IT Risk and Compliance Analyst
$80k - $90kjobgether
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a IT Risk and Compliance Analyst based in United States .
This role supports the day-to-day execution of a growing IT risk, compliance, privacy, and governance program.
You will work across contracts, security questionnaires, control evidence, vendor risk, data retention, and compliance policies.
The position offers the opportunity to help shape a program being rebuilt from the ground up and establish scalable ways of working.
You will collaborate with Legal, IT, Delivery, leadership, vendors, and other stakeholders to translate requirements into practical controls and actions.
The role combines technical and legal concepts with hands-on program coordination, risk management, and process improvement.
Success requires exceptional organization, strong written communication, sound judgment, and the ability to manage multiple priorities independently.
This is an ideal opportunity for a compliance professional who enjoys ownership, variety, and building effective processes within a collaborative environment.
Accountabilities: Review client MSAs, SOWs, DPAs, security addenda, and related agreements using contract analysis tools, identifying provisions requiring attention from Legal, IT, Delivery, or other stakeholders and coordinating redlines through completion.
Translate contractual security, privacy, data handling, audit, breach notification, and sub-processor requirements into trackable operational commitments and verify that obligations are being met.
Respond to client security questionnaires, due diligence requests, and audit inquiries while maintaining and improving a reusable knowledge base to make future responses faster and more consistent.
Collect, organize, maintain, and manage control evidence within the GRC platform, tracking remediation activities against frameworks such as SOC 2, ISO 27001, NIST CSF, and other applicable standards.
Support vendor risk management activities for SaaS and AI providers by reviewing security documentation, DPAs, sub-processor information, and findings, while maintaining accurate vendor risk records.
Operationalize data retention and disposal requirements by tracking departmental retention schedules, documenting exceptions and legal holds, and working with IT to verify retention settings across relevant platforms.
Support privacy program activities including data mapping, data subject request processes, and monitoring obligations associated with GDPR, CCPA, and other applicable privacy requirements.
Draft, maintain, publish, and improve compliance policies, standard operating procedures, and process documentation, ensuring that requirements remain current and are effectively implemented.
Prepare risk and compliance reporting for leadership, highlighting program status, emerging risks, remediation progress, and areas requiring attention.
Maintain and monitor the risk register, support annual risk assessments, and contribute to the identification, evaluation, and treatment of organizational risks.
Participate in business continuity and disaster recovery planning, tabletop exercises, security incident response, internal audits, access reviews, and periodic control testing.
Administer security awareness training programs and monitor completion and compliance across the organization.
Requirements Bachelor’s degree or equivalent practical experience, with 3–5 years of professional experience in compliance, GRC, contract management, privacy, risk, or a related field.
Hands-on experience reviewing commercial agreements, ideally including MSAs, DPAs, security addenda, or similar documents, with the ability to collaborate effectively with legal counsel on contractual redlines.
Experience responding to client security questionnaires, vendor due diligence requests, audit inquiries, or comparable compliance information requests.
Working knowledge of at least one major security or compliance framework, such as SOC 2, ISO 27001, or NIST CSF, including a practical understanding of the evidence required to demonstrate control effectiveness.
Foundational understanding of data privacy regulations such as GDPR and CCPA, particularly how privacy requirements translate into contracts, operational processes, and compliance obligations.
Exceptional organizational and follow-through skills, with the ability to manage numerous parallel workstreams, deadlines, stakeholders, and remediation activities without losing attention to detail.
Clear, concise, and confident written communication skills, including the ability to interpret complex technical or legal information and distill it into practical priorities and recommendations.
Strong analytical, problem-solving, and judgment skills, with the ability to identify gaps, assess risks, coordinate solutions, and follow issues through to resolution.
Comfortable working with SaaS platforms, GRC systems, contract analysis tools, and other technology, with a demonstrated ability to learn new systems quickly and use technology to improve processes.
Self-directed and accountable, with the ability to own outcomes end to end while working effectively within a small, collaborative team.
Comfortable working across technical, legal, operational, and business functions and translating requirements between different stakeholder groups.
Benefits Salary range of $80,000–$90,000 USD .
Remote working arrangement within the United States.
Opportunity to help build and shape an IT risk and compliance program from the ground up.
Broad exposure to IT risk, compliance, privacy, vendor management, contracts, security operations, and governance.
Collaborative and inclusive work environment that values diverse perspectives and authentic contributions.
Opportunities to work closely with cross-functional teams across legal, technology, delivery, security, and leadership functions.
