Configure and implement SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management * Support SAP GRC ...
Configure and implement SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management * Support SAP GRC ...
Collaborate with the Information Security GRC team to align risk assessments, risk and control ... Partner with Data Protection teams to evaluate control gaps, perform operational risk gap analyses ...
Collaborate with the Information Security GRC team to align risk assessments, risk and control ... Partner with Data Protection teams to evaluate control gaps, perform operational risk gap analyses ...
Senior Cybersecurity Risk Analyst - USA Remote
Miami, FL · Remote
$130K - $160K/yr
The Senior Cybersecurity Risk Analyst is responsible for executing third-party and supplier risk ... Familiarity with GRC platforms (e.g., OneTrust, ServiceNow IRM, RSA Archer) and vendor risk tooling ...
Senior Cybersecurity Risk Analyst - USA Remote
Miami, FL · Remote
$130K - $160K/yr
The Senior Cybersecurity Risk Analyst is responsible for executing third-party and supplier risk ... Familiarity with GRC platforms (e.g., OneTrust, ServiceNow IRM, RSA Archer) and vendor risk tooling ...
AVP, IT Ops Risk
Coral Gables, FL · On-site
Collaborate with the Information Security GRC team to align risk assessments, risk and control ... Partner with Data Protection teams to evaluate control gaps, perform operational risk gap analyses ...
AVP, IT Ops Risk
Coral Gables, FL · On-site
Collaborate with the Information Security GRC team to align risk assessments, risk and control ... Partner with Data Protection teams to evaluate control gaps, perform operational risk gap analyses ...
GRC Specialist Senior
Coral Gables, FL · On-site +1
$94K/yr
... analytics or integration, audits, assessments, risk and remediation. * Knowledge of AI concepts ... and GRC environments (desirable). * Skill in applying cyber and cloud security frameworks ...
GRC Specialist Senior
Coral Gables, FL · On-site +1
$94K/yr
... analytics or integration, audits, assessments, risk and remediation. * Knowledge of AI concepts ... and GRC environments (desirable). * Skill in applying cyber and cloud security frameworks ...
GRC Specialist Senior
Coral Gables, FL · On-site
... analytics or integration, audits, assessments, risk and remediation. * Knowledge of AI concepts ... and GRC environments (desirable). * Skill in applying cyber and cloud security frameworks ...
GRC Specialist Senior
Coral Gables, FL · On-site
... analytics or integration, audits, assessments, risk and remediation. * Knowledge of AI concepts ... and GRC environments (desirable). * Skill in applying cyber and cloud security frameworks ...
Enterprise Risk Manager
Miami, FL · On-site
Excellent analytical, documentation, and problem-solving skills. * Strong communication and ... Exposure to GRC tools such as Archer, ServiceNow GRC, MetricStream, or LogicGate. * Certifications ...
Enterprise Risk Manager
Miami, FL · On-site
Excellent analytical, documentation, and problem-solving skills. * Strong communication and ... Exposure to GRC tools such as Archer, ServiceNow GRC, MetricStream, or LogicGate. * Certifications ...
GRC/IRM ServiceNow Technology Implementation Solutions - Manager
Miami, FL · On-site
$99K - $232K/yr
... Analyzing and identifying system interactions to enhance regulatory risk compliance - Taking ... GRC) technology solutions - Utilizing analytical thinking to enhance compliance program ...
New
GRC/IRM ServiceNow Technology Implementation Solutions - Manager
Miami, FL · On-site
$99K - $232K/yr
... Analyzing and identifying system interactions to enhance regulatory risk compliance - Taking ... GRC) technology solutions - Utilizing analytical thinking to enhance compliance program ...
New
Drive the identification, analysis, and documentation of cybersecurity risks and control gaps using ... Lead the development, documentation, and continuous improvement of security and GRC processes to ...
