Senior GRC Analyst
Gilder Search Group
The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) is a risk focused, highly analytical role that ensures all human and third‑party risk to Clayco is identified, quantified, documented, and treated to an acceptable level across the Clayco organization. This role will assume ownership of the Third-Party Risk Management (TPRM) process to gather details on the security practices and compliance levels for each third‑party being considered or contracted for a solution or services to assess the potential for compromise due to a control gap or exploitable misconfiguration as well as non‑compliance with legal and regulatory requirements. Additional contribution will be expected for internal assessments and third‑party audits to gather and submit discovery and transactional responses and artifacts. The Sr. GRC Analyst will also assume ownership of Human Risk Management (HRM) including the delivery of comprehensive security awareness education, the end‑to‑end execution of phishing simulation programs, and the technical maintenance and life‑cycle management of security awareness platforms. Beyond simple training, the position focuses on Human Risk Management (HRM), using data‑driven insights to identify high‑risk user groups and implementing targeted interventions to proactively mitigate human‑centric threats to cultivate a security‑first culture internally through education and behavioral change. Additional responsibilities will be assigned as deemed necessary. Any travel is usually planned in advance, but issues may arise which warrant immediate travel to one or more satellite locations. The Specifics of the Role Assumes operational ownership of the 3rd Party Vendor Risk Management program identifying, assessing, and mitigating risks associated with external vendors, suppliers, and service providers Conducts due diligence on new and existing vendors by reviewing security questionnaires, SOC reports, compliance certifications, and other supporting attestations Captures, analyzes, and recommends treatment, assignment, and tracking of identified issues Collaborates with legal and stakeholder teams to ensure contracts include specific clauses for data protection, service‑level agreements (SLAs), and AI governance Documents and communicates all relevant findings and recommendations to stakeholders Tracks, monitors, and reports on execution of remediation action plans and escalates inadequate responses or progress Assumes ownership of the Security Awareness program determining appropriate topics, themes, scopes, and timing of cyber awareness communications, events, and content delivery Conducts regular, simulated social engineering exercises to assess and improve employee recognition of real‑world attacks Develops engaging, simple materials—such as infographics, newsletters, and videos that translate complex technical risks into layman’s terms Maintains Security Awareness training and simulation platforms to support content delivery and End User interaction, including support for any Client‑side functionality (i.e., "Report Phish" button) Plans, coordinates, and executes activities for Cybersecurity month Partners with Employee Relations, Legal, and Marketing to ensure security messaging is integrated into the broader corporate culture Tracks Key Risk Indicators (KRI's) such as actual phishing click-through rates, failed simulations, and missed training as well as Key Performance Indicators (KPIs) like suspicious email reporting, passed simulations, and successful training completion status to measure program effectiveness for leadership Requirements 6‑8+ years’ experience in Risk & Compliance Assessment, Audit & Reporting, or similar functions, preferably within the Information Security or Technology fields 3‑4+ years working specifically in Information Security roles involving Risk Analysis, Information System Security Assessment, and/or Security Awareness and Human Risk Management Bachelor’s degree in Information Technology or related field, or equivalent experience Required Certifications: Certified in Risk & Information Systems Control (CRISC), SANS Security Awareness Professional (SSAP), and Certified Third‑party Risk Professional Certification (CTPRP) (Current status, or obtained within 9 months of assuming role) Strong experience leveraging auditing principles and methods to evaluate policies, processes, systems, and vendors to identify business risks and control gaps Strong knowledge of Regulations, Frameworks, and Standards such as NIST 800-171/CSF/RMF, ISO27001, CIS Critical Security Controls, etc. Strong, technical knowledge of modern Systems, Services, Cloud Applications/Platforms, Identity Services, and Data Storage/Handling and their areas of Risk and Threat exposure Experience with administering, maintaining, and leveraging a Risk Register to track and communicate identified Risk and its required remediation Knowledge of statistics, reporting and analytical tools to analyze and solve complex problems Proficiency in necessary productivity tools (i.e., Microsoft Excel, PowerPoint, Word etc.) for analytics and presentations Operate with strong integrity with ability to manage projects of a confidential nature Ability to translate technical or abstract concepts into a narrative that is easily understood Ability to thrive in fast‑paced environment. Some Things