Governance & Risk Analyst
ZS
ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you’ll work side‑by‑side with a powerful collective of thinkers and experts shaping life‑changing solutions for patients, caregivers and consumers, worldwide. ZSers drive impact by bringing a client‑first mentality to each and every engagement. We partner collaboratively with our clients to develop custom solutions and technology products that create value and deliver company results across critical areas of their business. Bring your curiosity for learning, bold ideas, courage and passion to drive life‑changing impact to ZS. What you’ll do: Governance & Risk Analyst in the Enterprise will… The GRC Analyst will support the organization’s Governance, Risk & Compliance function with a primary focus on Third‑Party Risk Management (TPRM) and Vendor Risk Assessments (VRA). This role is responsible for conducting end‑to‑end risk assessments of third‑party vendors, identifying security, privacy, and compliance risks, and working with internal stakeholders and vendors to ensure timely risk remediation and closure. The role requires strong analytical skills, stakeholder engagement, and familiarity with information security, privacy, and regulatory frameworks. Key Responsibilities Third‑Party Risk Management (TPRM) & Vendor Risk Assessments (VRA) Conduct end‑to‑end Vendor Risk Assessments (VRA) including initiation, analysis, follow‑ups, and final reporting Review vendor security questionnaires, supporting evidence, and contractual artifacts to assess information security, privacy, and compliance risks Identify inherent and residual risks across domains such as not limited only to below: Information Security Data Privacy Access Controls Business Continuity & Disaster Recovery Regulatory & Compliance requirements Clearly document assessment findings, risk ratings, and remediation recommendations in risk management tools and trackers Coordinate with vendors to obtain clarifications, remediation plans, and follow‑up evidence for identified gaps Stakeholder Collaboration & Governance Partner with internal teams including Procurement, Legal, Information Security, Privacy, and Business Owners to support third‑party onboarding and risk decisions Escalate high‑risk findings and delays to GRC leadership with clear summaries and recommended actions Support second‑level reviews and management reporting for VRAs and TPRM activities Risk Reporting & Continuous Improvement Maintain accurate risk registers, assessment trackers, and dashboards for VRA/TPRM Contribute to improving TPRM frameworks, workflows, and reporting to enhance stakeholder value Assist in developing and updating SOPs, templates, and guidance documents related to vendor risk management Audit & Compliance Support Support internal and external audits by providing VRA documentation, evidence, and risk summaries Assist with broader GRC initiatives such as policy reviews, opportunity security risk assessments, and compliance assessments as needed What you’ll bring Bachelor’s degree in computer science, Information Systems, or a related field. A relevant master's degree is a plus. Proven experience of at least 2 years or more in IT risk management, governance, or a related field. Strong understanding of IT risk assessment methodologies, frameworks, and industry best practices. Assess vendor security posture against frameworks such as ISO 27001 / 27002, NIST, and SOC 2. Familiarity with regulatory requirements (e.g., GDPR, HIPAA, PCI DSS) and their impact on IT risk management. Knowledge of vendor risk management principles and practices. Experience in performing process, Contract review and project security risk assessments. Proficiency in using risk assessment tools and technologies. Excellent analytical and problem‑solving skills. Strong written and verbal communication skills, with the ability to effectively communicate technical concepts to both technical and non‑technical audiences. Strong organizational and time management skills, with the ability to manage multiple priorities and deadlines. Relevant certification such as ISO 27001:2022 LA is preferred. Fluency in English Client‑first mentality Intense work ethic Collaborative spirit and problem‑solving approach How you’ll grow Cross‑functional skills development & custom learning pathways Milestone training programs aligned to career progression opportunities Internal mobility paths that empower growth via s‑curves, individual contribution and role expansions Perks & Benefits At ZS, your growth matters. We offer a comprehensive total rewards package that supports your health and well‑being, financial future, time away, and professional development. With robust skills‑building programs, multiple career progression paths, internal mobility, and a deeply collaborative culture, you’ll have the opportunity to do meaningful work, expand your capabilities, and thrive as part of a global community. For details on total rewards in United States, visit ZS US office locations | Where we work | ZS. Hybrid working model We are committed to giving our employees a flexible and connected way of working. A flexible and connected ZS allows us to combine work from home and on‑site presence at clients/ZS offices for the majority of our week. The magic of ZS culture and innovation thrives in both planned and spontaneous face‑to‑face connections. Travel Travel is a requirement at ZS for client facing ZSers; business needs of your project and client are the priority. While some projects may be local, all client‑facing ZSers should be prepared to travel as needed. Travel provides opportunities to strengthen client relationships, gain diverse experiences, and enhance professional growth by working in different environments and cultures. Considering applying At ZS, we honor the visible and invisible elements of our identities, personal experiences, and belief systems—the ones that comprise us as individuals, shape who we are, and make us unique. We believe your personal interests, identities, and desire to learn are integral to your success here. We are committed to building a team that reflects a broad variety of backgrounds, perspectives, and experiences. Learn more about our inclusion and belonging efforts and the networks ZS supports to assist our ZSers in cultivating community spaces and obtaining the resources they need to thrive. If you’re eager to grow, contribute, and bring your unique self to our work, we encourage you to apply. Equal Opportunity Employment ZS is an equal opportunity employer and is committed to providing equal employment and advancement opportunities without regard to any class protected by applicable law. Application process Candidates must possess or be able to obtain work authorization for their intended country of employment. An on‑line application, including a full set of transcripts (official or unofficial), is required to be considered. Other notes
NO AGENCY CALLS, PLEASE.
