... within GRC tooling (e.g., Vanta, ServiceNow), and driving remediation through closure ... Provide day-to-day leadership, guidance, and mentoring to analysts and contract resources ...
... within GRC tooling (e.g., Vanta, ServiceNow), and driving remediation through closure ... Provide day-to-day leadership, guidance, and mentoring to analysts and contract resources ...
... analytics, GRC automation/implementation, security role design, security managed services, segregation of duties assessments, as well as ERP implementation risk reviews. Basic Qualifications:
... analytics, GRC automation/implementation, security role design, security managed services, segregation of duties assessments, as well as ERP implementation risk reviews. Basic Qualifications:
... within GRC tooling (e.g., Vanta, ServiceNow), and driving remediation through closure ... Provide day-to-day leadership, guidance, and mentoring to analysts and contract resources ...
... within GRC tooling (e.g., Vanta, ServiceNow), and driving remediation through closure ... Provide day-to-day leadership, guidance, and mentoring to analysts and contract resources ...
... within GRC tooling (e.g., Vanta, ServiceNow), and driving remediation through closure ... Provide day-to-day leadership, guidance, and mentoring to analysts and contract resources ...
... within GRC tooling (e.g., Vanta, ServiceNow), and driving remediation through closure ... Provide day-to-day leadership, guidance, and mentoring to analysts and contract resources ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
... SAP Governance, Risk, and Compliance (GRC) * 3+ years of experience designing or supporting role-based access controls, segregation of duties analysis, or sensitive access controls in SAP ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
... SAP Governance, Risk, and Compliance (GRC) * 3+ years of experience designing or supporting role-based access controls, segregation of duties analysis, or sensitive access controls in SAP ...
Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension ... 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC Demonstrate ...
Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension ... 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC Demonstrate ...
... data analytics, and continuity skills where needed. Our ERAS practice is a group of highly ... Basic Understanding of SAP security and GRC (governance,riskand compliance) * Proven experience ...
... data analytics, and continuity skills where needed. Our ERAS practice is a group of highly ... Basic Understanding of SAP security and GRC (governance,riskand compliance) * Proven experience ...
Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension ... 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC Demonstrate ...
Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension ... 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC Demonstrate ...
They define how changes are proposed, risk-assessed, approved, validated, and evidenced. They ... Maintain alignment with ITIL, GRC, and regulatory frameworks applicable to Securian's environment ...
They define how changes are proposed, risk-assessed, approved, validated, and evidenced. They ... Maintain alignment with ITIL, GRC, and regulatory frameworks applicable to Securian's environment ...
They define how changes are proposed, risk-assessed, approved,validated, andevidenced ... Maintain alignment with ITIL, GRC, and regulatory frameworks applicable to Securian's environment ...
They define how changes are proposed, risk-assessed, approved,validated, andevidenced ... Maintain alignment with ITIL, GRC, and regulatory frameworks applicable to Securian's environment ...
They define how changes are proposed, risk-assessed, approved,validated, andevidenced ... Maintain alignment with ITIL, GRC, and regulatory frameworks applicable to Securian's environment ...
They define how changes are proposed, risk-assessed, approved,validated, andevidenced ... Maintain alignment with ITIL, GRC, and regulatory frameworks applicable to Securian's environment ...
Operating across Analytics, Data Engineering, and business teams, this role balances enablement ... Experience with Governance, Risk, and Compliance (GRC) frameworks or tools. Skills: * Highly ...
Operating across Analytics, Data Engineering, and business teams, this role balances enablement ... Experience with Governance, Risk, and Compliance (GRC) frameworks or tools. Skills: * Highly ...
... Security Analysis experience, or equivalent demonstrated through one or a combination of the ... Risk and Change Management (GRC) experience.
... Security Analysis experience, or equivalent demonstrated through one or a combination of the ... Risk and Change Management (GRC) experience.
IT Internal Audit Senior
Saint Paul, MN · On-site
$95.10K - $124.90K/yr
Draft IT audit reports with clear findings, root cause analysis, risk ratings, and practical ... Proficiency with audit/GRC tools (e.g., AuditBoard) and Microsoft Office Suite. * Strong analytical ...
IT Internal Audit Senior
Saint Paul, MN · On-site
$95.10K - $124.90K/yr
Draft IT audit reports with clear findings, root cause analysis, risk ratings, and practical ... Proficiency with audit/GRC tools (e.g., AuditBoard) and Microsoft Office Suite. * Strong analytical ...
The practice performs implementation risk quarterback solutions, system integrity solutions, security and controls designs/assessments, complex data analytics, GRC automation/implementation, security ...
The practice performs implementation risk quarterback solutions, system integrity solutions, security and controls designs/assessments, complex data analytics, GRC automation/implementation, security ...
The practice performs implementation risk quarterback solutions, system integrity solutions, security and controls designs/assessments, complex data analytics, GRC automation/implementation, security ...
The practice performs implementation risk quarterback solutions, system integrity solutions, security and controls designs/assessments, complex data analytics, GRC automation/implementation, security ...
The practice performs implementation risk quarterback solutions, system integrity solutions, security and controls designs/assessments, complex data analytics, GRC automation/implementation, security ...
The practice performs implementation risk quarterback solutions, system integrity solutions, security and controls designs/assessments, complex data analytics, GRC automation/implementation, security ...
The practice performs implementation risk quarterback solutions, system integrity solutions, security and controls designs/assessments, complex data analytics, GRC automation/implementation, security ...
The practice performs implementation risk quarterback solutions, system integrity solutions, security and controls designs/assessments, complex data analytics, GRC automation/implementation, security ...
