Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance, Risk, And Compliance Analyst

vTech Solution

Position: Governance, Risk, And Compliance Analyst

Location : Phoenix, Arizona.

Duration: 04 Months (Possibilities of FTE)

Interview: In person interview

Work Mode: Hybrid





Job Summary:

The Client is seeking an experienced and highly motivated individual to join our team as a Information Security Analyst, (ISA). This position will work on the Governance Risk and Compliance (GRC) Team to communicate and engage with business units to develop a strong understanding of their reporting, data, and product needs. The team member will work with other personnel across departments to define requirements for projects, identify data dependencies and relationships to develop logical and physical data models, data flows and system activity diagrams, and write specifications for managing enterprise information policies. The team member will help develop plans and materials to support user adoption, training, and customer service, working through direct and regular contact with users from other divisions, programs, and service units to provide regular insight and guidance in prioritizing enhancements for the data systems. The team member will also support technical project managers to ensure that all aspects of the information analysis and requirements gathering process are completed with the highest degree of accuracy and quality, which includes developing and socializing key project artifacts.



Job Duties:

  • Perform risk assessments, audit reviews, generate findings reports, and make appropriate recommendations for improvement and track outcomes from those activities for clients reporting requirements. Develop and formulate comprehensive reports detailing the findings, areas of non-compliance, required POA&Ms (Plan of Action and Milestones), environmental observations, and incident reports.
  • Review, update, and manage security related audit plans, security plans and risk plan documentation for accuracy and consistency, proactively solves problems.
  • Evaluate data and formulate comprehensive reports detailing the findings, areas of non-compliance, required action plans, and environmental observations. Generates incident reports and investigates suspicious network activity.
  • Preparing audit documentation that supports audit results, drafting and editing audit findings to adhere to the standards and the agency's writing style.
  • Research agency and industry IT security practices standards, best practices, laws and regulations, and other applicable resources, ensures compliance with standards

Knowledge, Skills & Abilities (Not incompassing)

  • Knowledge of security principles, policies, and procedures, and be able to develop effective security policies.
  • Knowledge of Information Security Risk Management.
  • Knowledge of laws, regulations, policies, principles, and ethics as they relate to cybersecurity and privacy. (Required: NIST 800-53 R5, IRS Pub1075, IPAA/HITRUST, CJIS and MARS-E)
  • Expert knowledge of internal auditing, internal controls, and risk management practices and methods.
  • Knowledge of Selection/Approval, Implementation, and Assessment/Audit of Security and Privacy Controls.
  • Knowledge of Risk Management Framework (RMF) requirements.
  • Knowledge of Authorization/Approval of Information Systems.
  • Knowledge in conducting audits or reviews of technical systems.
  • Knowledge in comprehensive understanding of internal control environments within the IT function.
  • Knowledge in multiple technology domains including aspects of Windows, Unix and/or database administration, software development, and networking.
  • Knowledge in identifying cybersecurity and privacy issues that stem from connections with internal and external customers and partner organizations.
  • Ability to produce high-quality work products for both the IT groups and Senior Management.
  • Ability to perform excellent interpersonal, written, and oral communication skills.
  • Ability to assess, manage, and improve security policies and procedures.
  • Ability to work collaboratively in teams and across organizations.
  • Ability to synthesize feedback and adjust plans, accordingly, build strong relationships inside and outside the organization and manage large teams.
  • Ability to ensure security practices are followed throughout all phases of the life cycle of every aspect of business and IT processes.
  • Ability to develop policy, plans, and strategy in compliance with laws, regulations,
  • policies, and standards in support of organizational cyber activities.
  • Ability to exercise judgment when policies are not well-defined.
  • Ability to ensure information security management processes are integrated with strategic and operational planning processes.
  • Ability to ensure that senior officials within the organization provide information security for the information and systems that support the operations and assets under their control.
  • Ability to understand technology, management, and leadership issues related to organization processes and problem solving.
  • Ability to understand the basic concepts and issues related to cyber and its organizational impact.
  • Develop plans and materials to support user adoption, training, and customer service.
  • Ability to work collaboratively in teams and across organizations.
  • Develop plans and materials to support user adoption, training, and customer service.
  • Work directly with users from other divisions, programs, and service units to provide insight and guidance.
  • Identify risks and suggest improvements to information systems and processes.
  • Support technical project managers to fulfill information analysis requirements with the highest degree of accuracy and quality.
  • Develop and maintain key project artifacts.