Quick apply
Drive the identification, analysis, and documentation of cybersecurity risks and control gaps using ... Lead the development, documentation, and continuous improvement of security and GRC processes to ...
Cybersecurity, IT GRC Practice Lead
Coral Gables, FL · On-site
$105K - $142K/yr
... AI Risk Management and more--and you love leading teams and effortlessly guiding your clients ... This position requires a highly analytical, detail-oriented professional with experience ...
Quick apply
Cybersecurity, IT GRC Practice Lead
Coral Gables, FL · On-site
$105K - $142K/yr
... AI Risk Management and more--and you love leading teams and effortlessly guiding your clients ... This position requires a highly analytical, detail-oriented professional with experience ...
Senior IT GRC Auditor - Miami Florida
$89K - $118K/yr
This position requires a highly analytical, detail-oriented professional with experience ... What You'll Do: * Assist with Annual Risk Assessment & Audit Planning * Attend interviews with ...
Quick apply
Senior IT GRC Auditor - Miami Florida
$89K - $118K/yr
This position requires a highly analytical, detail-oriented professional with experience ... What You'll Do: * Assist with Annual Risk Assessment & Audit Planning * Attend interviews with ...
Analyst - Compliance
Sunrise, FL · On-site
The Global Risk & Compliance (GRC) organization serves as American Express' independent risk ... The Analyst will provide compliance advisory, support compliance risk assessments, perform ...
New
Analyst - Compliance
Sunrise, FL · On-site
The Global Risk & Compliance (GRC) organization serves as American Express' independent risk ... The Analyst will provide compliance advisory, support compliance risk assessments, perform ...
New
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
... SAP Governance, Risk, and Compliance (GRC) * 3+ years of experience designing or supporting role-based access controls, segregation of duties analysis, or sensitive access controls in SAP ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
... SAP Governance, Risk, and Compliance (GRC) * 3+ years of experience designing or supporting role-based access controls, segregation of duties analysis, or sensitive access controls in SAP ...
... Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments ... analytics and dashboards. * Implementing data quality checks, lineage, metadata, and access ...
... Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments ... analytics and dashboards. * Implementing data quality checks, lineage, metadata, and access ...
Staff IT Internal Auditor
Plantation, FL · On-site +1
Internship or early-career experience in IT audit, internal audit, public accounting, technology risk, cybersecurity, finance, accounting, or data analytics. * Exposure to audit management tools, GRC ...
Staff IT Internal Auditor
Plantation, FL · On-site +1
Internship or early-career experience in IT audit, internal audit, public accounting, technology risk, cybersecurity, finance, accounting, or data analytics. * Exposure to audit management tools, GRC ...
Staff IT Internal Auditor
Plantation, FL · On-site
Internship or early-career experience in IT audit, internal audit, public accounting, technology risk, cybersecurity, finance, accounting, or data analytics. * Exposure to audit management tools, GRC ...
Staff IT Internal Auditor
Plantation, FL · On-site
Internship or early-career experience in IT audit, internal audit, public accounting, technology risk, cybersecurity, finance, accounting, or data analytics. * Exposure to audit management tools, GRC ...
Sr. Manager, IT Internal Audit
Miami, FL · On-site
$86K - $118K/yr
Cybersecurity & Data Risk : Fluent in information security audit, IAM, cloud security, and data ... Python and/or SQL for audit analytics and automation * Optro GRC (AuditBoard) - IT integration ...
Sr. Manager, IT Internal Audit
Miami, FL · On-site
$86K - $118K/yr
Cybersecurity & Data Risk : Fluent in information security audit, IAM, cloud security, and data ... Python and/or SQL for audit analytics and automation * Optro GRC (AuditBoard) - IT integration ...
Policy and Control Manager
Miami, FL · On-site
$136K/yr
... cause analysis and remediation priorities. * Identify emerging risks within the institution and ... keep the "risk appetite" within bounds. * Lead the tracking, escalation, and resolution of GRC ...
