Senior GRC Analyst
Gilder Search Group
The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) is a risk focused, highly analytical role that ensures all human and third‑party risk to Clayco is identified, quantified, documented, and treated to an acceptable level across the Clayco organization. This role will assume ownership of the Third-Party Risk Management (TPRM) process to gather details on the security practices and compliance levels for each third‑party being considered or contracted for a solution or services to assess the potential for compromise due to a control gap or exploitable misconfiguration as well as non‑compliance with legal and regulatory requirements. Additional contribution will be expected for internal assessments and third‑party audits to gather and submit discovery and transactional responses and artifacts. The Sr. GRC Analyst will also assume ownership of Human Risk Management (HRM) including the delivery of comprehensive security awareness education, the end‑to‑end execution of phishing simulation programs, and the technical maintenance and life‑cycle management of security awareness platforms. Beyond simple training, the position focuses on Human Risk Management (HRM), using data‑driven insights to identify high‑risk user groups and implementing targeted interventions to proactively mitigate human‑centric threats to cultivate a security‑first culture internally through education and behavioral change. Additional responsibilities will be assigned as deemed necessary. Any travel is usually planned in advance, but issues may arise which warrant immediate travel to one or more satellite locations. The Specifics of the Role Assumes operational ownership of the 3rd Party Vendor Risk Management program identifying, assessing, and mitigating risks associated with external vendors, suppliers, and service providers Conducts due diligence on new and existing vendors by reviewing security questionnaires, SOC reports, compliance certifications, and other supporting attestations Captures, analyzes, and recommends treatment, assignment, and tracking of identified issues Collaborates with legal and stakeholder teams to ensure contracts include specific clauses for data protection, service‑level agreements (SLAs), and AI governance Documents and communicates all relevant findings and recommendations to stakeholders Tracks, monitors, and reports on execution of remediation action plans and escalates inadequate responses or progress Assumes ownership of the Security Awareness program determining appropriate topics, themes, scopes, and timing of cyber awareness communications, events, and content delivery Conducts regular, simulated social engineering exercises to assess and improve employee recognition of real‑world attacks Develops engaging, simple materials—such as infographics, newsletters, and videos that translate complex technical risks into layman’s terms Maintains Security Awareness training and simulation platforms to support content delivery and End User interaction, including support for any Client‑side functionality (i.e., "Report Phish" button) Plans, coordinates, and executes activities for Cybersecurity month Partners with Employee Relations, Legal, and Marketing to ensure security messaging is integrated into the broader corporate culture Tracks Key Risk Indicators (KRI's) such as actual phishing click-through rates, failed simulations, and missed training as well as Key Performance Indicators (KPIs) like suspicious email reporting, passed simulations, and successful training completion status to measure program effectiveness for leadership Requirements 6‑8+ years’ experience in Risk & Compliance Assessment, Audit & Reporting, or similar functions, preferably within the Information Security or Technology fields 3‑4+ years working specifically in Information Security roles involving Risk Analysis, Information System Security Assessment, and/or Security Awareness and Human Risk Management Bachelor’s degree in Information Technology or related field, or equivalent experience Required Certifications: Certified in Risk & Information Systems Control (CRISC), SANS Security Awareness Professional (SSAP), and Certified Third‑party Risk Professional Certification (CTPRP) (Current status, or obtained within 9 months of assuming role) Strong experience leveraging auditing principles and methods to evaluate policies, processes, systems, and vendors to identify business risks and control gaps Strong knowledge of Regulations, Frameworks, and Standards such as NIST 800-171/CSF/RMF, ISO27001, CIS Critical Security Controls, etc. Strong, technical knowledge of modern Systems, Services, Cloud Applications/Platforms, Identity Services, and Data Storage/Handling and their areas of Risk and Threat exposure Experience with administering, maintaining, and leveraging a Risk Register to track and communicate identified Risk and its required remediation Knowledge of statistics, reporting and analytical tools to analyze and solve complex problems Proficiency in necessary productivity tools (i.e., Microsoft Excel, PowerPoint, Word etc.) for analytics and presentations Operate with strong integrity with ability to manage projects of a confidential nature Ability to translate technical or abstract concepts into a narrative that is