Required Skills:

  • NIST 800-53R5 (Must have)
  • Risk Management Framework (RMF)
  • Windows/Unix experience

Preferred Skills

  • Project Management experience
  • CISSP, CCSP, GSTRT, GSNA, or CAP certification

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Governance, Risk, And Compliance Analyst in Phoenix, AZ vacancy
  •  ...Governance, Risk, and Compliance (GRC) Analyst We operate at the intersection of technology and law, in an industry that demands agility and innovation. Our team is dedicated to developing advanced solutions for legal professionals. Our daily work involves tackling... 
    Suggested
    Full time
    Flexible hours

    Fulcrum Global Technologies

    Phoenix, AZ
    4 days ago
  •  ...Job Title: Governance, Risk, and Compliance Analyst (GRC) Location: Phoenix - Hybrid (within a one hour commute) Due to Government restrictions this position is open only to US citizens and Green Card Holders. No C2C or third parties will be considered. Our client is... 
    Suggested

    Access Data Consulting

    Phoenix, AZ
    5 days ago
  • Posting Title Phoenix, AZ - Governance, Risk & Compliance (GRC) Analyst | Contract-to-Hire | Local Candidates Only Short Job Description The Arizona Department of Economic Security (DES), Division of Technology Services (DTS), is seeking a Governance, Risk & Compliance... 
    Suggested
    Full time
    Contract work
    Local area

    Expert Technology Services

    Phoenix, AZ
    2 days ago
  • Perform risk assessments and audit reviews Generate findings reports, POA&Ms, and non-compliance documentation Review and manage security plans, audit plans, and risk documentation Investigate suspicious network activity and generate incident reports Research security... 
    Suggested
    Permanent employment
    Full time
    Contract work
    Visa sponsorship
    Monday to Friday

    Jobtailor

    Phoenix, AZ
    1 day ago
  • Responsibilities Perform risk assessments and audit reviews; Generate findings reports and track outcomes Review and manage security...  ...IT security standards, laws, and regulations to ensure compliance Requirements NIST 800-53 R5 — must have Risk Management Framework... 
    Suggested
    Local area
    Visa sponsorship

    Jobtailor

    Phoenix, AZ
    2 days ago
  • BWH Hotels is seeking an information security compliance professional to support governance, risk, and compliance across the organization. You will coordinate evidence with stakeholders and auditors, maintain control documentation, and help ensure audit readiness for PCI... 

    Best Western

    Phoenix, AZ
    2 days ago
  • BWH Hotels is seeking a Security Compliance professional to support governance, risk, and regulatory compliance across PCI DSS, SOX, GDPR/CCPA. The role collaborates with stakeholders and auditors to maintain control documentation, evidence collection, and remediation tracking... 

    Best Western Hotels & Resorts

    Phoenix, AZ
    2 days ago
  • Idealforce LLC is seeking an Information Security Analyst contractor to join our Governance, Risk, and Compliance team in Phoenix, AZ. The role is hybrid with flexible work options and requires collaboration across business units to define requirements, manage data flows... 
    For contractors
    Flexible hours

    Idealforce LLC

    Phoenix, AZ
    1 day ago
  •  ...Ensures the confidentiality, integrity, and availability of Company data and information technology assets by supporting governance, risk, and compliance activities, including security policy and standards management, risk management, disaster recovery coordination, audit... 
    Full time
    Work at office
    Local area
    Remote work
    Monday to Friday

    Best Western Hotels & Resorts

    Phoenix, AZ
    2 days ago
  • Jobtailor is seeking a Security Compliance Analyst to perform risk assessments, manage security documentation, and produce compliance reports. The role collaborates with multiple business units to ensure adherence to standards and regulations, including NIST 800-53 R5... 

    Jobtailor

    Phoenix, AZ
    1 day ago
  • Access Data Consulting Corporation seeks a Governance, Risk, and Compliance Analyst to join their security team in a hybrid work environment in Phoenix. The role involves ensuring compliance with security regulations while bridging technical infrastructure and regulatory... 

    Access Data Consulting Corporation

    Phoenix, AZ
    2 days ago
  •  ...insurance, plus so much more! You Will Support Compliance Department programs and activities...  ...Understand internal factors - existing governance, organizational structure, culture, opportunities...  ...contract evaluation, data privacy risk assessment, vendor management... 
    Contract work
    Work experience placement

    Boise Cascade

    Phoenix, AZ
    2 days ago
  • $63.59k - $121.53k

     ...economic, industry trends, tax law changes, estate issues, retirement risks, and other threats to an effective retirement income plan, as...  ..., monitored, and controlled in accordance with risk and compliance policies and procedures. What you have: ~ High School Diploma... 
    H1b
    Work at office
    Remote work
    Relocation package
    Flexible hours

    USAA

    Phoenix, AZ
    5 days ago
  • $20 - $22 per hour

    A leading compliance recruitment firm is seeking an entry-level Senior Technical Recruiter in Phoenix, AZ. This position is perfect for detail...  ...include conducting research, analyzing compliance risks, and collaborating with internal teams. Strong attention to detail... 
    Contract work

    Dexian

    Phoenix, AZ
    2 days ago
  • Ankura is seeking a full-time Conflict Analyst to manage the firm’s conflict management function, ensuring timely conflict checks, identifying risks, and aligning engagements with policy. The role supports hybrid work with potential for remote arrangements based on qualifications... 
    Remote job
    Full time

    Ankura

    Phoenix, AZ
    4 days ago
  • Illumia is seeking an experienced Business Risk Analyst to support information security compliance, GRC workflow, and risk management initiatives. The role focuses on maintaining regulatory adherence, security control KPIs, audits, and managing risk issues with external... 
    Remote job

    Campus

    Phoenix, AZ
    1 day ago
  • Neighborhood Outreach Access to Health (NOAH) is seeking a Compliance & Risk Specialist to support NOAH's compliance and risk management programs in Phoenix. This role provides administrative support for incident tracking, policy management, credentialing processes, and... 