You Should Know This position is classified as a safety‑sensitive role in accordance with applicable state and federal laws. Candidates selected for this position will be subject to a comprehensive background check, which includes mandatory drug testing. Benefits Discretionary Annual Bonus: Subject to company and individual performance. Comprehensive Benefits Package Including: Medical, dental and vision plans, 401k, generous PTO and paid company holidays, employee assistance program, flexible spending accounts, life insurance, disability coverage, learning & development programs and more! Compensation The salary range for this position considers a wide range of factors in making compensation decisions including but not limited to: Education, qualifications, skills, training, experience, certifications, internal equity, and location. Compensation decisions are dependent on the facts and circumstances of each case. #J-18808-Ljbffr Gilder Search Group
- Gilder Search Group is looking for a Sr. GRC Analyst focusing on Third-Party & Human Risk Management in Atlanta, Georgia. This role involves risk analysis, compliance assessments, vendor management, and developing security awareness training. The ideal candidate has 6-8...Senior
- ...A financial services provider in Atlanta seeks an Analyst for its Information Security GRC team. The role includes managing security metrics, maintaining policies, and handling regulatory inquiries. Ideal candidates have a degree in Information Security, experience in...Suggested
- ...Job Description Job Description About the Role Merci Technologies is seeking a GRC Analyst to support the governance, risk, and compliance program for one of our enterprise clients. This role sits at the intersection of security, audit, and business operations,...SuggestedFull timeContract workRemote work
- ...assessments Support compliance investigations and remediations Develop metrics to capture and report compliance program efforts to senior leadership Qualifications: Required Bachelor’s Degree or foreign equivalent required from an accredited institution. Will also consider...SeniorH1b
- ...dedicated to fostering employee growth both professionally and personally, and to making every CIA experience meaningful and memorable. Senior Compliance Associate We are looking for an ethical, team‑oriented Senior Compliance Associate to strengthen and elevate our...SeniorWork at office
$116k - $216k
...Location: 4910 Tiedeman Road, Brooklyn Ohio About the Job The Senior Manager, Technology Compliance is a strategic leader responsible for overseeing KeyBank's compliance with applicable state and federal banking laws, regulations, and supervisory expectations as they...SeniorContract workWork at officeFlexible hours- ...Senior Actuary Atlanta, Georgia, United States Senior Actuary Requirements: ~3 to 8 years' experience. ~ Bachelor's... ...the Society of Actuaries) ~ CERA (Chartered Enterprise Risk Analyst) ~ MAAA (Member of the American Academy of Actuaries) ~ ASA...Senior
- ...The Senior Compliance Specialist is responsible for supporting statutory compliance across payroll and HR products for the North American region (United States and Canada), with a primary focus on tax and labor-related requirements. This role is hybrid, three days per...SeniorWork at officeLocal area3 days per week
- ...the region and perform compliance oversight to protect Invesco from regulatory, reputational, and financial risk. About the role The Senior Compliance Officer position assists Invesco's Americas business operations with respect to compliance with applicable state,...SeniorFull timePart timeWork at officeFlexible hours
- ...goal of delivering diagnostic solutions to some of the most critical questions in healthcare. Job Type: Full time Job Title: Senior Regulatory Affairs Manager Location: Onsite - Atlanta, or San Diego Position Summary: The Senior Regulatory Affairs...SeniorFull timeFlexible hours
$120k - $150k
...Risk Manager / Senior Risk Analyst Location: Atlanta, Orlando or Tampa (Hybrid) — Remote flexibility available for the right candidate Division : Dealer General Warranty About CV Family & Dealer General Warranty The CV Family Organization is a privately held family of...SeniorContract workRemote work- ...Senior Compliance Analyst Corpay is currently looking to hire a Senior Compliance Analyst within our Corporate Services - Finance division. This... ...auditors, Internal Audit co-source providers, and IT GRC to identify emerging IT compliance risk and participant in project...SeniorCurrently hiringLocal areaFlexible hours
$104.33k - $156.49k
...trusted data becomes a transformative force for business and society. The Challenge We are looking for a dynamic Senior Information Security GRC Analyst to support IT and InfoSec by performing various governance, risk, and compliance activities as part of the OneTrust...SeniorWork experience placementWork at officeLocal areaWorldwideFlexible hours3 days per week1 day per week$149.6k
...Varian Medical Systems, Inc. seeks the following positions in Atlanta, GA: Senior Business Systems Analyst R-29438 Working with key stakeholders to map and assess current state of systems and processes aiming to identify pain points and inefficiencies. Rate of pay: $14...Senior- A global leader in logistics, offering a broad range of solutions including the transportation of packages and freight, the facilitation of international trade, and the deployment of advanced technology to manage the world of business more efficiently. Position Summary...SeniorContract workWork experience placement
