Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Analyst

Momentum

Momentum is a respected collection of independent companies, including PMG, Koddi, Further. We serve as a premier global business transformation partner for over 125 of the Fortune 500 brands. With 1,400 global employees and $5B in media spend under management, we foster a fast-growing, values-driven, people-first environment where you can thrive. Our portfolio of companies partners with some of the world’s most iconic and ambitious brands. We combine scalability with a solutions-oriented approach to deliver fast-paced, innovative results for our customers while creating meaningful growth opportunities for our teams. If you are looking for opportunities to grow in your career and are passionate about being at the forefront of data and technology, and driving rapid innovation in the future of commerce, we would love to talk with you about joining Momentum. We believe that a culture of belonging, inclusion, and diversity is key to empowering our team members to thrive both personally and professionally. Living out our values is not just a goal; it’s a daily practice! For more information, please visit The Opportunity We are hiring a Security GRC & Risk Analyst to own the governance, risk, and compliance execution layer across a holding company and portfolio of businesses. This is a build-oriented role with a defined scope: you will be the internal anchor for our SOC 2 Type II audit, NIST CSF remediation roadmap, security policy library, vendor risk program, and client-facing security questionnaires. You will work directly with the Cybersecurity Manager and a vCISO partner, collaborate with the Data Privacy legal team as a peer on overlapping policy areas, and engage regularly with portfolio company stakeholders. A dedicated internal Data Privacy legal team owns regulatory compliance - GDPR, CCPA, breach notification, and data subject rights. This role owns the technical controls layer: the evidence, the frameworks, the audit coordination, and the vendor risk program. Join us in this full-time role, based in our Dallas Office at the Link: 2601 Olive Street, Dallas, TX. Be part of a vibrant community where amazing people, data & insights, and perpetual innovation converge to shape the future of digital commerce! About This Role at Momentum What You’ll Do SOC 2 & NIST CSF Program Own the internal SOC 2 Type II evidence collection process, keeping controls audit-ready year-round. Manage the audit timeline, day-to-day liaison with the external auditor, and remediation finding closure between cycles. Own the NIST CSF remediation roadmap: maintain the gap register, report progress to the VP and vCISO on a defined cadence, and coordinate with portfolio company IT teams to assess and close control gaps. Build and maintain a unified controls library mapping SOC 2 Trust Services Criteria, NIST CSF subcategories, and applicable regulatory requirements. Prepare the organization for bi-annual NIST CSF assessments, ensuring controls are documented and defensible. Security Policy & AI Governance Operationalize the enterprise-wide information security policy library across the corporate entity and portfolio companies. Inventory gaps against SOC 2, NIST CSF, and applicable regulations; draft, publish, and version-control policies in coordination with the vCISO. Build and maintain annual policy attestation workflows across all employees. Bridge with the Data Privacy legal team on overlapping areas: data classification, retention, and incident notification. Develop and maintain the AI governance framework: tool intake review, data handling risk assessment, and acceptable use policy. Evaluate AI tools proposed across the corporate entity and portfolio companies against security and compliance standards. Own AI-related policy documentation and track emerging regulatory requirements including the EU AI Act and NIST AI RMF. Risk Management & Vendor Risk Build and maintain a risk register with risk-to-control mapping. Define and document formal risk tolerance and appetite in coordination with the vCISO and leadership. Own the third-party risk management program. Define and implement a tiered due diligence model (critical, high, medium, low) and conduct recurring reviews of critical service providers. Manage vendor risk assessments for tools under evaluation - SASE, CASB, DLP, AI governance tooling, and security platform consolidation. Coordinate with the Data Privacy legal team on vendors with material data processing obligations. Lead operationalization of the GRC platform (OneTrust) for centralized vendor inventory, risk scoring, and lifecycle management. Client Questionnaires & Audit Support Manage and respond to inbound security questionnaires from portfolio company clients (SIG, CAIQ, and custom formats). Build and maintain a response library to improve turnaround time and accuracy. Coordinate with the Cybersecurity Operations Engineer to validate technical control responses and keep answers current as the security stack evolves. Own ITGC audit controls across identity, endpoint, cloud, and SaaS platforms. Support internal audit responses and evidence requests beyond the annual SOC 2 cycle. BCP/DR & Security