We are seeking a highly motivated and experienced Governance, Risk, and Compliance (GRC) Analyst to join our team. The ideal candidate will have at least five years of experience in GRC or IT risk, a ...
We are seeking a highly motivated and experienced Governance, Risk, and Compliance (GRC) Analyst to join our team. The ideal candidate will have at least five years of experience in GRC or IT risk, a ...
We are seeking a highly motivated and experienced Governance, Risk, and Compliance (GRC) Analyst to join our team. The ideal candidate will have at least five years of experience in GRC or IT risk, a ...
We are seeking a highly motivated and experienced Governance, Risk, and Compliance (GRC) Analyst to join our team. The ideal candidate will have at least five years of experience in GRC or IT risk, a ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA ... Work within the Logic Manager (GRC) platform * Support metrics and reporting focused on issues and ...
Operational Risk Analyst -Security Governance & Risk Issues Management Location: Merrifield VA ... Work within the Logic Manager (GRC) platform * Support metrics and reporting focused on issues and ...
About RiskSpan RiskSpan is a leading source of analytics, modeling, data, and risk management ... GRC platforms (e.g., Archer, MetricStream) preferred. Strong analytical, communication, and ...
About RiskSpan RiskSpan is a leading source of analytics, modeling, data, and risk management ... GRC platforms (e.g., Archer, MetricStream) preferred. Strong analytical, communication, and ...
Join us today. Our Financial Management & Business Analysis Portfolio supports the U.S. Army ... SPA has an immediate need for SIPR Governance, Risk, and Compliance (GRC) & Security Analyst within ...
Join us today. Our Financial Management & Business Analysis Portfolio supports the U.S. Army ... SPA has an immediate need for SIPR Governance, Risk, and Compliance (GRC) & Security Analyst within ...
... GRC efforts. This position is 100% Onsite and not open for Remote. Senior Analyst, Cybersecurity Governance, Risk and Compliance Responsibilities: - Review and understand current IT Risk Management ...
... GRC efforts. This position is 100% Onsite and not open for Remote. Senior Analyst, Cybersecurity Governance, Risk and Compliance Responsibilities: - Review and understand current IT Risk Management ...
... GRC)/Risk Management Tools such as Bwise, ServiceNow, or similar platforms. * Review, develop and communicate divisional risk and control assessments. * Assist management in gathering, analyzing ...
... GRC)/Risk Management Tools such as Bwise, ServiceNow, or similar platforms. * Review, develop and communicate divisional risk and control assessments. * Assist management in gathering, analyzing ...
... GRC)/Risk Management Tools such as Bwise, ServiceNow, or similar platforms. * Review, develop and communicate divisional risk and control assessments. * Assist management in gathering, analyzing ...
... GRC)/Risk Management Tools such as Bwise, ServiceNow, or similar platforms. * Review, develop and communicate divisional risk and control assessments. * Assist management in gathering, analyzing ...
Conduct risk assessments, control gap analyses, and maturity evaluations aligned to industry frameworks (NIST CSF, ISO 27001, SOC 2, COBIT, CMMC, FedRAMP) * Develop and maintain GRC deliverables ...
Quick apply
Conduct risk assessments, control gap analyses, and maturity evaluations aligned to industry frameworks (NIST CSF, ISO 27001, SOC 2, COBIT, CMMC, FedRAMP) * Develop and maintain GRC deliverables ...
Conduct risk assessments, control gap analyses, and maturity evaluations aligned to industry frameworks (NIST CSF, ISO 27001, SOC 2, COBIT, CMMC, FedRAMP) * Develop and maintain GRC deliverables ...
Conduct risk assessments, control gap analyses, and maturity evaluations aligned to industry frameworks (NIST CSF, ISO 27001, SOC 2, COBIT, CMMC, FedRAMP) * Develop and maintain GRC deliverables ...
Join us today. Our Financial Management & Business Analysis Portfolio supports the U.S. Army ... SPA has an immediate need for SIPR Governance, Risk, and Compliance (GRC) & Security Analyst within ...
Join us today. Our Financial Management & Business Analysis Portfolio supports the U.S. Army ... SPA has an immediate need for SIPR Governance, Risk, and Compliance (GRC) & Security Analyst within ...
Senior Analyst, Cybersecurity GRC
Washington, DC · On-site
$113.30K - $146.10K/yr
Senior Analyst, Cybersecurity GRC Responsibilities: - Review and understand current IT Risk Management (ITRM) program framework and associated policies, standards, procedures, and processes ...
Senior Analyst, Cybersecurity GRC
Washington, DC · On-site
$113.30K - $146.10K/yr
Senior Analyst, Cybersecurity GRC Responsibilities: - Review and understand current IT Risk Management (ITRM) program framework and associated policies, standards, procedures, and processes ...
Pncpl GRC Analyst
Herndon, VA · Remote
The Principal Governance, Risk, & Compliance (GRC) Analyst is an Individual contributor (IC) role that reports to the Manager of GRC. This role is within the team responsible for implementing and ...
Pncpl GRC Analyst
Herndon, VA · Remote
The Principal Governance, Risk, & Compliance (GRC) Analyst is an Individual contributor (IC) role that reports to the Manager of GRC. This role is within the team responsible for implementing and ...
Configure and implement SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management * Support SAP GRC ...
Configure and implement SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management * Support SAP GRC ...
Mid-Level GRC Analyst
$70K - $80K/yr
Description The Mid-Level GRC Analyst will support cybersecurity governance, risk management, and compliance (GRC) initiatives across commercial and federal client environments. This role requires ...