Quick apply
Policy and Control Manager
Miami, FL · On-site
$136K/yr
... cause analysis and remediation priorities. * Identify emerging risks within the institution and ... keep the "risk appetite" within bounds. * Lead the tracking, escalation, and resolution of GRC ...
Senior Associate, Compliance as a Service
Fort Lauderdale, FL · On-site +1
$80K - $132K/yr
Join Aprio's Risk Advisory and Assurance Services team and you will help clients maximize their ... Effectively use GRC platforms (Drata, Anecdotes, Hyperproof) to implement and manage Compliance ...
Senior Associate, Compliance as a Service
Fort Lauderdale, FL · On-site +1
$80K - $132K/yr
Join Aprio's Risk Advisory and Assurance Services team and you will help clients maximize their ... Effectively use GRC platforms (Drata, Anecdotes, Hyperproof) to implement and manage Compliance ...
Senior Associate, Internal Controls - Miami, FL
Miami, FL · On-site
$80K - $100K/yr
... risk management, or a related controls-focused role. Education: Bachelor's degree in Accounting ... GRC platforms preferred. • Experience supporting acquisitions, system implementations, or ...
Senior Associate, Internal Controls - Miami, FL
Miami, FL · On-site
$80K - $100K/yr
... risk management, or a related controls-focused role. Education: Bachelor's degree in Accounting ... GRC platforms preferred. • Experience supporting acquisitions, system implementations, or ...
Grc Risk Analyst information
See Miami, FL salary details
$14.71 - $19.10
3% of jobs
$19.10 - $23.49
7% of jobs
$23.49 - $27.88
12% of jobs
$28.74 is the 25th percentile. Wages below this are outliers.
$27.88 - $32.27
15% of jobs
$32.27 - $36.66
13% of jobs
The median wage is $36.81 / hr.
$36.66 - $41.05
16% of jobs
$41.05 - $45.44
8% of jobs
$45.99 is the 75th percentile. Wages above this are outliers.
$45.44 - $49.83
11% of jobs
$49.83 - $54.22
6% of jobs
$54.22 - $58.61
6% of jobs
$58.61 - $63
3% of jobs
$14
$38
$62
How much do grc risk analyst jobs pay per hour?
What is the difference between Grc Risk Analyst vs Compliance Analyst?
| Aspect | Grc Risk Analyst | Compliance Analyst |
|---|---|---|
| Certifications | ISO 31000, FRM, CRISC | ISO 19600, CCEP, CISA |
| Work Environment | Risk management teams, corporate offices | Regulatory departments, corporate offices |
| Industry Usage | Finance, banking, insurance, corporate risk | Financial services, healthcare, manufacturing |
| Job Focus | Identifying, assessing, and mitigating risks across enterprise | Ensuring compliance with laws and regulations |
While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.
What is a GRC Risk Analyst?
What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?
What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?
- Entry Level Cyber Security Skillbridge
- Senior Grc Analyst
- Security Risk Analyst
- Temporary Information Security Analyst
- Work From Home Security Risk Analyst
- Entry Level Malware Analyst
- Information Security
- Senior Information Security Compliance Analyst
- Full Time Dlp Analyst
- Night Shift Junior Security Analyst

Other
Re-posted 8 days ago
Deloitte rating
8.2
Based on 92 frontline employees who took The Breakroom Quiz
46th of 150 rated financial services
Job description
SAP Security and GRC Manager / Engineering Manager II
Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver solutions that help clients navigate evolving threats, strengthen resilience, and support secure business transformation. In this role, you will help organizations manage SAP security and governance, risk, and compliance requirements across implementation and transformation programs.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As an Engineering Manager II on the Enterprise Security team, you will be responsible for supporting SAP security and GRC implementations, assessments, and transformation initiatives across client environments.