Awareness Own BCP/DR formalization: develop a business continuity charter, coordinate Business Impact Analysis across the corporate entity and portfolio companies, define RTO/RPO for critical operations, and ensure crisis management is embedded in the IR framework. Manage the KnowBe4 security awareness training program: campaign management, phishing simulations, completion tracking, and leadership reporting. Manage the security testing program as the organization transitions from annual to continuous autonomous pentesting. Own vendor relationships, track findings to remediation, and produce executive-ready reporting. Qualifications Required 5-7 years in GRC, security compliance, risk management, or a closely related security function. Hands-on experience owning or supporting a SOC 2 Type II audit: evidence collection, control mapping, and auditor coordination. Solid working knowledge of NIST CSF: gap assessments, control mapping, and remediation tracking. Demonstrated experience building or formalizing a security policy library, not just updating existing documents. Experience managing third-party and vendor risk assessments using a tiered risk model. Experience responding to client security questionnaires: SIG, CAIQ, or similar formats. Clear understanding of the boundary between GRC and legal/privacy functions. Proven ability to work alongside a legal team without blurring lanes. Strong written communication: you can translate technical controls into clear, accurate language for clients, auditors, and executives. Disciplined project management: you own timelines, follow up without being asked, and don’t let things fall through. Active daily use of AI and automation. We operate at 100% internal AI adoption. Non-negotiable. Preferred Technical Experience GRC platforms: OneTrust, Drata, Vanta, Whistic, or similar. Security awareness platforms: KnowBe4 or equivalent. ITGC working knowledge across identity (Okta), SaaS (Google Workspace), cloud (AWS, GCP, Azure), and endpoint (CrowdStrike). BCP/DR frameworks: BIA methodology, RTO/RPO definition, and tabletop exercise facilitation. AI governance frameworks: NIST AI RMF or EU AI Act. Familiarity with CASB, DLP, or cloud security posture tooling from a compliance and documentation standpoint. Private equity, holding company, or multi-entity compliance environment experience strongly preferred. Commitment to Diversity and Inclusion at Momentum At Momentum, our commitment to change for the better is reflected in our dedication to fostering a culture of belonging, inclusion, and diversity. We recognize diversity and inclusion as key components of our company’s success and growth. Recognizing the ongoing journey ahead, we are determined to make lasting impacts through the collective efforts of our Leadership team, People & Culture team, and every employee. Momentum is an equal opportunity employer, considering all qualified applicants regardless of characteristics protected by law. These include, but are not limited to, race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, color, ancestry, and Veteran status. We actively seek qualified applicants from diverse backgrounds, with no consideration of criminal histories, in alignment with applicable legal requirements. Should a reasonable accommodation be necessary for the application process and beyond, we are eager to review and provide reasonable accommodations as needed, in compliance with applicable laws. Total Rewards At Momentum, we prioritize the well-being of the whole individual. We are committed to supporting our people in every moment that matters on their journey with us! We are pleased to offer a comprehensive total rewards package designed to provide protection, peace of mind, and a focus on overall well-being while helping our people plan for the future. The base salary range for this position may vary based on location. Actual compensation will be determined by role, level, and location, considering additional factors such as job-related skills, experience, and relevant education or training. For roles eligible for remote work, the base salary is tailored to the designated work location. In addition to the base salary, candidates may be eligible to receive a discretionary annual bonus, determined based on both the company’s business performance and individual contributions. The People & Culture team will provide specific details during the hiring process. We take pride in offering a comprehensive benefits package for our full-time employees, encompassing healthcare benefits, a 401(k) plan with an employer match, short-term and long-term disability coverage, life insurance, paid time off, parental leave, and various paid holidays, among other perks. Our workplace offers opportunities for involvement in a wide range of challenging and impactful projects, across diverse industries and business models, fostering career advancement and development within our growing organization. The culture is highly collaborative and supportive, contributing to a fulfilling professional journey. Note on Confidentiality Any personal data collected during the application process will be treated with the utmost confidentiality and privacy. #J-18808-Ljbffr Momentum