easily understood Ability to thrive in fast‑paced environment. Some Things You Should Know This position is classified as a safety‑sensitive role in accordance with applicable state and federal laws. Candidates selected for this position will be subject to a comprehensive background check, which includes mandatory drug testing. Benefits Discretionary Annual Bonus: Subject to company and individual performance. Comprehensive Benefits Package Including: Medical, dental and vision plans, 401k, generous PTO and paid company holidays, employee assistance program, flexible spending accounts, life insurance, disability coverage, learning & development programs and more! Compensation The salary range for this position considers a wide range of factors in making compensation decisions including but not limited to: Education, qualifications, skills, training, experience, certifications, internal equity, and location. Compensation decisions are dependent on the facts and circumstances of each case. #J-18808-Ljbffr Gilder Search Group
$138k - $173k
THE POSITIONOur roster has an opening with your name on itFanDuel is seeking a Senior Technology Governance, Risk & Compliance (GRC) Analyst to join its Technology GRC team as a strategic specialist supporting our first line of defense (1LOD) function. This role offers...SeniorTemporary workWork at officeLocal areaWorldwideShift work- Apply For This Job *indicates a required field FanDuelSenior
- Gilder Search Group is looking for a Sr. GRC Analyst focusing on Third-Party & Human Risk Management in Atlanta, Georgia. This role involves risk analysis, compliance assessments, vendor management, and developing security awareness training. The ideal candidate has 6-8...Senior
- ...Sr. GRC Analyst, Risk Management Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk Register. This role is responsible for ensuring all identified...SeniorFor contractorsImmediate startFlexible hours
- ...GRC Analyst (Governance, Risk & Compliance) We are seeking a mid-level GRC Analyst with strong client-facing experience to support governance, risk, and compliance initiatives across enterprise environments. The ideal candidate will have prior experience working with...Suggested
- ...who can contribute to the excellence of our academic community. Description JOB DESCRIPTION: The Senior IT GRC (Governance, Risk, and Compliance) Analyst oversees technical design, implementation, maintenance, and responsibilities for multiple information security...SeniorWork experience placementRemote workWork from homeFlexible hours
- ...possible. Job Summary The Cybersecurity Vulnerability Governance Analyst is responsible for governing and overseeing the organization's... ...governance or vulnerability management programs. Experience with GRC platforms such as Archer, ServiceNow, MetricStream, or similar solutions...Full timeImmediate startFlexible hours
- ...both rules designer and workbench.Responsibilities:Work directly with external client companies, internal data scientists, business analysts, and other underwriters to develop and build out accelerated underwriting (AUW) programs. Heavy emphasis on best in class rules...SeniorShift work
$119k - $193k
...extraordinary future.About This Role:Forrester is currently looking for a Senior Analyst to conduct research and deliver strategic advice for risk... ...in compliance management, internal or external audit, and GRC platforms is strongly desired.The successful candidate...SeniorFull timeFor contractorsRemote work- ...stakeholders to drive impact; develops and communicates a compelling vision and inspires actionBuilds trust-based relationships with senior leaders within and outside of the team; collaborates generously with others and is sought after as a key thought partnerStrong...SeniorApprenticeshipWork at office
$109.6k - $191.7k
Senior Risk ConsultantRemote - USAProvides loss control support for Property & Casualty underwriters and insurance customers in AXA XL’s Americas - Environmental unit. What you’ll be doingWhat will your essential responsibilities include?Provides underwriting and loss...SeniorFor contractorsWork at officeFlexible hours$176k - $205k
Job Description Summary: Role Summary:The Senior Director of Scientific & Regulatory Affairs - Compliance & Innovation enables enterprise-wide growth and innovation by translating evolving food regulations into clear, actionable guidance for commercial, technical, and...SeniorFull timeFixed term contractLocal areaRelocation$180k - $200k
...conducting effective risk focused management and partnership routines with technology teams and internal partners. Interface with senior leaders and key partners across the organization.5. Review and challenge outcomes of first-line-of-defense risk program execution.6...SeniorPermanent employmentFull timePart timeH1bWork at officeRemote workRelocationWork visaRelocation packageShift workDay shift- ...career where your contributions are valued, your growth is supported, and your work makes a lasting impactJob Summary:The Senior Risk Management Analyst is responsible for collecting, analyzing, validating, and presenting the Company's exposure, claims, and insurance data...SeniorFull time
$77.2k - $115.8k