Find Out More At: #J-18808-Ljbffr ZS- ...Bring your curiosity for learning, bold ideas, courage and passion to drive life-changing impact to ZS. What you'll do: Governance & Risk Analyst in the Enterprise will… The GRC Analyst will support the organization's Governance, Risk & Compliance function with a primary...SuggestedContract workWork at officeWorldwide
- TransUnion in Chicago is seeking an AI Governance Analyst to oversee AI risk assessments and governance compliance. The ideal candidate will possess over 5 years of experience in risk management and governance, with strong knowledge of the NIST framework. Responsibilities...SuggestedFlexible hours
$85k - $110k
The Mutual Group is seeking a professional in Chicago for AI and Technology Risk Governance. This role focuses on executing vendor AI governance and detection processes and requires strong risk management and compliance experience. Key responsibilities include tracking...Suggested- A leading management consulting firm in Chicago is seeking a Governance & Risk Analyst to lead Vendor Risk Assessments and support the organization's Governance, Risk & Compliance initiatives. The ideal candidate should possess strong analytical skills, a Bachelor's degree...Suggested
- A management consulting and technology firm is seeking a Governance & Risk Analyst to support Third-Party Risk Management and Vendor Risk Assessments. The ideal candidate will have a bachelor's degree in a related field and at least 2 years of experience in IT risk management...Suggested
- ...Governance, Risk & Compliance (GRC) Analyst We partner with the world's leading AI research labs to build smarter, safer AI systems and we need practitioners who know how compliance and risk management actually work in the real world. As a GRC Analyst, your hands...Hourly payOngoing contractContract workFreelanceRemote workWorldwideFlexible hours
- ...Senior Analyst, Cybersecurity Governance, Risk and Compliance, Chicago, IL The Senior Analyst, Cybersecurity Governance Risk & Compliance will administer the completion of compliance-related client requests to assess security policies and procedures. The Senior Analyst...Work experience placement
- ...GRC Analyst – Information Governance Focus The GRC Analyst focuses on information governance, compliance assessments, DLP, records/data retention... ...file management processes. Identify issues and potential risks. Analyze potential benefits and risks of alternatives;...
$85k - $110k
Overview Execute day‑to‑day operations of AI and Technology Risk Governance, with primary responsibility for vendor AI governance and detection across The Mutual Group and its member insurance carriers. This is a fully hands‑on individual contributor role responsible for...Temporary workWork at officeRemote workHome officeFlexible hours$65k - $75k
LegalAndGeneral is looking for an Asset Services Oversight Analyst - Corporate Actions in Chicago, Illinois. This full-time position focuses... ...processing, ensuring compliance and accuracy while managing risks. Ideal candidates should have 3-5 years of experience in Asset Servicing...Full time$95.6k - $162.4k
Northern Trust Corp in Chicago is looking for a Senior Consultant in Third Party Risk Management. The role involves overseeing governance, ensuring compliance with risk policies, and supporting audit engagements. Candidates should possess strong analytical skills and understanding...Full time- ...Affirm is seeking a Compliance Analyst II to enhance compliance governance and oversight. This role involves challenging operations to mitigate risks while ensuring regulatory compliance. Responsibilities include analyzing consumer complaints, working cross-functionally...Remote workFlexible hours
- ...Job Title: Sr. Cybersecurity Governance, Risk, and Compliance (GRC) Associate Location: Onsite 4-5x/week in Chicago, IL or Austin, TX Job Type: Direct Hire Bottom Line / In a Nutshell: Risk Management: Experience performing annual risk assessments...Extra income
$96.6k - $130k
...Sr. Cybersecurity Governance, Risk, and Compliance (GRC) Associate Join a team that values your ambition and empowers your growth At Corient, we help high- and ultra-high-net-worth individuals and families to enjoy a full life, while enabling them to preserve their...Permanent employmentTemporary workWork at officeFlexible hours- A financial services institution in Chicago is seeking a Model Risk Management Officer to validate bank-wide models. The role includes independent validation of mathematical and qualitative models while ensuring compliance with regulatory policies. Candidates should have...