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the GRC Analyst in Wisconsin vacancy
  •  ...Governance, Risk & Compliance (GRC) Analyst Client is seeking a GRC Analyst to lead our governance, risk, and compliance initiatives. This role will be instrumental in strengthening their cybersecurity posture, ensuring regulatory compliance, and supporting strategic... 
    Suggested

    Group Nine LLC

    Middleton, WI
    4 days ago
  •  ...regulatory excellence depends on strong governance, risk, and compliance practices and this role sits at the center of that work. As a GRC Analyst, you will manage compliance frameworks, assess organizational risk, and help Zywave maintain the trust of the customers it serves... 
    Suggested

    Zywave

    Milwaukee, WI
    13 hours ago
  •  ...values is not just a goal; it’s a daily practice! For more information, please visit The Opportunity We are hiring a Security GRC & Risk Analyst to own the governance, risk, and compliance execution layer across a holding company and portfolio of businesses. This is a... 
    Suggested
    Full time
    Temporary work
    Live out
    Work at office
    Remote work

    Momentum

    Wausau, WI
    1 day ago
  • $110k - $140k

    Senior GRC Analyst - Accounting - $110,000 - $140,000 You get to build the GRC function from scratch at a nationally recognized, PE-backed company in a major growth phase. This is a greenfield opportunity. There is no inherited mess to untangle, no legacy processes holding... 
    Suggested

    Saragossa

    Wisconsin
    1 day ago
  • $85.66k - $137.05k

     ...Information Trust Alliance (HITRUST), NIST or similar frameworks Experience with Governance, Risk and Compliance/ Integrated Risk Management (GRC/IRM) platforms (e.g. Apptega, Archer, ServiceNow) Experience with email security platforms (e.g. Knowbe4, Proofpoint Zen) Familiarity... 
    Suggested
    Full time

    Mercyhealth Wisconsin and Illinois

    Janesville, WI
    2 days ago
  • Who Are We?Taking care of our customers, our communities and each other. That’s the Travelers Promise. By honoring this commitment, we have maintained our reputation as one of the best property casualty insurers in the industry for over 170 years. Join us to discover a ...
    Full time
    For contractors
    Local area
    Long distance
    Night shift

    The Travelers Indemnity Company

    Brookfield, WI
    1 day ago
  • $132.6k - $195k

     ..., merchants, and drivers.About the RoleThe Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced environment, taking... 
    Hourly pay
    Contract work
    Work at office
    Local area
    Remote work
    Flexible hours

    Doordash

    Milwaukee, WI
    3 days ago
  • $91.4k - $159.9k

    AXA XL offers risk transfer and risk management solutions to global and local businesses. We offer worldwide capacity for a variety of exposures, experienced underwriting, dedicated loss prevention services and a team-based account management approach focused on better ...
    Work at office
    Local area
    Remote work
    Worldwide
    Flexible hours

    AXA Group

    Milwaukee, WI
    9 hours ago
  • $65.65k - $96.28k

    Pay Range: $65,654.00 - $96,282.00 The Compliance Specialist III is directly responsible for preparing increasingly complex compliance and government filings within company service standards and following department procedures to ensure accuracy and quality of deliverables...
    Full time
    Temporary work
    Part time
    Work visa
    Flexible hours

