Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance Risk & Compliance Analyst

System One Holdings, LLC

Governance Risk & Compliance Analyst

System One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC Analyst is a member of the Governance, Risk & Compliance function within the Global Information Security Office and supports the implementation of company wide security governance, risk management, and compliance programs. Under the direction of the GRC Functional Leader, the analyst contributes to policy development, risk oversight, and continuous improvement of the organization's security posture. The role also works closely with regional Information Security Officers (ISOs) and cross-functional teams to support the deployment of global standards and local regulatory requirements.

Responsibilities include:

  • Support information security risk assessments for new projects, systems, and business processes.
  • Assist in conducting internal control reviews (e.g., JSOX), preparing audit materials, and coordinating responses to internal and external auditors.
  • Track and follow up on remediation actions to ensure timely closure of identified risks.
  • Contribute to drafting, updating, and maintaining global information security policies, standards, and procedures.
  • Review relevant laws, regulations, and industry frameworks (e.g., ISO 27001, NIS2) and incorporate stakeholder feedback into documentation.
  • Support the rollout and implementation of policies across regions.
  • Monitor adherence to security and regulatory requirements, including ISO 27001, NIS2, and GDPR.
  • Collect and organize compliance evidence, track corrective actions, and support certification and regulatory readiness efforts such as ISO 27001/42001 and NIS2 programs.
  • Conduct third party security risk assessments by distributing questionnaires, analyzing responses, verifying controls, and documenting results in the GRC tracking systems.
  • Identify and escalate high risk findings to the GRC Functional Leader and support follow up mitigation activities.
  • Participate in the planning and implementation of security awareness programs for all associates.
  • Create e-learning materials and training materials, conduct phishing email exercises, and distribute disseminated content on internal portals.
  • Monitor and analyze global regulatory developments related to cybersecurity with a focus on industrial control systems (ICS), IT environments, and critical infrastructure.
  • Assist in evaluating how new or updated regulations (e.g., NIS2, FDA cybersecurity expectations, industrial cybersecurity standards, or country specific critical infrastructure laws) impact company operations.
  • Track emerging obligations, document requirements, and support gap assessments to ensure timely compliance.
  • Assist in the preparation, maintenance, and continuous improvement of the CISO Dashboard by collecting, validating, and analyzing security metrics across the Global GRC function.
  • Compile key performance indicators (KPIs) and key risk indicators (KRIs) related to compliance status, audit findings, supplier risk, incident trends, training completion, regulatory readiness, and other relevant security domains.
  • Support the visualization and communication of security posture to senior leadership by ensuring data accuracy, timely updates, and clarity in reporting.
  • Support the development and enforcement of governance controls for the secure use of artificial intelligence technologies across the organization.
  • Identify risks related to AI systems—such as model security, algorithmic integrity, and misuse—and contribute to risk assessments and mitigation plans.
  • Help evaluate third party AI tools.
  • Support the development and improvement of GRC processes, tools, and documentation to enhance operational efficiency and standardization.
  • Assist in preparing reports, presentations, and materials for leadership reviews, steering committees, and cross functional meetings.
  • Participate in internal security projects and initiatives, including process automation, metrics development, and enhancements to governance workflows.
  • Provide coordination and administrative support for security committees, working groups, and regional GRC activities.
  • Perform additional duties as assigned to support the Global Information Security Office and the broader GRC program.