... and risk evaluations, delivering actionable insights to reduce regulatory risk and improve the ... Utilize data analytics, control performance results, and audit insights to identify compliance ...
... and risk evaluations, delivering actionable insights to reduce regulatory risk and improve the ... Utilize data analytics, control performance results, and audit insights to identify compliance ...
... and risk evaluations, delivering actionable insights to reduce regulatory risk and improve the ... Utilize data analytics, control performance results, and audit insights to identify compliance ...
... and risk evaluations, delivering actionable insights to reduce regulatory risk and improve the ... Utilize data analytics, control performance results, and audit insights to identify compliance ...
Grc Risk Analyst information
What are the key skills and qualifications needed to thrive as a GRC Risk Analyst, and why are they important?
What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?
What are GRC Risk Analysts?
What is the difference between Grc Risk Analyst vs Compliance Analyst?
| Aspect | Grc Risk Analyst | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, FRM, CRISC | ISO 19600, CCEP, CISA |
| Work Environment | Risk management teams, corporate offices | Regulatory departments, corporate offices |
| Industry Usage | Finance, banking, insurance, corporate risk | Financial services, healthcare, manufacturing |
| Job Focus | Identifying, assessing, and mitigating risks across enterprise | Ensuring compliance with laws and regulations |
While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

Full-time
Medical, Dental, Vision, Retirement, PTO
Posted 11 days ago
Job description
Patterson isn't just a place to work, it's a partner that cares about your success.
One of the distinguishing marks of our company is the talented people who embrace the people-first, always advancing, and results-driven culture. Professional growth abounds in this motivating environment. We value the diverse talents and experiences our employees bring to Patterson and believe that they build a stronger and successful organization.
As the Security Manager - IT Risk & PCI Compliance you will lead a team and provide hands-on leadership and strategic execution across the organization's information security compliance and risk programs. This essential role is responsible for driving consistent, scalable execution of regulatory and assurance activities with a primary focus on PCI DSS, merchant and payment product security, policy and control governance, and audit readiness.
This position partners closely with the Security Program Director, broader security team, Technology, Finance, Legal, Regulatory Compliance, Internal Audit, and business stakeholders to translate regulatory and controls requirements into operational processes that support the business while protecting sensitive information. The Manager plays a critical role in ensuring compliance programs are sustainable, well-documented, and integrated into day-to-day operations.
Essential Functions
To perform this job successfully, an employee must be able to perform each essential function satisfactorily, with or without reasonable accommodation. To request a reasonable accommodation, notify Human Resources or the manager who oversees the position.
Manage and lead execution of the PCI DSS compliance program, including annual scoping, assessments, remediation tracking, and ongoing compliance for Patterson business entities and payment environments.
Perform PCI security reviews for Patterson products and merchant-facing solutions, ensuring required controls are designed, implemented, and operating effectively (e.g. payment service providers, payment platforms and solutions, merchant services).
Serve as the primary point of coordination with external assessors, auditors, and payment stakeholders, including support for merchant auditing and payment-related compliance activities.
Own and maintain security policies, standards, and procedures, ensuring alignment with PCI DSS, NIST CSF, ISO, SOX ITGC, and applicable regulatory requirements.
Translate regulatory, audit, and product security requirements into operational controls and workflows, partnering with Technology and business teams to embed compliance into system design and operations.
Ensure audit readiness and evidence integrity by maintaining clear documentation, control ownership, and tracking within GRC tooling (e.g., Vanta, ServiceNow), and driving remediation through closure.
Accountable for setting goals, performance development, source developmental opportunities and provide long-term career guidance to team members
Support hiring, onboarding, and development of team members as the program scales, including delegation of execution-focused work.
Additional functions
In addition to the essential functions listed above, the incumbent may perform the following additional functions.
Provide day-to-day leadership, guidance, and mentoring to analysts and contract resources supporting compliance and audit activities.
Contribute to cross-functional risk management activities, including issue tracking, risk acceptance support, and alignment with enterprise risk processes.
Support third-party security and vendor risk activities related to PCI-relevant vendors and payment partners.
Develop and deliver compliance metrics, status reporting, and audit-readiness views for leadership and executive stakeholders.
Required Qualifications
Bachelor'sor Master'sDegree with an emphasis in security, technology, or engineering or equivalent work experience
At least6yearswork experience in information technology, cyber security, or information security
At least3years of experience coaching, mentoring, and developing a team of people as a manager of people
Demonstrated experience owning information security compliance programs including supporting policies, standards, and procedures, to execute, maintain, and align controls to organizational needs and frameworks
Demonstrated continuous improvement mindset, with experience designing and evolving security, compliance, and audit workflows, including leveraging GRC platforms (e.g., Vanta) to build and maintain scalable controls
Preferred Qualifications
PCI Internal Security Assessor (ISA) (strongly preferred)
CISSP (preferred)
What's In It For You:
We provide competitive benefits, unique incentive programs and rewards for our eligible employees:
Full Medical, Dental, and Vision benefits and an integrated Wellness Program
401(k) Match Retirement Savings Plan
Paid Time Off (PTO)
Holiday Pay & Floating Holidays
Volunteer Time Off (VTO)
Educational Assistance Program
Full Paid Parental and Adoption Leave
LifeWorks (Employee Assistance Program)
Patterson Perks Program
The potential compensation range for this role is below. The final offer amount could exceed this range, based on various factors such as candidate location (geographical labor market), experience, and skills.
$109,100.00 - $145,433.33EEO StatementPatterson provides equal employment opportunities to applicants and employees without regard to race; color; sex; gender identity; sexual orientation; religious practices and observances; national origin; pregnancy, childbirth, or other related medical conditions; status as a protected veteran or spouse/family member of a protected veteran; or disability.