investing in competitive compensation and comprehensive benefit plans - to take care of you and your family, now and in the future. And with continuing education and advancement opportunities at every turn, you can build a long, successful career with Mayo Clinic.
- Medical: Multiple plan options.
- Dental: Delta Dental or reimbursement account for flexible coverage.
- Vision: Affordable plan with national network.
- Pre-Tax Savings: HSA and FSAs for eligible expenses.
- Retirement: Competitive retirement package to secure your future.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, protected veteran status or disability status. Learn more about the "EOE is the Law". Mayo Clinic participates in E-Verify and may provide the Social Security Administration and, if necessary, the Department of Homeland Security with information from each new employee's Form I-9 to confirm work authorization.
Bachelor's degree and 9 years' experience in business analysis, insider threat, information security, compliance, privacy, risk management, information science, business administration, health or science-related fields OR Master's degree and 6 years' experience in business analysis, insider threat, information security, compliance, privacy, risk management, information science, business administration, health or science-related fields. JD or Masters degree preferred. Certified as CHC, CHPC, CCEP, CISSP, CISM, CITPM or relevant equivalent certification; or will obtain certification within 2 years of hire.
Preferred Qualifications
Certified Professional in Health Care Risk Management (CPHRM)
Certified in Healthcare Risk Management (CHRM)
What Mayo Clinic employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Mayo Clinic
Sourced by ZipRecruiter
Mayo Clinic is the largest integrated, not-for-profit medical group practice in the world. We're building the future, one where the best possible care is available to everyone — and more people can heal at home. Our relentless research turns into earlier diagnoses and new cures. That's how we inspire hope in those who need it most. At Mayo Clinic, experts work together to solve the most challenging unmet needs of patients. Our history of innovation dates back almost 150 years, when brothers Will and Charlie Mayo pioneered an integrated, team-based approach to medicine. Today, that trailblazing spirit drives innovations like Mayo Clinic Platform — which powers new technologies to change how care is delivered to all.
Industry
Hospitals
Company size
10,000+ Employees
Headquarters location
Rochester, MN, US
Year founded
1919