We are looking for a Senior Security Risk & Compliance Analyst to support and strengthen APCO's security governance, risk, and compliance (GRC) initiatives. In this role, you will help drive ...
We are looking for a Senior Security Risk & Compliance Analyst to support and strengthen APCO's security governance, risk, and compliance (GRC) initiatives. In this role, you will help drive ...
We are looking for a Senior Security Risk & Compliance Analyst to support and strengthen APCO's security governance, risk, and compliance (GRC) initiatives. In this role, you will help drive ...
Quick apply
We are looking for a Senior Security Risk & Compliance Analyst to support and strengthen APCO's security governance, risk, and compliance (GRC) initiatives. In this role, you will help drive ...
AI Security Engineer Manager
Columbus, OH · On-site
Risk & Compliance * Identity & Access Management * Data Protection * Cyber Design * Incident Response * Security Architecture * Business Partnership Qualifications Required: * Bachelor's degree or ...
AI Security Engineer Manager
Columbus, OH · On-site
Risk & Compliance * Identity & Access Management * Data Protection * Cyber Design * Incident Response * Security Architecture * Business Partnership Qualifications Required: * Bachelor's degree or ...
Sr. Cybersecurity Operational Risk Officer
Columbus, OH · On-site
$96K - $124K/yr
Evaluate and monitor security portfolio, strategic initiatives, including AI adoption and ... compliance with enterprise risk management requirements. Provide expert advice on cybersecurity and ...
Sr. Cybersecurity Operational Risk Officer
Columbus, OH · On-site
$96K - $124K/yr
Evaluate and monitor security portfolio, strategic initiatives, including AI adoption and ... compliance with enterprise risk management requirements. Provide expert advice on cybersecurity and ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
... compliance and operational risks in line with the firm's standards. You will collaborate with ... Advanced knowledge and experience leading data security, risk assessment & reporting, and control ...
... compliance and operational risks in line with the firm's standards. You will collaborate with ... Advanced knowledge and experience leading data security, risk assessment & reporting, and control ...
... compliance and operational risks in line with the firm's standards. You will collaborate with ... Advanced knowledge and experience leading data security, risk assessment & reporting, and control ...
... compliance and operational risks in line with the firm's standards. You will collaborate with ... Advanced knowledge and experience leading data security, risk assessment & reporting, and control ...
... compliance and operational risks in line with the firm's standards. You will collaborate with ... Advanced knowledge and experience leading data security, risk assessment & reporting, and control ...
... compliance and operational risks in line with the firm's standards. You will collaborate with ... Advanced knowledge and experience leading data security, risk assessment & reporting, and control ...
... compliance and operational risks in line with the firm's standards. You will collaborate with ... Advanced knowledge and experience leading data security, risk assessment & reporting, and control ...
... compliance and operational risks in line with the firm's standards. You will collaborate with ... Advanced knowledge and experience leading data security, risk assessment & reporting, and control ...
Data Security analyst
Columbus, OH · On-site
Assesses security and/or compliance of university systems; responsible for assessing, monitoring and analyzing data, identifying security, risk or compliance issues and/or events Leveraging job aids ...
Data Security analyst
Columbus, OH · On-site
Assesses security and/or compliance of university systems; responsible for assessing, monitoring and analyzing data, identifying security, risk or compliance issues and/or events Leveraging job aids ...
AWS Cloud Security Architect
Columbus, OH · On-site
$130 - $180/hr
Support security risk assessments, audits, compliance initiatives, and regulatory requirements * Act as a trusted advisor and mentor across security, engineering, and IT teams * Drive security best ...
AWS Cloud Security Architect
Columbus, OH · On-site
$130 - $180/hr
Support security risk assessments, audits, compliance initiatives, and regulatory requirements * Act as a trusted advisor and mentor across security, engineering, and IT teams * Drive security best ...
Interpreting and applying American Institute of Certified Public Accountants (AICPA), Securities ... Experience in regulatory compliance, risk assessment, or financial services * Experience ...
Interpreting and applying American Institute of Certified Public Accountants (AICPA), Securities ... Experience in regulatory compliance, risk assessment, or financial services * Experience ...
Wexner Medical Center Chief Information Security Officer
Columbus, OH · On-site
$180 - $240/hr
Provide executive oversight of the Third-Party Risk Management program, ensuring vendor risks are assessed, governed, and aligned with enterprise security and compliance requirements. Oversee ...
Wexner Medical Center Chief Information Security Officer
Columbus, OH · On-site
$180 - $240/hr
Provide executive oversight of the Third-Party Risk Management program, ensuring vendor risks are assessed, governed, and aligned with enterprise security and compliance requirements. Oversee ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
Perform third party supplier risk assessments by reviewing contracts for compliance with security policies, standards and practices; document security gaps and recommend appropriate remediation ...
... in compliance with regulatory, legal, and industry standards. By partnering with various ... Proficient knowledge and expertise in data security, risk assessment & reporting, control ...
... in compliance with regulatory, legal, and industry standards. By partnering with various ... Proficient knowledge and expertise in data security, risk assessment & reporting, control ...
... in compliance with regulatory, legal, and industry standards. By partnering with various ... Proficient knowledge and expertise in data security, risk assessment & reporting, control ...
... in compliance with regulatory, legal, and industry standards. By partnering with various ... Proficient knowledge and expertise in data security, risk assessment & reporting, control ...