Requirements include:

  • 3 to 5+ years of experience in information security, governance, risk management, compliance, IT audit, or a related discipline.
  • Experience supporting security programs in global or regulated environments is a plus.
  • Understanding of global and regional information security regulations (e.g., data protection laws, cybersecurity requirements) and familiarity with security frameworks such as ISO 27001.
  • Knowledge of internal control frameworks (e.g., JSOX) and IT governance practices is highly desirable.
  • Experience supporting audit activities is preferred.
  • Experience with risk assessment methodologies, control evaluation, and vulnerability or issue management processes.
  • Strong analytical and problem-solving skills, with the ability to identify risks, assess impacts, and support the development and tracking of corrective actions.
  • Ability to communicate security requirements, policies, and audit findings clearly and persuasively with stakeholders across regions and business units.
  • Strong coordination skills to build consensus and drive compliance.
  • Industry certifications such as CISSP, CISA, CISM, ISO 27001 Lead Implementer/Auditor, or similar are preferred but not required.
  • Bachelor's degree in information security, Cybersecurity, Information Systems, Computer Science, or a related field; or equivalent professional experience.
  • Familiarity with governance, risk, and compliance tools (e.g., BitSight, Drata, OneTrust, Archer, or similar) for managing risks, audits, and compliance workflows.
  • Working knowledge of cybersecurity concepts such as identity and access management, endpoint protection, vulnerability management, cloud security, and secure system design.
  • Experience supporting cross-functional security or compliance initiatives, including requirements gathering, documentation, and progress tracking.
  • Ability to interpret risk metrics, compliance data, and audit results.
  • Experience with dashboards, KPI/KRI reporting, or data visualization tools is a plus.
  • Awareness of emerging cybersecurity regulations (e.g., NIS2, AI governance frameworks, critical infrastructure rules) and their potential impact on enterprise operations.

System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan. System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

Vacancy posted 18 hours ago
Similar jobs that could be interesting for youBased on the Governance Risk & Compliance Analyst in Denver, CO vacancy
  •  ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter, safer AI - and we need practitioners who know how GRC actually works in the real world. If you've spent time... 
    Suggested
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    10 hours per week
    Flexible hours

    Alignerr

    Denver, CO
    4 days ago
  •  ...Governance Risk & Compliance AnalystSystem One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC Analyst is a member of the Governance, Risk & Compliance function within the Global Information Security Office and supports the implementation of company... 
    Suggested
    Work at office
    Local area

    System One Holdings, LLC

    Denver, CO
    4 days ago
  •  ...to expand our team across the board. York Space Systems is seeking a Cyber Risk & Compliance Specialist to support the execution and administration of the company's cybersecurity governance, risk, and compliance programs. This role will work closely with... 
    Suggested
    Permanent employment
    Work at office
    Local area
    Worldwide

    York Space Systems LLC

    Greenwood Village, CO
    2 days ago
  • $87k - $97k

     ...Reporting to the Sr Manager, AI Solutions & Delivery, the **AI Governance & Risk Analyst** will establish the policies, controls, risk assessments,...  ...to build practical guardrails, evaluate AI risk, support compliance, and champion responsible AI practices. The ideal... 
    Suggested
    Temporary work
    Work at office
    Immediate start
    Remote work
    Flexible hours

    Crocs

    Centennial, CO
    4 days ago
  •  .... is forming a centralized Enterprise AI function. The AI Governance & Risk Analyst will establish policies, controls, and oversight to move quickly...  ...practices. The ideal candidate has governance, risk, or compliance fundamentals and enough AI familiarity to assess risk and... 
    Suggested

    Crocs, Inc.

    Littleton, CO
    4 days ago
  • Judi Health in Denver, CO, is seeking a Senior Analyst, Risk Management to support day-to-day governance of client performance guarantees and related contractual commitments across the client book of business. The role blends risk and process-improvement work, managing... 

    Capital Rx

    Denver, CO
    6 days ago
  • System One in Lakewood, CO is seeking a Governance Risk & Compliance Analyst to join their Global Information Security Office. This hybrid role involves supporting security governance, risk management, and compliance programs while contributing to policy development and... 
    Work at office

    System One

    Denver, CO
    3 days ago
  • Ensure the accuracy, integrity, and reliability of data used in risk and compliance activities. Write advanced SQL/HQL scripts, including...  ...technology. Ensure all data practices adhere to enterprise governance, compliance, and data management standards. Perform other... 
    Work experience placement