- ...Carter’s Inc. in Atlanta is seeking a Senior Workday Analyst to optimize and advance Workday's Performance, Learning, and Talent functions. This strategic role involves creating dashboards, leading process optimization, and managing Workday releases. Ideal candidates...SeniorWork at office
- ...Position Overview The Senior Analyst is responsible for the analysis of highly complex applications, websites, databases, and systems, providing third-level technical support, testing, and defect management. The role leads team initiatives while simultaneously participating...SeniorFlexible hoursWeekend work
$59.85k - $78.8k
...Senior Analyst, Paid Social Spark Foundry is a global media agency that exists to bring HEAT Higher Engagement, Affinity, and Transactions to brands. By combining flawless media fundamentals with aggressive innovation, Spark inspires consumers to pay more attention...SeniorTemporary workFreelanceFlexible hours- ...Location: Atlanta | Date: June 2026 Senior Analyst, Asset Management Company Overview Jamestown is a globally designed-focused real estate investment and management firm with a long track record of transforming spaces into innovation hubs and community centers. With offices...SeniorWork at office
$84.18k - $121.59k
...Senior FOIA Analyst Employment Type: Full Time, Mid-Level Department: Information Technology Overview CGS is seeking a Senior FOIA Analyst to support the legal mission of a large federal agency. The position involves processing FOIA requests, creating FOIA correspondence...SeniorFull timeFor contractorsFlexible hours- ...Senior Business Analyst Atlanta, Georgia, United States Interview Type: Webcam only Work Arrangement: Hybrid Engagement Type: Contract Short Description: Resource is responsible for working with the project manager in the planning, directing, and coordination...SeniorContract work
- ...Senior FOIA Analyst Employment Type: Full Time, Mid-Level Department: Information Technology CGS is seeking a Senior FOIA Analyst to join our team supporting the legal mission of a large federal agency. This position will allow candidates to demonstrate expertise in processing...SeniorFull timeFor contractorsWork at officeFlexible hours
$212k - $318k
...Partner, Senior Health Actuary We are seeking a Partner, Senior Health Actuary to join our Actuarial and Financial Group (AFG) in Mercer's Health practice. The location is open. Our Actuarial & Financial Group (AFG) provides our clients with high-quality actuarial...SeniorMinimum wageWork at officeLocal areaRemote workFlexible hours3 days per week1 day per week- ...Senior Analyst, Cybersecurity GRC, Atlanta, GA The Senior Analyst, Cybersecurity GRC will administer the completion of compliance-related client requests to assess security policies and procedures. The Senior Analyst will respond to inquiries on the security controls...SeniorWork experience placement
- ## Senior AnalystApplylocations: Atlanta, GAtime type: Full timeposted on: Posted Yesterdayjob requisition id: JR9257Build a Career That... ...is supported, and your work makes a lasting impactThe Senior Analyst is responsible for the analysis of highly complex applications,...SeniorWeekend work
- ...Senior Business Analyst Job Description Mandatory At least 4 years of experience in Payments domain and D+H (earlier FUNDtech) GPP product. At least 4 years of experience in FUNDtech GPP, requirement analysis and management, SDLC lifecycle knowledge and Change management...Senior
- ...Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking a Senior Relativity Archiving Analyst, who will be responsible for vetting Relativity workspaces and file share folders and archiving or purging them. File shares will be moved to...SeniorFull timeFlexible hours
- ...Senior Business Analyst - Healthcare Analytics About Our Client We are recruiting for a rapidly growing healthcare provider and payor analytics company that recently closed their Series B funding round. Their mission is to transform healthcare through data-driven insights...Senior
$25 - $30 per hour
...• Provide in-person, deskside technical support for end users (Level 1–2 issues) • Deliver white-glove IT support to C suite and senior leadership, ensuring minimal disruption and high professionalism • Troubleshoot and resolve hardware and software issues across Windows...Senior- ...team and culture and contribute to our core mission which is enhancing our customer's experience. Position Summary: The Senior Risk Analyst, Business Analytics, will be responsible for utilizing advanced analytical techniques and tools to provide data and reporting...SeniorWork at officeVisa sponsorshipWork visaMonday to FridayWeekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior GRC Analyst. Be the first to apply!
- senior vice president communications Atlanta, GA
- senior manager quality engineering Atlanta, GA
- senior device engineer Atlanta, GA
- sr operations manager Atlanta, GA
- senior supervisor Atlanta, GA
- senior client services manager Atlanta, GA
- senior recruitment consultant Atlanta, GA
- sr. hr generalist Atlanta, GA
- senior platform engineer Atlanta, GA
- senior clinical data manager Atlanta, GA


