1

It Governance Risk Compliance Analyst Jobs (NOW HIRING)

... organization's governance, risk, privacy, and compliance program, ensuring technology systems ... It partners closely with Legal, Information Security, IT, People Team, and Procurement to identify ...

next page

Showing results 1-20

It Governance Risk Compliance Analyst information

See salary details

$46K

$93K

$104.5K

How much do it governance risk compliance analyst jobs pay per year?

As of Sep 11, 2026, the average yearly pay for it governance risk compliance analyst in the United States is $93,017.00, according to ZipRecruiter salary data. Most workers in this role earn between $94,000.00 and $94,500.00 per year, depending on experience, location, and employer.

What does an IT Governance Risk Compliance Analyst do?

An IT Governance, Risk, and Compliance (GRC) Analyst is responsible for ensuring that an organization's information technology systems comply with regulatory requirements and internal policies. They assess and manage IT risks, implement governance frameworks, and monitor compliance with relevant laws and standards such as GDPR, SOX, or ISO 27001. The role involves conducting audits, preparing reports, and working with various departments to mitigate risks and improve security. Their work helps protect the organization from data breaches, legal penalties, and reputational damage.

What are the key skills and qualifications needed to thrive as an IT Governance Risk Compliance Analyst?

To thrive as an IT Governance Risk Compliance Analyst, you need a solid understanding of information security frameworks, risk management principles, and relevant regulatory standards, usually supported by a degree in information technology or related field. Familiarity with GRC platforms (such as RSA Archer or ServiceNow), risk assessment tools, and certifications like CISA, CRISC, or CISSP are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help you collaborate across departments and articulate complex compliance issues. These competencies are crucial for ensuring organizational compliance, minimizing risk exposure, and supporting robust IT governance.

What are some common challenges IT Governance Risk Compliance Analysts face when working with different departments?

IT Governance Risk Compliance Analysts often encounter challenges when aligning compliance standards and risk mitigation strategies across various departments. Each department may have unique processes and priorities, leading to inconsistencies in policy adoption and risk awareness. Effective communication, adaptability, and strong relationship-building skills are crucial for ensuring all teams understand and adhere to governance requirements. Analysts frequently collaborate with IT, legal, and business units to facilitate audits, implement controls, and foster a culture of compliance throughout the organization.

What is the difference between It Governance Risk Compliance Analyst vs IT Security Analyst?

AspectIt Governance Risk Compliance AnalystIT Security Analyst
CertificationsISO 27001 Lead Auditor, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentPolicy development, compliance audits, risk assessmentsNetwork monitoring, threat analysis, incident response
Employer & Industry UsageFinancial, healthcare, government sectorsTech companies, cybersecurity firms, enterprises

While both roles focus on information security, the It Governance Risk Compliance Analyst emphasizes ensuring organizational compliance, managing risks, and developing governance frameworks. In contrast, the IT Security Analyst concentrates on protecting systems from threats and responding to security incidents. Both roles often collaborate but serve distinct functions within cybersecurity and compliance strategies.

Is IT governance risk compliance a good career?

IT Governance Risk Compliance analysts play a key role in ensuring organizations adhere to regulatory standards and manage technology risks effectively. The field offers strong job growth, competitive salaries, and opportunities for certification such as CISA or CISSP, making it a stable and rewarding career path for those interested in cybersecurity, compliance, and risk management.

Is an IT Governance Risk Compliance Analyst a good entry level job?

An IT Governance Risk Compliance Analyst can be a suitable entry-level position for individuals interested in cybersecurity, risk management, and compliance frameworks like ISO or NIST. It often requires foundational knowledge of IT systems, security principles, and relevant certifications such as CompTIA Security+ or CISA. The role provides opportunities to develop skills in assessing controls, managing risks, and understanding regulatory requirements, making it a solid starting point in the cybersecurity and IT governance fields.

What cities are hiring for It Governance Risk Compliance Analyst jobs?

Cities with the most It Governance Risk Compliance Analyst job openings:

What states have the most It Governance Risk Compliance Analyst jobs?

States with the most job openings for It Governance Risk Compliance Analyst jobs include:

What are popular job titles related to It Governance Risk Compliance Analyst jobs?

For It Governance Risk Compliance Analyst jobs, the most frequently searched job titles are:

Infographic showing various It Governance Risk Compliance Analyst job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 11% Part Time, and 4% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $93,017 per year, or $44.7 per hour.

IT Governance and Compliance Analyst

Chesterfield, VA • On-site

$89K - $89K/yr

Contractor

Re-posted yesterday


Job description

Job ID:  790517

Position:  IT Governance and Compliance Analyst

Client: VSU

Location: 2430 Pine Forest Drive, South Chesterfield, VA 23834

‘Duration: 05+ Months

Virginia State University’s Information Technology Services (ITS) department is seeking an IT Governance and Compliance Analyst (w/AI) to strengthen institutional compliance and technology oversight in a higher education environment with a particular focus on the use of Artificial Intelligence (AI). This role ensures that AI technology practices align with academic integrity, regulatory requirements, and VSU’s mission to support teaching, learning, student success, and institutional efficiency.

Key Responsibilities

  • Higher Education Governance: Maintain IT governance frameworks that support academic, research, and administrative operations.
  • Regulatory Compliance: Monitor and enforce compliance with FERPA, HIPAA, and other security and higher education regulations.
  • Audit Support: Coordinate AI collaborations and prepare documentation for internal and external audits, including accreditation-related technology compliance.
  • Policy Development: Develop and coordinate AI related updates to policies, standards, guidelines for areas under ITS oversight such as data privacy, cybersecurity, ethical use of technology resources.
  • Security Awareness: Use AI to monitor compliance with security awareness programs for faculty, staff, and students.
  • Continuous Improvement: Track emerging AI governance regulations and compliance best practices in higher education and offer recommendations for process improvements.

Skills and Qualifications

  • Technical Knowledge:
    • Familiarity with governance frameworks (COBIT, ITIL) and compliance standards (NIST, ISO).
    • Understanding of higher education systems (LMS, SIS, ERP) and AI data privacy requirements.
  • Analytical Skills: Ability to interpret complex compliance requirements for AI and apply them to academic and administrative contexts.
  • Communication Skills: Strong ability to engage faculty, administrators, and technical teams in AI compliance initiatives.
  • Experience:
    • 5–10 years in IT governance, risk, or compliance roles required.
    • Experience with AI Governance and Compliance in higher education or regulated environments preferred.
  • Education: Bachelor’s degree in Information Technology, Business, or related field preferred.

Work Environment

  • Setting: Primarily onsite with flexibility of 2 days a week for remote work.
  • Reporting: Reports to the Director of IT Governance, Risk & Compliance.