- Lead SAP ECC and SAP S/4HANA security assessments, design, and implementation activities across complex business and technology environments
- Design, build, test, and deploy end-user and IT support security roles across SAP platforms, including Fiori, Ariba, Integrated Business Planning, Business Technology Platform, and Business Data Cloud
- Configure and implement SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management
- Support SAP GRC Process Control design and configuration, including controls, risks, subprocesses, organizations, assignments, and continuous control monitoring capabilities
- Manage project workstreams, client stakeholders, and delivery teams while providing recommendations on SAP security role design, segregation of duties, vulnerability findings, and regulatory control requirements
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
The team
Deloitte's Enterprise Security Offering helps clients embed security across digital transformation initiatives by securing core technology environments while enabling business change. The team supports work spanning security architecture, secure development and deployment, cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Qualifications
Required:
- Bachelor's degree
- 8+ years of experience with SAP S/4HANA security and SAP Governance, Risk, and Compliance (GRC) Access Control
- 8+ years of hands-on experience implementing security for SAP S/4HANA, Fiori, Ariba, Integrated Business Planning (IBP), Business Technology Platform (BTP), and Business Data Cloud (BDC), including requirement gathering, security design, and deployment
- Demonstrated delivery of 3+ full-cycle SAP GRC Access Control implementation projects, SAP S/4HANA security implementations, and 2+ SAP GRC Process Control implementations
- 5+ years of experience designing, configuring, and implementing SAP GRC Access Risk Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), and Business Role Management (BRM)
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- Previous consulting experience
- Professional certification such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA)
- Experience with SAP identity and access governance
- Experience with cloud security and cloud migrations
- Experience with SAP business process controls and data protection tools such as NextLabs
- Experience with vulnerability management tools such as Onapsis
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Qualifications:SAP Security and GRC Manager / Engineering Manager II
Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver solutions that help clients navigate evolving threats, strengthen resilience, and support secure business transformation. In this role, you will help organizations manage SAP security and governance, risk, and compliance requirements across implementation and transformation programs.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As an Engineering Manager II on the Enterprise Security team, you will be responsible for supporting SAP security and GRC implementations, assessments, and transformation initiatives across client environments.
- Lead SAP ECC and SAP S/4HANA security assessments, design, and implementation activities across complex business and technology environments
- Design, build, test, and deploy end-user and IT support security roles across SAP platforms, including Fiori, Ariba, Integrated Business Planning, Business Technology Platform, and Business Data Cloud
- Configure and implement SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management
- Support SAP GRC Process Control design and configuration, including controls, risks, subprocesses, organizations, assignments, and continuous control monitoring capabilities
- Manage project workstreams, client stakeholders, and delivery teams while providing recommendations on SAP security role design, segregation of duties, vulnerability findings, and regulatory control requirements
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
The team
Deloitte's Enterprise Security Offering helps clients embed security across digital transformation initiatives by securing core technology environments while enabling business change. The team supports work spanning security architecture, secure development and deployment, cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Qualifications
Required:
- Bachelor's degree
- 8+ years of experience with SAP S/4HANA security and SAP Governance, Risk, and Compliance (GRC) Access Control
- 8+ years of hands-on experience implementing security for SAP S/4HANA, Fiori, Ariba, Integrated Business Planning (IBP), Business Technology Platform (BTP), and Business Data Cloud (BDC), including requirement gathering, security design, and deployment
- Demonstrated delivery of 3+ full-cycle SAP GRC Access Control implementation projects, SAP S/4HANA security implementations, and 2+ SAP GRC Process Control implementations
- 5+ years of experience designing, configuring, and implementing SAP GRC Access Risk Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), and Business Role Management (BRM)
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- Previous consulting experience
- Professional certification such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA)
- Experience with SAP identity and access governance
- Experience with cloud security and cloud migrations
- Experience with SAP business process controls and data protection tools such as NextLabs
- Experience with vulnerability management tools such as Onapsis
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Education:Bachelor's DegreeEmployment Type: