1

Grc Risk Analyst Jobs in Phoenix, AZ (NOW HIRING)

Experience leading a financial or risk-related reporting process, including development of analytical capabilities using Tableau, Power BI, and/or GRC tools. * Demonstrated ability to build strong ...

Cyber Security Technical GRC - VP

Tempe, AZ · Hybrid

$106K - $143K/yr

... Compliance (GRC) team.Theposition requires adeep understanding of how cloud environments ... Monitor and analyze risk trends (internal and external) to proactively mitigate potential ...

Risk Treatment Specialist

Tempe, AZ · Hybrid

$108K - $185K/yr

Produce impactful and insightful thematic analysis to support proactive risk management * Maintain ... Engage with Data & Technology teams and Risk Enablement team for relevant GRC tooling enhancements ...

Showing results 21-40

Grc Risk Analyst information

See Phoenix, AZ salary details

$15

$40

$65

How much do grc risk analyst jobs pay per hour?

As of Aug 14, 2026, the average hourly pay for grc risk analyst in Phoenix, AZ is $40.20, according to ZipRecruiter salary data. Most workers in this role earn between $29.62 and $48.94 per hour, depending on experience, location, and employer.

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What is a GRC Risk Analyst?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.

What job categories do people searching Grc Risk Analyst jobs in Phoenix, AZ look for?

The top searched job categories for Grc Risk Analyst jobs in Phoenix, AZ are:

What cities near Phoenix, AZ are hiring for Grc Risk Analyst jobs?

Cities near Phoenix, AZ with the most Grc Risk Analyst job openings:

GRC Analyst / Onsite in Downtown Phoenix

Motion Recruitment Partners, LLC

Phoenix, AZ • On-site

Other

Posted 11 days ago


Job description

A large enterprise organization is seeking a GRC Analyst to support a high-visibility security initiative in a onsite role based in downtown Phoenix, AZ. This is a contract position focused on governance, risk, and compliance activities across technology projects, with exposure to security frameworks, audit processes, and enterprise risk management tools such as ServiceNow, Azure DevOps, Jira, and SharePoint.
This is an excellent opportunity for someone who thrives in structured environments and enjoys bringing order to complex security processes. The key value of this role is ownership of the risk register and approval lifecycle - you'll be the central point ensuring risks, decisions, documentation, and approvals are clearly tracked and audit-ready. If you're looking to deepen your GRC experience while working closely with security architects, engineering teams, and stakeholders across a large organization, this role offers strong exposure to enterprise-scale governance practices and real-world security decision-making.
Contract Duration: 12 - 24 Months
Required Skills & Experience
  • Experience supporting governance, risk, compliance, audit readiness, security documentation, risk management, or approval tracking for technology projects
  • Ability to maintain a project risk register with clear risk descriptions, owners, impacts, likelihood, mitigation plans, residual risk, decisions, and status updates
  • Working knowledge of security governance and risk management concepts, including control mapping, risk acceptance, evidence collection, approval workflows, and issue remediation tracking
  • Familiarity with security frameworks such as NIST Cybersecurity Framework, NIST SP 800-53, CIS Controls, ISO 27001, or equivalent
  • Ability to understand technical project context well enough to accurately document risks, controls, approvals, dependencies, and evidence requirements
  • Strong documentation discipline, attention to detail, follow-up skills, and ability to keep records audit-ready
  • Proficiency with Microsoft Office, Excel, SharePoint, Teams, and tools such as ServiceNow, Azure DevOps, Jira, Archer, or OneTrust
  • Ability to coordinate across security, architecture, engineering, project delivery, compliance, operations, and stakeholder groups
  • Strong written communication skills and ability to clearly summarize risk and approval status
Desired Skills & Experience
  • Security+, CGRC, CISA, CRISC, CISM, or similar certifications
  • Experience supporting public sector, regulated, or high-governance environments
  • Experience with authorization, exception, risk acceptance, audit, or compliance evidence processes
  • Experience building dashboards, trackers, approval matrices, or evidence repositories
  • Familiarity with Azure cloud, infrastructure delivery, DevOps, and security review processes
What You Will Be Doing
Tech Breakdown
  • 50% GRC Platforms and Documentation
  • 30% Security Frameworks and Risk Management
  • 20% Collaboration and Reporting Tools
Daily Responsibilities
  • 60% Risk and Compliance Tracking
  • 15% Process Coordination and Follow-Ups
  • 25% Cross-Team Collaboration