    Jobtailor

    Denver, CO
    2 days ago
  • Cleerly is hiring a GRC and IT Compliance Analyst to support security and regulatory objectives. Reporting to the Director of Information Security, you will own risk management, IT compliance, and audits, while adapting to changing regulatory environments. The role requires... 
    Remote work

    Cleerly

    Denver, CO
    5 days ago
  • $108k - $130k

     ...beyond symptoms that increase a person’s risk of heart attacks. At Cleerly, we collaborate...  ...manages risks, ensuring ongoing compliance throughout the entire software lifecycle....  ...immediate opening for a GRC and IT Compliance Analyst to help support and execute Cleerly’s security... 
    Immediate start
    Remote work

    Cleerly

    Denver, CO
    5 days ago
  • Hogan Lovells Cadwalader in Denver seeks a Compliance Analyst to conduct client due diligence reviews, assess risk, and ensure AML policy compliance across a global client base. You will support onboarding, ongoing monitoring, and risk-based reviews while collaborating... 

    Hogan Lovells

    Denver, CO
    6 days ago
  •  ...expanding its enterprise AI capabilities and is seeking an AI Governance & Risk Specialist to help create the processes, oversight, and...  ...ideal for someone who understands AI technologies beyond a compliance perspective and can engage in meaningful conversations with... 
    Contract work

    Summit Tech Partners

    Denver, CO
    6 days ago
  • $110k - $135.3k

     ...analysis that contributes to and advances one or more Enterprise Risk Management (ERM) programs to assist CoBank in managing credit/...  ...include, but are not limited to Risk Assessment, Product Governance, Portfolio Analytics, Risk Governance, Derivative Risk Modeling... 
    Work at office
    Work visa
    Flexible hours

    CoBank

    Greenwood Village, CO
    1 day ago
  • $100k - $123k

     ...analysis that contributes to and advances Risk Management programs and processes...  ...Operational Risk and Resilience, Product Governance, AI Risk Governance, and Risk Governance...  ...to benchmark industry standards, monitor compliance, and track adherence to policies and procedures... 
    Work at office
    Work visa
    Flexible hours

    CoBank

    Greenwood Village, CO
    1 day ago
  • $80k - $95k

     ...Operational Risk Management RoleThis new second line operational risk management role will support the day...  ...organization (e.g. line and functional management, compliance, IT, Internal Audit).Navigate company Governance Risk & Compliance (GRC) tool to record, update and... 
    Contract work
    Work at office
    Remote work
    Visa sponsorship
    Relocation package
    3 days per week

    Transamerica

    Denver, CO
    3 days ago
  • $132k - $178k

     ...driven and detail-oriented Enterprise Risk Analyst to support two distinct but interconnected...  ...with engineering, security, legal, compliance, and operations teams to help identify,...  ...briefings, external assessor interactions, and government partner reviews. Qualifications 5+... 
    Permanent employment
    Contract work
    Work at office

    trueanomalyinc

    Denver, CO
    2 days ago
  • $90.4k - $113k

     ...to employers, unions, health plans, and government entities. Judi Health replaces...  ..., NC area) Position Summary The Senior Analyst, Risk Management (PGs) supports the Risk Management...  ...analysis covering PG performance, contractual compliance, and risk exposure, translating data... 
    Contract work
    Local area
    Flexible hours

    Capital Rx

    Denver, CO
    2 days ago
  •  ...Trueanomalyinc is looking for a detail-oriented Enterprise Risk Analyst based in Denver, CO. The successful candidate will support enterprise...  ...with various internal teams to ensure risk mitigation and compliance. This role requires a minimum of 5 years of experience,... 