    EPIC Retirement Plan Services

    Wisconsin
    6 hours ago
  • Cottage Grove, WI • Global R&D Job TypeFull-timeDescriptionWHO WE AREJohnson Health Tech is one of the world's largest and fastest-growing fitness equipment manufacturers, delivering innovative solutions that help people live healthier lives. Through our award-winning...
    Casual work
    Work at office
    Worldwide
    Flexible hours

    Johnson Health Tech

    Cottage Grove, WI
    1 day ago
  • *Must be able to work onsite at ABC Supply’s national support campus in Beloit, Wisconsin*ABC Supply is North America’s largest wholesale distributor of exterior and interior building products.ABC Supply is proud to be an employee-first company. In fact, we have won the...
    Full time
    Temporary work
    Casual work
    Work at office
    Immediate start

    ABC Supply

    Beloit, WI
    1 day ago
  • DescriptionWe are looking for an experienced Compliance Manager to support regulatory oversight, corporate accounting coordination, and marketing review activities for an investment advisory organization in Madison, Wisconsin. This position plays a key role in strengthening...
    Work at office

    Robert Half

    Madison, WI
    3 days ago
  • Interested in a career that matters? The Role and Your Impact:Welcome to the role of North America Regulatory Affairs Senior Manager, Food and Beverage where you will lead a team in a people manager role, leading and developing regulatory professionals who help turn science...
    Full time
    Work at office
    Local area
    Work from home

    Novozymes

    Milwaukee, WI
    1 day ago
  •  ...As a full-time Risk Analyst, you will be responsible to: Drive IFRS 9 credit risk management by delivering accurate ECL calculations, robust models, and high-quality data to ensure reliable provisioning and regulatory compliance. Provide actionable insights to management... 
    Full time

    TiTANS Consulting

    Cedar Grove, WI
    13 hours ago
  • $81.7k - $165.1k

     ...and effective dates and ensures timely policy reviews are completed . Consult with and provide analytical support to bankers, analysts, Credit Policy Director and Chief Credit Officer on credit issues and questions. Key Competencies for Position Strong... 
    Full time
    Work experience placement
    Work at office

    Old National Bank

    Milwaukee, WI
    2 days ago
  • Mozzeno, gevestigd in Louvain-la-Neuve, zoekt een Credit Decision Officer. Je bent verantwoordelijk voor het vereenvoudigen van de kredietovereenkomsten, controleren van dossiers en administratieve opvolging. Vereisten omvatten uitstekende kennis van het Nederlands en ...
    Contract work

    mozzeno

    Cedar Grove, WI
    2 days ago
  • Ben je analytisch sterk en heb je een passie voor credit risk? In deze rol speel je een sleutelrol in het beheer en de optimalisatie van IFRS 9-processen. Je werkt in een innovatieve omgeving waar je impact hebt op strategische beslissingen, risicomodellen en de verdere...

    D'Ieteren Automotive

    Cedar Grove, WI
    1 day ago
  • $75 - $80 per hour

    Our client, a leading financial services organization, is seeking an Annual Risk Assessment Consultant to join their team. As an Annual Risk Assessment Consultant, you will be part of the Risk Management Department supporting cybersecurity and regulatory compliance initiatives...
    Weekly pay
    Temporary work
    Flexible hours

    ManpowerGroup Global, Inc.

    Waterford, WI
    4 days ago
  • $55k

    Our Team is Kind of a Big Deal! UniFirst First Aid + Safety is seeking a reliable and hardworking Safety Compliance Specialist to join our family. As a Team Partner in the Safety Training Department, you will be facilitating various CPR/First Aid & OSHA Safety classes ...
    Hourly pay
    Work at office
    Immediate start
    Shift work
    2 days per week

    UniFirst

    Menomonee Falls, WI
    13 hours ago
  • $46.99k - $122.4k

    The Hispanic Alliance for Career Enhancement is seeking a dedicated professional for a position focused on healthcare fraud investigations in Vermont. Candidates must have three years of experience in this area along with a bachelor's degree or equivalent experience. This...