Meaningful ownership and autonomy within a growing compliance program.
Opportunity to contribute to process improvement and the development of scalable compliance practices.
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Vacancy posted 11 hours ago
Similar jobs that could be interesting for youBased on the IT Risk and Compliance Analyst in New York, NY vacancy
$100k - $130k
...company) is growing its Information Technology Compliance (ITC) team, and we’re looking for an IT Compliance Analyst to help build what comes next. ITC owns the development... ..., implementation, and management of NYSE’s risk-based IT compliance program, keeping our...SuggestedFull timeWork at officeMonday to Friday$90k - $105k
...and detail-oriented Information Security compliance analyst to be responsible for monitoring the... ...Will You Be Doing? Manage cybersecurity risk processes, including risk registers, findings... ...in partnership with Legal, Compliance, IT, and business leaders. Support...SuggestedContract workFor subcontractorWork at officeLocal area$89.36k - $134.04k
About the Job:The IT & Cybersecurity Regulatory Response Consultant III supports the organization's response to cybersecurity... ...investigations, and certification activities. As a second-line risk and compliance role, this position partners closely with first-line...SuggestedFull time$78.9k - $123.3k
Position Overview We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous... ...for one or more information systems in accordance with Federal Risk Management Framework (RMF) requirements. Coordinate activities...SuggestedPermanent employmentFull timeContract workPart timeWork at officeLocal areaRemote work- ...utility provider in Pennsylvania seeks a GRC Cybersecurity Senior Analyst to ensure compliance with regulatory obligations. This role involves collaboration with various departments to implement governance and risk management processes. The ideal candidate has a Bachelor’s...Suggested
- ...Statutory Risk and Compliance Analyst To support statutory risk and compliance programs through regulatory change review, quality control, process analysis, and cross-functional coordination. To evaluate regulatory and program requirements, determine applicability...Contract workWork at office
$72.32k - $94.92k
...We are looking for a detail-oriented, analytically driven Compliance Analyst to join our AI & Data organization at BetMGM. In this role you... ...You will work cross-functionally with Legal, Product, Trading, Risk, and Operations teams to monitor regulatory developments, conduct...H1bRemote workVisa sponsorshipFlexible hours$110k - $125k
...career.Position Summary:As an Information Governance (IG), Risk, and Compliance Analyst, you will test, evidence, and report on the controls behind... ...Education:Bachelor's degree in a relevant field; certifications in IT audit (e.g., CISA), Microsoft security and compliance...- ...millions of Americans to achieve more.About the RoleHappen Bank’s Compliance Team is looking for an experienced compliance data analytics... ...Collaborate with partners across Compliance, Technology, Model Risk Management, and Data Engineering to support deliverablesPerform...Full timeWork at officeLocal areaRemote workRelocationFlexible hours
$35 per hour
...Title: Compliance Data Analyst Office Status: In-Office Pay Rate: $35 Contract Length: Not specified Bilingual proficiency in Chinese... ...and periodic reviews of monitoring scenarios based on risk levels and system performance. Support AML optimization efforts...Contract workWork at office$100k - $130k
Compliance Analyst Job type: Full Time · Department: Client Services · Work type: On-Site · USD 100,000-130,000 / year New York, New York, United... ..., analyzing transactional behaviour, customer profiles, and risk indicators. Make risk‑based decisions on whether to clear,...Full timeBank staffLocal areaRemote workFlexible hoursShift work- ...Security Compliance Analyst To support the maintenance and execution of the security compliance... ..., Application Development, Risk Management, Internal and External Auditors... ...remediating compliance gaps and supports the IT Model Audit Rule (MAR) Control Owner and...Contract workFor subcontractorWork at office
- ...changes and testing evidence in reports for head office and model risk management approvals. FircoSoft list management tasks Conduct... ...such as good guy clean up and rule creation. Key Capabilities Compliance systems knowledge Programming and testing experiences General understanding...Contract workWork at officeLocal areaRemote work2 days per week
$120k - $185k
...Technical Compliance Analyst New York City, NY (Hybrid); San Francisco, CA (Hybrid) At Snorkel... ...security questionnaires (CAIQ, SIG, custom risk assessments), and customer portals.... ...DNA Compliance Partner: Partner with IT, Security, Product, Engineering, and Delivery...- StoneX Group Inc. is seeking a highly motivated Analyst to join the Digital Asset team to support onboarding and lifecycle management... ...of institutional clients. You will liaise with Sales, Compliance, Operations, Risk, Legal and external clients to ensure timely onboarding...
- ...Experience of which at least 5 years are of risk and compliance experience at a large company or... ...skilled and experienced Risk & Compliance Analyst to join our dynamic team supporting a... ...fields of cybersecurity, development, IT infrastructure, supply chain management...Temporary workRemote workFlexible hours
- Reference: 13578Senior Compliance Officer, Investec USAInvestec - Where Out of the Ordinary HappensAt... ...and prioritise regulatory and compliance risks across covered business lines.Regularly... ...Advisory, Control Room, Surveillance, IT, Operations, Research and third-party...Full timeWork at officeRemote work
$110k - $140k
The Compliance Officer will be instrumentally involved in overseeing, administrating and enhancing the Compliance Program of Institutional... ...and structured reporting to senior management on conflicts risk and control effectivenessCompliance Program & Risk OversightIdentify...Full timeLocal area- ...region. Lower salary ranges will apply for other labor markets outside of NCAL.Support Health Plan Risk Adjustment operations through government audit readiness, compliance oversight, and internal quality assurance reviews. Perform coding validation, documentation review...Work experience placement
$110.7k - $218.3k
Position Summary Senior Consultant - Regulatory & Compliance - Enterprise Operations & Risk Our Deloitte Regulatory, Risk & Forensic team helps... ...Project Management Professional, or Chartered Financial Analyst designation The wage range for this role takes into account...Local areaVisa sponsorship- ...Our client is an international bank. They seek an AVP Compliance Officer to join their Manhattan office. This individual will play a... ...particular ownership of compliance testing, regulatory oversight, risk assessments, policies and procedures, management reporting, and...Full timeWork at office
- ...Compliance Associate Position Summary We are seeking a detail-oriented and collaborative Compliance Associate to support a broad range... ...partner with Compliance, Legal, Operations, Human Resources, Risk, and business teams to help maintain effective compliance programs...Full timeWork at office
- ...Security & Compliance AnalystOn the Go has elevated the dining and retail... ....The Security & Compliance Analyst is responsible for the organization... ...Analyst works closely with IT, Engineering, Operations, and... ...in the company's Governance, Risk, and Compliance (GRC) platform...
- ...technology-driven organization seeking a Senior Governance, Risk & Compliance Analyst to strengthen its security and compliance program. This is... ...register Supporting quarterly risk reporting Partnering with IT, Engineering, Legal, and other control owners The ideal...
- To support a large Federal Government client, the full-time Risk & Compliance Analyst will conduct cybersecurity risk assessments, support audits, and enhance compliance measures while working remotely with potential travel for meetings and training. Key responsibilities...Full timeRemote work
- ...GRC Analyst — AI Fintech Scale-Up | Manhattan, New York An AI company building analyst... ...trust, security assurance and compliance programmes as it scales globally. This is a hands-... ...responding to security inquiries and risk assessments Acting as a key point of...Full time
$143k - $224k
About this role:Wells Fargo is seeking a Lead Compliance Officer to play a critical role within the Corporate & Investment Banking (CIB)... ...across the Equities business. Operating at the intersection of risk management, regulatory reporting, and front-office advisory, this...Full timeWork experience placement$160k - $180k
Department: ComplianceDivision: Risk & Compliance DivisionTitle: Senior Compliance Manager and Privacy Officer Job SummaryProvide advice and guidance to the Chief Compliance Officer, senior management, and business lines regarding compliance with non-AML/BSA laws and regulations...Local area$165k - $200k
Risk| Compliance Conduct & Ethics | Vice President, Product Compliance Officer | New YorkAbout ING: In the Americas, ING’s Wholesale Banking division offers a broad range of innovative financial products and services to domestic and international corporate and institutional...Full timeWork at officeWork from home$120k - $155k
...Specialist, you will be working across various functions and teams in order to assess and document any regulatory product risks, build out regulatory compliance frameworks for Adyen’s products, and be a voice for second line regulatory risks. This helps our North American...Work experience placementWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Risk and Compliance Analyst. Be the first to apply!
Related searches
- it risk analyst New York, NY
- risk consultant New York, NY
- risk analyst New York, NY
- risk analyst intern New York, NY
- transaction risk analyst New York, NY
- risk officer New York, NY
- third party risk analyst New York, NY
- operational risk specialist New York, NY
- operational risk consultant New York, NY
- senior quantitative risk analyst New York, NY