    Trueanomalyinc

    Denver, CO
    5 days ago
  •  ...collaborating with IT and security teams to strengthen protective measures. The ideal candidate will have strong analytical skills, experience with security frameworks (NIST/ISO 27001), and a focus on regulatory compliance (HIPAA, GDPR). #J-18808-Ljbffr Cymertek Corporation

    Cymertek Corporation

    Aurora, CO
    1 day ago
  • $41.2k - $76.8k

     ...Senior Risk Analyst Our not-so-secret sauce. Award-winning, inclusive, Top Workplace culture doesn't happen overnight. It's a result of hard work by extraordinary people. More than 11,000 of the industry's brightest talent drive our efforts to deliver purposeful... 
    Minimum wage
    Work experience placement
    Work at office
    Local area
    Night shift

    Marsh & McLennan

    Denver, CO
    7 hours ago
  • $57.78k - $85k

     ...Analyst, Enterprise Risk ManagementThe Analyst, Enterprise Risk Management supports key initiatives across DaVita's Enterprise Risk Management...  ...mapping, risk management principles, and regulatory compliance frameworksAwareness of ISO standards related to risk management... 

    DaVita

    Denver, CO
    3 days ago
  • $75k - $110k

     ...expertise, Prologis is a category of one-not just shaping the future of logistics but building what comes next. Job Title: Risk Management Analyst Company: Prologis Risk Management Analyst A day in the life As a Risk Management Analyst at Prologis,... 
    Full time

    Prologis

    Denver, CO
    5 days ago
  • Transamerica Life seeks a self driven actuary with a strong interest in leading GAAP implementation and ongoing GAAP governance efforts for Universal Life (UL) products. This highly visible role partners closely with teams such as model development, accounting, and finance... 

    Transamerica

    Denver, CO
    3 days ago
  • Judi Health in Denver, CO is seeking a Senior Analyst, Risk Management (Audit) to run cross-functional risk initiatives from intake to closure...  ...and action plans. The ideal candidate has 3-5 years in audit/compliance or analytics, a Bachelor’s degree, strong data skills in... 

    Judi Health

    Denver, CO
    2 days ago
  • $100k - $123k

     ...stakeholders.Essential FunctionsContributes to the research and development of financial models incorporating credit and/or market risk elements.Contributes to or owns the ongoing management of existing models, which includes maintenance of data/documentation/parameters... 
    Work at office
    Work visa
    Flexible hours

    CoBank

    Greenwood Village, CO
    1 day ago
  • $80.05k - $165k

     ...Corporate Bkg 3rd & Seneca Full time JR101905 About the Role: Responsible for leading Cybersecurity and IT governance, risk, and compliance efforts, including the establishment and maintenance of IT operating model and facilitating the development of... 
    Full time
    Work at office
    Local area

    Columbia Bank (WA, OR & ID)

    Denver, CO
    2 days ago
  • Fox Rothschild LLP's Knowledge Management Department seeks a Risk Mitigation Analyst to conduct hands-on public records and investigative research supporting client engagements and internal risk management. You will verify identities, synthesize findings into clear reports... 

    Fox Rothschild

    Denver, CO
    3 days ago
  • $48k - $59.9k

     ...Review New Business Intake forms to ensure compliance with firm policies and regulatory...  ...and other relevant information to assess risk and support compliance requirements. Conduct...  ...Assistants and Junior Compliance Analysts and provide coaching and support as needed... 
    Monday to Friday

    Hogan Lovells Cadwalader

    Denver, CO
    3 days ago
  • $60k

     ...operating, and improving essential government systems and services, with proven...  ...national status required. The Risk, Quality, and Performance Analyst serves as the Risk, Quality, and Performance...  ...management activities to ensure compliance with contract requirements and... 
    Contract work
    Remote work

    MAXIMUS

    Denver, CO
    1 day ago
  • $62k - $80k

     ...As a Compliance Analyst at Convera, you will help promote a sound Compliance culture across the organisation through ensuring that there is an effective AML programme that effectively mitigates the risk of onboarding customers which are outside of Convera’s risk appetite... 
    Work experience placement
    Local area

    Convera Corporation

    Denver, CO
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance Risk & Compliance Analyst. Be the first to apply!