Mid-Level GRC Analyst
$70K - $80K/yr
Description The Mid-Level GRC Analyst will support cybersecurity governance, risk management, and compliance (GRC) initiatives across commercial and federal client environments. This role requires ...
Sr GRC Analyst
Herndon, VA · Remote
$98.70K - $129.10K/yr
26-May-2026 Senior GRC Engineering Analyst US (Remote) 10880BR Company Summary Built on 40 years of ... Identify control gaps, assess technical risk and business impact, and drive remediation to closure ...
Sr GRC Analyst
Herndon, VA · Remote
$98.70K - $129.10K/yr
26-May-2026 Senior GRC Engineering Analyst US (Remote) 10880BR Company Summary Built on 40 years of ... Identify control gaps, assess technical risk and business impact, and drive remediation to closure ...
The GRC Analyst, Federal & Customer Programs is responsible for the hands-on analysis ... Route risk acceptance and exception decisions to the appropriate decision authority with the ...
Quick apply
The GRC Analyst, Federal & Customer Programs is responsible for the hands-on analysis ... Route risk acceptance and exception decisions to the appropriate decision authority with the ...
... analytical and problem-solving skills, inquisitive nature and comfort challenging current practices. - Understanding of governance, risk and compliance (GRC) practices and technologies across ...
... analytical and problem-solving skills, inquisitive nature and comfort challenging current practices. - Understanding of governance, risk and compliance (GRC) practices and technologies across ...
Job Title: Compliance Analyst (GRC/RMF Focused) Pay Type : SALARIED EXEMPT Location: Hybrid ... This role plays a key part in supporting Risk Management Framework (RMF) activities, continuous ...
Quick apply
Job Title: Compliance Analyst (GRC/RMF Focused) Pay Type : SALARIED EXEMPT Location: Hybrid ... This role plays a key part in supporting Risk Management Framework (RMF) activities, continuous ...
Job Title: Compliance Analyst (GRC/RMF Focused) Pay Type : SALARIED EXEMPT Location: Hybrid ... This role plays a key part in supporting Risk Management Framework (RMF) activities, continuous ...
Quick apply
Job Title: Compliance Analyst (GRC/RMF Focused) Pay Type : SALARIED EXEMPT Location: Hybrid ... This role plays a key part in supporting Risk Management Framework (RMF) activities, continuous ...
Grc Risk Analyst information
What are the key skills and qualifications needed to thrive as a GRC Risk Analyst, and why are they important?
What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?
What are GRC Risk Analysts?
What is the difference between Grc Risk Analyst vs Compliance Analyst?
| Aspect | Grc Risk Analyst | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, FRM, CRISC | ISO 19600, CCEP, CISA |
| Work Environment | Risk management teams, corporate offices | Regulatory departments, corporate offices |
| Industry Usage | Finance, banking, insurance, corporate risk | Financial services, healthcare, manufacturing |
| Job Focus | Identifying, assessing, and mitigating risks across enterprise | Ensuring compliance with laws and regulations |
While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

Job description
We are seeking a highly motivated and experienced Governance, Risk, and Compliance (GRC) Analyst to join our team. The ideal candidate will have at least five years of experience in GRC or IT risk, a bachelor's degree or higher in a related field, and professional certifications in GRC or cybersecurity. As a GRC Analyst, you will play a pivotal role in ensuring our organization adheres to regulatory requirements, manage risks effectively, and maintain robust governance practices for industry standards, frameworks and international data protection law.
Responsibilities:
- Develop, implement, and maintain governance, risk, and compliance frameworks, policies, standards and procedures.
- Conduct risk assessments and analyze potential threats to the organization's information systems and business operations.
- Monitor compliance with internal policies and external regulatory requirements (e.g., NIS2, DORA, ISO27001, AICPA Trust Principles, NIST, CIS, GDPR, SOX, HIPAA).
- Track changes to regional data protection law in the regions where EdgeConneX operates (APAC, EU, North America and South America)
- Collaborate with cross-functional teams to identify, assess, and mitigate risks across the organization.
- Maintain risk registers, compliance metrics, and reporting dashboards
- Support third-party risk management and vendor security assessments
- Prepare and present regular reports on risk management activities, compliance status, and remediation efforts to management.
- Support internal and external audits, including gathering documentation and facilitating audit processes.
- Stay up to date with changes in relevant laws, regulations, and industry best practices.
- Assist in the development and delivery of training programs related to governance, risk, and compliance topics.
- Contribute to continuous improvement of GRC processes and tooling
Required education & experience:
- Bachelor's degree or higher in Information Security, Computer Science, Business Administration, or a related field.
- Minimum of 5 years of professional experience in governance, risk, and compliance or a related discipline.
- Professional certifications such as CISA, CRISC, CISSP, CISM, ISO27001LA or similar are required.
- Strong understanding of regulatory requirements and frameworks (e.g., ISO 27001, NIST, PCI DSS).
- Risk assessment methodologies and control testing
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills, with the ability to work collaboratively across departments.
- Experience with:
- Policy development and lifecycle management
- Third-party/vendor risk assessments
- GRC tools and risk management platforms (e.g., DRATA, VANTA, Archer, OneTrust)
- Detail-oriented and highly organized, with a proactive approach to identifying and managing risks.
Preferred experience:
- Experience with GRC software platforms and tools.
- Project management experience or certification.
- Experience in a regulated industry (e.g., datacenter, finance, technology).
- Ability to train and mentor junior staff.
About EdgeConneX
Sourced by ZipRecruiter
Industry
Telecommunications
Company size
11 - 50 Employees
Headquarters location
Herndon, VA, US
Year founded
2009