    Hispanic Alliance for Career Enhancement

    Wisconsin
    4 days ago
  • Marion, Massachusetts / Newport, Rhode Island / Madison, Wisconsin / Green Bay, Wisconsin / Petaluma, California / Jacksonville, FloridaEnvironmental/Geology /Full Time Exempt /HybridFoth is a 100% member-owned science and engineering consulting firm headquartered in Wisconsin...
    Full time
    For contractors
    Local area
    Flexible hours

    Foth

    Madison, WI
    9 hours ago
  • $89.36k - $134.04k

    About the JobThe Senior Data Analyst, Risk Product, will be part of the Sales Enablement function and will play a key role in helping leaders make informed, data-driven decisions. This role supports the Risk Product team by translating complex data into clear insights,... 
    Full time

    Northwestern Mutual

    Milwaukee, WI
    9 hours ago
  •  ...join our collaborative team comprised of passionate experts.​The Senior Cybersecurity Risk Remediation Analyst, reports to the Director of Cybersecurity Strategy & GRC. This role serves as the central coordination point for enterprise cybersecurity remediation efforts... 
    Full time
    For contractors
    Work at office
    Local area
    Night shift

    Exact Sciences

    Madison, WI
    9 hours ago
  • $85.91k - $162.89k

    OverviewBaker Tilly is a leading advisory, tax and assurance firm, providing clients with a genuine coast-to-coast and global advantage in major regions of the U.S. and in many of the world’s leading financial centers - New York, London, San Francisco, Los Angeles, Chicago...
    Full time
    Work experience placement
    Local area
    Worldwide

    Baker Tilly

    Milwaukee, WI
    1 day ago
  • $107.1k - $160.7k

    Grounded in safety, quality, and ethics, our experts lead their fields with dedication, a creative spirit, and a vision for growth. We draw from more than 20 technical specialties worldwide and are devoted to fostering a community of diverse talents, backgrounds, and expertise...
    Full time
    Temporary work
    Part time
    Work experience placement
    Casual work
    Work at office
    Local area
    Remote work
    Worldwide
    Flexible hours

    Stantec

    Green Bay, WI
    2 days ago
  • $46.99k - $122.4k

    The Hispanic Alliance for Career Enhancement is seeking a dedicated professional to handle investigations into healthcare fraud, waste, and abuse, focusing on complex cases and cooperation with law enforcement. This full-time position requires a bachelor's degree, with...
    Full time

    Hispanic Alliance for Career Enhancement

    Wausau, WI
    3 days ago
  • Centene Corporation is seeking an investigator to tackle healthcare fraud and abuse, essential for transforming health in communities. This remote role requires a bachelor's degree and at least one year of experience in medical claim investigations. You'll conduct thorough...
    Remote work
    Flexible hours

    Centene Corporation

    Wausau, WI
    3 days ago
  •  ...documentation and required research Conduct routine interviews with suspects and witnesses Completes a SAR when applicable The Sr. Fraud Analyst is directly responsible for the evaluation and decision to file suspicious activity reports on cases assigned to them Identify and... 
    Local area
    Immediate start
    Flexible hours
    Day shift

    Texas Capital Bank

    Wausau, WI
    3 days ago
  • RogersBehavioral Healthis a non-profit comprehensive behavioral health hospital, offering in-patient, day and residential treatment for depression , addiction, eating disorders, obsessive-compulsive disorder and anxiety disorders for children, teens and adults. Job Description...

    Rogers Behavioral Health

    Oconomowoc, WI
    4 days ago
  • Reports to Director, Compliance. Manages Privacy and the Fair and Responsible Banking programs to ensure compliance with regulatory requirements and to minimize risk for the organization. Builds strong relationships with business partners and provides compliance guidance...

    Landmark Credit Union

    Milwaukee, WI
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!

Related searches