    Neighborhood Outreach Access To Health

    Phoenix, AZ
    5 days ago
  •  ...with the GRC Manager, the Sr. GRC Analyst, Third‑Party & Human Risk Management (TPHRM) is a risk focused...  ...details on the security practices and compliance levels for each third‑party being...  ...‑level agreements (SLAs), and AI governance Documents and communicates all relevant... 
    Immediate start
    Flexible hours

    Sky Mavis

    Phoenix, AZ
    1 day ago
  • $70k - $90k

     ...Compliance SpecialistCopperPoint has an exciting opportunity for a Compliance Specialist. In this role, you'll help develop and administer...  ...of compliance while partnering with internal teams to identify risks, implement solutions, and promote regulatory best practices.Job... 
    Hourly pay
    Temporary work
    Flexible hours

    CopperPoint Insurance Companies

    Phoenix, AZ
    1 day ago
  •  ...Sr. GRC Analyst, Risk Management Under the direction of and in collaboration with the GRC...  ...from a static document into a dynamic governance instrument one that delivers a clear, current...  ...with comprehensive reports of compliance-focused activities and outcomes, as requested... 
    For contractors
    Immediate start
    Flexible hours

    Clayco

    Phoenix, AZ
    2 days ago
  • $55 - $60 per hour

     ...SolutionsTitle: SaaS Engineer ( GRC Analyst with IAM )Location: Phoenix...  ...controls, documentation, and compliance certifications (SOC 2, ISO,...  ...InfoSec principles to assess risks and recommend mitigations....  ...InfoSec principles such as access governance, secure architecture, and... 
    Hourly pay

    SRI Tech

    Phoenix, AZ
    5 days ago
  • Jobtailor is seeking a Security Risk Analyst in the Phoenix area to perform risk assessments, audit reviews, and manage security plans....  ...will generate findings reports, track remediation, and ensure compliance with NIST RMF controls. The role requires hands-on experience... 
    Local area
    Visa sponsorship

    Jobtailor

    Phoenix, AZ
    2 days ago
  • Humana is seeking a Senior Professional for Risk and Compliance in Phoenix, AZ to oversee risks associated with Medicaid programs and ensure adherence to MHPAEA regulations. Responsibilities include risk management strategy development, conducting assessments, and collaborating... 
    Remote job

    Humana

    Phoenix, AZ
    5 days ago
  • Gilder Search Group is looking for a Sr. GRC Analyst to manage Third-Party & Human Risk while ensuring risks are identified and treated satisfactorily. The role requires 6-8 years in risk assessment, with a bachelor's degree and required certifications expected. You'll... 
    Flexible hours

    Gilder Search Group

    Phoenix, AZ
    5 days ago
  • A large enterprise organization is seeking a GRC Analyst to support a high-visibility security initiative in an onsite role...  ...Phoenix, AZ. This is a contract position focused on governance, risk, and compliance activities across technology projects, with exposure to security... 
    Contract work
    Work at office

    Motion Recruitment Partners LLC

    Phoenix, AZ
    2 days ago
  • Sky Mavis seeks a Sr. GRC Analyst in Phoenix, AZ, to manage Third-Party and Human Risk Management. This analytical role involves vendor risk assessment, security awareness training, and compliance evaluation, ensuring holistic risk management. Candidates should have significant... 

    Sky Mavis

    Phoenix, AZ
    2 days ago
  • $260k - $365k

     ...opportunity for a senior level Associate in the Financial Regulatory & Compliance Practice. They can be based in our Miami, DC, New York, Chicago...  ...laws and regulations (e.g., BSA/AML, sanctions, third-party risk management, and consumer compliance). Enforcement experience is... 
    Full time
    Temporary work
    Work at office
    Flexible hours

    Greenberg Traurig LLP

    Phoenix, AZ
    3 days ago
  • Motion Recruitment Partners LLC is seeking a GRC Analyst for a contract position in downtown Phoenix, AZ. This role involves ownership of governance, risk, and compliance activities on technology projects, ensuring comprehensive tracking and audit readiness. The ideal candidate... 
    Contract work

    Motion Recruitment Partners LLC

    Phoenix, AZ
    2 days ago
  • Veriipro is seeking an experienced Information Security Analyst to drive risk management, audits, and compliance across enterprise IT. You will design and document security controls, perform assessments, and support remediation efforts to meet regulatory requirements.... 

    Veriipro

    Phoenix, AZ
    2 days ago
  • Stefanini, Inc. seeks a BaaS Financial Crimes Partner Advisor to oversee partner risk and ensure compliance with BSA/AML/OFAC and fraud prevention in Phoenix, AZ. The role requires building customer-facing relationships and guiding third-party partner activities. Ideal... 

    Stefanini, Inc

    Phoenix, AZ
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance, Risk, And Compliance Analyst. Be the first to apply!