$75k - $90k
## Senior Analyst, Governance, Risk & Controls - Data Reporting & AnalyticsApplylocations: Chicago, IL: Toronto, ONtime type: Full timeposted on: Posted Todaytime left to apply: End Date: June 4, 2026 (14 days left to apply)job requisition id: 2610737We’re building a relationship...Remote work1 day per week- ...Senior Security Analyst – GRC The Senior Security Analyst – GRC (Governance, Risk and Compliance) is a member of the IT Security team and works closely with other IT teams and business stakeholders in the development and automation of core functions supporting the...
$74k - $138k
Job Overview Oversees, monitors, and reports on information and technology risks for a designated portfolio. Develops and monitors the risk management and governance framework and practices leveraged across BMO to manage information and technology risks. Develops and monitors...Local area- ...Director of Cybersecurity and Privacy Risk Advisor About the Company Prestigious international law firm Industry... ...Advisor to spearhead the advancement of its Information Security Governance and Risk functions. The successful candidate will be responsible...Work experience placement
$74k - $138k
BMO is seeking a professional in Chicago, Illinois to manage operational risks in Capital Markets and Commercial Banking. The successful candidate will ensure compliance with governance frameworks and provide strategic oversight. Essential qualifications include a relevant...$105k - $130k
...help to manage and reduce the organization’s information security risks through continuous management & reporting relating to the NIST... ...risk control framework detailed in the Information Security Governance Plan, specifically NIST & COBIT control frameworks Act as a...Work at officeLocal areaFlexible hours3 days per week$115k
...divh2Risk Management Analyst/h2pCalamos Advisors LLC has an opening for Risk Management Analyst in Chicago, Illinois. Develop and maintain robust quantitative models and methodologies to measure and analyze various types of risks, including market risk, credit risk, liquidity...- ...About the Job The Junior Customer Onboarding and Risk Management Analyst's primary responsibility will be supporting the formal identity verification of individuals and entity customers. This includes supporting the initial review of identifying documentation for validity...Immediate startRemote workWork from home
$105k - $120k
...physicians, providing critical information about the right treatments for the right patients, at the right time. As a Senior Cyber Risk Analyst at Tempus AI, you will be the driving force behind our Cyber Risk Management Program, serving as the primary custodian of the...- ...Responsibilities: Assist in data center operational and infrastructure risks, identifying vulnerabilities, evaluating controls, and ensuring... ...and their resolutions in a solutions database for future analyst reference. Assign tasks to support analysts, track and report...Work at officeLocal area
- ...the entrepreneurial spirit of a startup, SageSure, a leader in catastrophe-exposed property insurance, is seeking a Catastrophe Risk Analyst . In this role, you’ll play a critical part in advancing the scientific, statistical, and model-based understanding of catastrophe...Live in
- ...We are seeking a detail-oriented and analytical Third-Party Risk Analyst to support our risk management program. This role is responsible... ...experience in contract review, risk assessments, and policy governance in a cybersecurity or compliance-focused environment. Key...Contract work
- SageSure is seeking a Catastrophe Risk Analyst in Chicago, IL to evaluate catastrophe models, conduct data analysis, and support catastrophe risk modeling. The ideal candidate will have an advanced degree in a relevant field, along with 3-5 years of experience in catastrophe...
$95k - $150k
Geneva Trading USA, LLC is seeking a Risk Analyst to monitor trading activity and manage risk in futures markets. The ideal candidate should possess strong analytical skills and a solid understanding of trading environments. Responsibilities include real-time monitoring...$80k - $120k
...spanning Private Capital & Currency, Capital Markets and Investment Banking, and Advisory Services. We are seeking an Onboarding & Risk Analyst in Mesirow’s Currency Management business responsible for client and account onboarding while ensuring robust risk management,...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance & Risk Analyst. Be the first to apply!
- it risk analyst Chicago, IL
- senior quantitative risk analyst Chicago, IL
- risk analyst Chicago, IL
- information risk analyst Chicago, IL
- operational risk specialist Chicago, IL
- third party risk analyst Chicago, IL
- transaction risk analyst Chicago, IL
- risk compliance officer Chicago, IL
- operational risk consultant Chicago, IL
- governance risk & compliance analyst Chicago, IL