...Time: Be the Linchpin of Security and Compliance at WWT As an Information Security (InfoSec) Governance, Risk, and Compliance (GRC) Analyst within Audit and Compliance, you will play a pivotal role in ensuring that WWT’s information security practices not only align...Full timeContract workPart timeRemote workFlexible hoursShift work$145k - $165k
The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications...SeniorFull timeContract workPart timeShift workDay shift$180k - $200k
...Fluency: English (Required)Work Shift:1st shift (United States of America)Please review the following job description:The AI Risk Senior Specialist will be responsible for maintaining and monitoring adherence to AI policies and procedures, conducting risk tiering, ensuring...SeniorFull timePart timeShift workDay shift- ...CoBank is seeking a credit professional to prepare analysis and credit investigations, and to support senior staff with research and presentations. The role involves cosponsoring credits within limits, reviewing financial information, and assisting with credit administration...Senior
- ...assessments Support compliance investigations and remediations Develop metrics to capture and report compliance program efforts to senior leadership Qualifications: Required Bachelor’s Degree or foreign equivalent required from an accredited institution. Will also consider...SeniorH1b
$124.3k - $210.3k
...Visa and do work that matters - to you, to your community, and to the world. Progress starts with you.Job DescriptionThe Senior Risk Operations Analyst is a high visibility and demanding role, responsible for monitoring and review of fraud alerts actioned by the Risk...SeniorFull timeWork experience placementWork at officeLocal areaShift workWeekend work$127k - $171.5k
...Senior Sox Risk Advisor Come join Intuit as a Senior SOX Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a function in the Financial Integrity, Transformation & Governance (FITG) organization, focused on enabling a modern, sustainable,...SeniorWork experience placement$72k - $141k
...matter and are part of something important, ensuring the abilities of all employees are used to their fullest potential. The Compliance Senior Consultant is a strategic individual contributor role designed to lead and support Corporate Compliance operations and programs....SeniorFull timeWork experience placementWork at office- Posted 4 days agoSenior P&C Consulting Actuary opening in Atlanta, Boston, Charlotte, Chicago, Dallas, Houston, Los Angeles, Montreal, New York, or Philadelphia. Manage client projects involving your choice of Reserving, Pricing, and/or Capital Modeling. Consult to (re)...Senior
- ...scenarios that align with global regulatory expectations and business objectives. • Collaborate closely with cross-functional teams and senior leadership to drive clarity, alignment, and accountability for regulatory deliverables, timelines, and interdependencies. •...SeniorWork at officeRemote workWork from homeWorldwide
- Fayette Chamber of Commerce is seeking a BSA Advisor to guide and oversee our BSA/AML program. The role ensures compliance with laws, identifies risks, and supports effective strategies across the organization. The candidate will review transactions for suspicious activity...Senior
$41.2k - $76.8k
...Senior Risk Analyst Our not-so-secret sauce. Award-winning, inclusive, Top Workplace culture doesn't happen overnight. It's a result of hard work by extraordinary people. More than 11,000 of the industry's brightest talent drive our efforts to deliver purposeful...SeniorMinimum wageWork experience placementWork at officeLocal areaNight shift- ...Senior Associate, Risk Advisory Group In today's dynamic environment, business leaders face constantly shifting risks. Riveron helps organizations implement leading governance, risk and compliance practices by combining deep expertise with pragmatic partnership, using...SeniorFull timeContract workWork at officeShift work
- ...the region and perform compliance oversight to protect Invesco from regulatory, reputational, and financial risk.About the role: The Senior Compliance Officer position assists Invesco's Americas business operations with respect to compliance with applicable state,...SeniorFull timeWork at officeFlexible hours
$163k - $204k
Position Summary: AIG’s Investments group is responsible for managing the investment assets of AIG, including affiliated insurance companies, through internal and external managers. The Investments Compliance team provides compliance and regulatory support to AIG’s Investments...SeniorFull timeWork at office- ...Voyix is headquartered in Atlanta, Georgia, and serves customers in more than 35 countries worldwide.Position Summary The Senior Trade Compliance Analyst supports NCR Voyix’s global trade compliance program by ensuring adherence to U.S. import and export laws and...SeniorFull timeWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior GRC Analyst. Be the first to apply!
- senior network engineer remote Atlanta, GA
- senior benefits manager Atlanta, GA
- senior app developer Atlanta, GA
- senior manager legal Atlanta, GA
- senior retail sales associate Atlanta, GA
- sr project manager Atlanta, GA
- senior account executive Atlanta, GA
- senior manager strategic initiatives Atlanta, GA
- senior staff systems engineer Atlanta, GA
- senior commercial counsel Atlanta, GA


