1

Grc Risk Analyst Jobs in New York (NOW HIRING)

Risk Analyst

Hauppauge, NY ยท On-site

$65K - $80K/yr

Plan, coordinate, and execute RCSAs within the GRC framework/tool (Quantivate) in accordance with ... Perform risk assessments by reviewing and analyzing evidence and documenting results through the ...

Risk Analyst

Hauppauge, NY ยท On-site

$65K - $80K/yr

Plan, coordinate, and execute RCSAs within the GRC framework/tool (Quantivate) in accordance with ... Perform risk assessments by reviewing and analyzing evidence and documenting results through the ...

Exposure to SOX, Model Risk Management (SR 11-7), AI Risk Management (NIST AI RMF), or IT GRC ... Strong analytical and critical thinking skills with attention to detail * Ability to translate ...

Senior Cybersecurity GRC

Manhattan, NY ยท On-site

$110K - $142K/yr

Senior Cybersecurity GRC & Third Party Risk Consultant Location: New York, NY (Onsite/Hybrid ... Develop executive dashboards, KPIs, and risk analytics for vendor risk reporting. Recommend ...

next page

Showing results 1-20

Grc Risk Analyst information

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What are GRC Risk Analysts?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst, and why are they important?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.
What job categories do people searching Grc Risk Analyst jobs in New York look for? The top searched job categories for Grc Risk Analyst jobs in New York are:
Infographic showing various Grc Risk Analyst job openings in New York as of July 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 67% In-person, and 33% Hybrid job distribution.

Technical GRC specialist

Rootshell Enterprise Technologies, Inc.

Manhattan, NY โ€ข On-site

Full-time

Posted 9 days ago


Job description

Overall 12+ years of experience on SAP GRC implementation, specifically:
a. SAP GRC Risk Management
b. SAP GRC Access Control
c. SAP GRC Process Control and Fraud Management
d. GRC reporting
At least two full life cycle implementation of SAP GRC and Cloud solutions including end-to-end implementation of SAP GRC Risk Management.
Hands on experience with Cloud/On-Premise hybrid integration is required in addition to integration with other SAP products such as IDM and Solution Manager.
Strong functional knowledge on the following GRC modules but also on other SAP modules including Finance, Supply Chain, HCM and BPC is required:
i. SAP Risk Management
ii. SAP Process Control
iii. SAP Access Control
iv. SAP Cloud Access Governance
Additional DESIRABLE experience:
a. Knowledge of the SAP Security
b. Being in tune with the GRC roadmap where machine learning and predictive analytics is of prime importance with Risk Assessment and with Auditing