... in compliance with regulatory, legal, and industry standards. By partnering with various ... Proficient knowledge and expertise in data security, risk assessment & reporting, control ...
... in compliance with regulatory, legal, and industry standards. By partnering with various ... Proficient knowledge and expertise in data security, risk assessment & reporting, control ...
Security Risk Compliance information
See salary details
$32.5K - $40.8K
6% of jobs
$40.8K - $49K
0% of jobs
$49K - $57.3K
6% of jobs
$63.3K is the 25th percentile. Wages below this are outliers.
$57.3K - $65.6K
17% of jobs
The median wage is $73.5K / yr.
$65.6K - $73.9K
21% of jobs
$73.9K - $82.1K
7% of jobs
$82.1K - $90.4K
9% of jobs
$90.4K - $98.7K
7% of jobs
$99.1K is the 75th percentile. Wages above this are outliers.
$98.7K - $107K
12% of jobs
$107K - $115.2K
6% of jobs
$115.2K - $123.5K
7% of jobs
$32.5K
$81.1K
$123.5K
How much do security risk compliance jobs pay per year?
What cities are hiring for Security Risk Compliance jobs?
Cities with the most Security Risk Compliance job openings:
What states have the most Security Risk Compliance jobs?
States with the most job openings for Security Risk Compliance jobs include:

Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted 8 days ago
APCO Holdings rating
8.0
Based on 10 frontline employees who took The Breakroom Quiz
169th of 314 rated insurance
Job description
APCO Holdings partners with dealerships across North America to deliver innovative vehicle protection products and services that enhance the ownership experience for customers and drive growth for our partners. Through our family of brands, we bring together industry expertise, technology, and data-driven insights to help dealers strengthen their finance and insurance performance and build lasting relationships with their customers.
Our teams work collaboratively across operations, technology, risk, finance, marketing, and sales to deliver solutions that create measurable value and support the continued growth of APCO and the partners we serve.
We are looking for a Senior Security Risk & Compliance Analyst to support and strengthen APCO's security governance, risk, and compliance (GRC) initiatives. In this role, you will help drive compliance efforts, assess security controls, identify risks, and support the organization's ongoing commitment to maintaining a strong security posture and regulatory compliance.
Audit & Compliance
- Support the planning, coordination, and execution of compliance audits, including readiness assessments and external audit engagements
- Partner with control owners to document, implement, and maintain compliance controls aligned control requirements.
- Collect, review, and validate audit evidence to ensure completeness and accuracy
- Track audit findings, exceptions, and remediation efforts through closure
- Act as a liaison between internal stakeholders and external auditors
Internal Audit
- Perform internal audits and control assessments to evaluate the effectiveness of security and compliance controls
- Develop audit plans, testing procedures, and audit reports
- Identify control gaps and recommend remediation actions
- Monitor and track remediation efforts to ensure timely resolution
GRC Platform Management
- Administer and maintain the organization's GRC platform
- Configure audit workflows and maintain accurate, up-to-date due diligence responses within the GRC platform.
- Ensure data integrity and accuracy within the system
- Generate dashboards and reports for compliance status, audit tracking, and risk posture
Risk Registration & Management
- Maintain the enterprise risk register, including identification, classification, and documentation of risks
- Facilitate risk assessments with business and IT stakeholders
- Evaluate risk severity based on likelihood and impact
- Track risk treatment plans (remediation, acceptance, transfer, avoidance)
- Provide regular reporting on risk posture to leadership
Governance & Cross-Functional Collaboration
- Collaborate with IT, Security, Legal, and business units to ensure alignment with compliance requirements
- Assist in the development and maintenance of security policies, standards, and procedures
- Support other compliance initiatives as needed (e.g., regulatory, customer security questionnaires)
- Bachelor's degree in Information Security, Information Systems, or related field (or equivalent experience)
- At least 5 years of experience in security compliance, audit, or GRC
- Hands-on experience with SOC 2 audits and Trust Services Criteria and New York 23 NYCRR 500, or other regulatory compliance.
- Experience with performing internal audits and control testing
- Familiarity with GRC tools (e.g., ServiceNow GRC, Archer GRC)
- Strong understanding of risk management principles and frameworks
- Knowledge of common frameworks (e.g., AICPA SOC 2, ISO 27001, NIST)
- Experience with leading cybersecurity due diligence activities, including responding to customer and partner security questionnaires accurately and in a timely manner
- Strong analytical, organizational, and communication skills
- Certified Information Systems Auditor (CISA) or
- Certified in Risk and Information Systems Control (CRISC) or
- Certified Information Systems Security Professional (CISSP)
- Enjoy identifying risks and improving security processes
- Thrive in cross-functional, collaborative environments
- Like balancing technical security concepts with governance and compliance
- Are motivated by protecting systems, data, and organizational integrity
- Competitive compensation
- Comprehensive medical, dental, and vision benefits
- 401(k) with company match
- Paid time off and company holidays
- Opportunities for professional growth and certification support
- A collaborative and security-focused work environment
What APCO Holdings employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About APCO Holdings
Sourced by ZipRecruiter
Industry
Motor vehicle manufacturing
Company size
501 - 1,000 Employees
Headquarters location
Norcross, GA, US
Year founded
1984