1

Grc Risk Analyst Jobs in Utah (NOW HIRING)

Familiarity with GRC tooling, AI model inventory platforms, or automated risk assessment workflows. * Familiarity with data science and machine learning concepts. * Strong analytical and problem ...

Familiarity with GRC tooling, AI model inventory platforms, or automated risk assessment workflows. * Familiarity with data science and machine learning concepts. * Strong analytical and problem ...

Familiarity with GRC tooling, AI model inventory platforms, or automated risk assessment workflows. * Familiarity with data science and machine learning concepts. * Strong analytical and problem ...

Drive threat modeling and architectural risk assessments for strategic initiatives; translate ... Partner with Security Engineering, Application Security, Security Operations, and GRC to ensure ...

Showing results 41-50

Grc Risk Analyst information

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What is a GRC Risk Analyst?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.
What job categories do people searching Grc Risk Analyst jobs in Utah look for? The top searched job categories for Grc Risk Analyst jobs in Utah are:
What cities in Utah are hiring for Grc Risk Analyst jobs? Cities in Utah with the most Grc Risk Analyst job openings:

Sr. Manager, IT Security Operations

Swire Coca-Cola, USA

Draper, UT • On-site

Full-time

Re-posted yesterday


Swire Coca-Cola rating

7.7

Company rating: 7.7 out of 10

Based on 118 frontline employees who took The Breakroom Quiz

122nd of 435 rated food and drinks producers


Job description

Job Summary:
Swire Coca-Cola is a family-owned bottling company and one of the largest bottlers of Coca-Cola in North America. They are seeking a Sr. Manager of IT Security Operations to lead and enhance their security operations capabilities, overseeing cybersecurity threat detection, response, and remediation while collaborating with various teams to ensure operational security controls are aligned with enterprise risk priorities.
Responsibilities:
• Lead and oversee Security Operations (SOC) activities, including monitoring, detection, and alert triage
• Ensure effective operation of security tools such as SIEM, EDR, NDR, and related monitoring platforms
• Continuously improve detection capabilities through tuning, use case development, and threat intelligence integration
• Establish and maintain operational runbooks and standard operating procedures
• Lead incident response activities, including investigation, containment, eradication, and recovery
• Ensure incident response processes are well-defined, tested, and continuously improved
• Oversee root cause analysis and post-incident reviews to strengthen controls
• Coordinate with legal, communications, and leadership during high-impact incidents
• Lead the vulnerability management program, including scanning, prioritization, and remediation tracking
• Partner with IT and application teams to reduce exposure and improve patching effectiveness
• Lead the design and continuous improvement of IAM capabilities, including identity lifecycle management (Joiner/Mover/Leaver), authentication, and authorization aligned with least privilege principles
• Lead, mentor, and develop cybersecurity operations team members
• Oversee the implementation, integration, and optimization of security technologies
• Ensure security tools are configured, maintained, and delivering value
• Partner with Security Architecture on tool selection and roadmap planning
• Drive automation and efficiency within security operations workflows
• Track and report on vulnerability trends and remediation metrics
• Implement and manage access control models (RBAC/ABAC), MFA, conditional access, and privileged access management (PAM) to secure enterprise identities
• Oversee identity governance processes, including access reviews, certifications, role design, and segregation of duties (SoD) controls
• Partner with cross-functional teams to integrate IAM solutions, drive automation, and report on key metrics such as provisioning timelines, access risks, and compliance status
• Develop and deliver operational metrics, dashboards, and reporting for leadership
• Track KPIs such as detection time, response time, and remediation timelines
• Provide clear, actionable reporting on threats, incidents, and operational risk posture
• Drive continuous improvement initiatives across operational processes
• Establish risk-based prioritization aligned to business impact and threat intelligence
• Partner with GRC, Security Architecture, IT, and business stakeholders
• Support cross-functional incident response coordination and tabletop exercises
• Foster a culture of accountability, continuous learning, and operational excellence
Qualifications:
Required:
• Bachelor’s Degree in Cybersecurity, Information Technology, Computer Science, or related field required
• 8+ years of cybersecurity experience, focused on operations, incident response, or threat management required
• 3+ years of leadership experience managing security teams or programs required
• Strong experience with SIEM, EDR, vulnerability management, and detection tools required
• Experience leading vulnerability management and remediation programs required
• Experience developing metrics, dashboards, and executive reporting required
• Deep understanding of incident response methodologies and frameworks
• Strong analytical and problem-solving skills
• Excellent communication skills translating technical issues into business impact
Preferred:
• Certifications such as CISSP, CISM, or GIAC
Company:
With revenues of $3 billion, Swire Coca-Cola, USA produces, sells and distributes Coca-Cola and other beverages in 13 states across the American West. Founded in 1816, the company is headquartered in Draper, USA, with a team of 5001-10000 employees. The company is currently Late Stage.

What Swire Coca-Cola employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom