GRC Analyst
$100k - $120kTyler Technologies, Inc.
ITSeattle,WashingtonUnited States Salary: USD 100000 - 120000 Annually Tyler Technologies is seeking a Governance, Risk, and Compliance (GRC) Analyst to support our Data & Insights (D&I) solutions within the Security team. This role offers a meaningful opportunity to own and evolve the compliance posture of Tyler’s D&I cloud platform, with a primary focus on sustaining and strengthening our FedRAMP Moderate Authorization to Operate (ATO) in an evolving regulatory landscape. In this role, you will serve as a central driver of audit readiness, continuous monitoring, and compliance program execution—partnering closely with Security, Engineering, Infrastructure & Release (TIRE), Legal, Privacy, and external assessors. You will operate in a fast-paced, results-driven environment where strong coordination, documentation quality, and risk-informed decision-making are essential to delivering secure, compliant, and resilient cloud services. The D&I team serves as Tyler Technologies' central hub for data, reporting, analytics, and artificial intelligence capabilities. Our teams build and maintain the foundational services and solutions that enable data-driven innovation across Tyler's product portfolio. We empower teams throughout the organization to incorporate advanced analytics, AI, and data-driven features into their products, ultimately helping government agencies make better decisions and serve their communities more effectively. Team members contribute their expertise to reduce complexity, introduce innovative solutions, and advance Tyler's data-driven future. Responsibilities Own FedRAMP Moderate authorization sustainment and audit readiness. Managing continuous monitoring (ConMon), POA&Ms, annual assessments, evidence quality, and overall ATO health. Lead readiness for evolving FedRAMP standards, including FedRAMP 20x. Tracking program changes, identifying compliance gaps, and coordinating documentation and process updates. Serve as the primary compliance program coordinator for the D&I Security team. Partnering across Security, Engineering, Infrastructure & Release (TIRE), Legal, Corporate Security and Privacy, and external assessors to deliver consistent, audit-ready outcomes. Own FedRAMP change management and authorization boundary governance. Managing Security Impact Analyses (SIAs), Significant Change Requests and Notifications (SCRs/SCNs), authorization boundary documentation, and federal / Authorizing Official (AO) communications. Support risk-based decision-making. Documentation of control exceptions, risk acceptances, and compensating controls in alignment with FedRAMP and organizational governance. Coordinate external assurance activities, including SOC 2 Type II assessments. Managing auditor engagement, evidence collection, findings tracking, and alignment with existing FedRAMP/NIST controls. Maintain the system-of-record for compliance documentation and artifacts. Owning the System Security Plan (SSP), ConMon plan, control narratives, diagrams, and appendices to ensure accuracy, traceability, and defensibility. Drive multi-framework compliance alignment across regulated environments. Supporting FedRAMP, CJIS, HIPAA, and GDPR through gap identification, baseline documentation, and evidence reuse. Plan and execute internal compliance assessments. Managing annual OWASP SAMM re-assessments, periodic Cloud Security Assessments (AWS Well-Architected), and internal CJIS audits to measure maturity and prevent compliance drift. Support D&I’s cloud security and Tyler’s security maturity initiatives. Managing applicable assessments and re-assessments, and aligning outcomes with broader security and compliance goals. Continuously improve compliance processes and maturity. Reducing manual effort, improving evidence quality, and preparing the organization for increased automation and reporting expectations. Qualifications Soft Skills Strong organization and prioritization skills. Ability to manage continuous monitoring, POA&Ms, evidence collection, change tracking, and audit deliverables across overlapping timelines without losing accuracy. Clear, accurate written and verbal communication. Ability to document controls and evidence clearly and explain compliance requirements, risks, and decisions to engineers, auditors, customers, and non-technical stakeholders. Collaborative, cross-functional working style. Comfort partnering with Security, Engineering, Infrastructure, Legal, Privacy, and external assessors to drive consistent, audit-ready outcomes. Detail-oriented with a systems-level perspective. Ability to track control requirements, dependencies, and boundary impacts while understanding how individual updates affect overall authorization health. Reliability and accountability. Consistently follows through on assigned work, maintains accurate records, meets deadlines, and communicates status, risks, or blockers early. Comfort working within structured frameworks and deadlines. Ability to operate effectively within FedRAMP, NIST, SOC 2, and similar frameworks, including audits, assessments, and recurring reporting cycles. Practical problem-solving mindset. Able to identify gaps, inconsistencies, or risks in documentation or processes and work with others to resolve them pragmatically. Proactive learning and openness to feedback. Willingness to build expertise in FedRAMP, NIST, CJIS, HIPAA, GDPR, and regulatory requirements over time and incorporate feedback into work. Adaptability and resilience. Ability to adjust to changing regulatory guidance, audit findings, and shifting priorities while maintaining quality and professionalism. Stakeholder- and trust-focused mindset. Appreciation for how strong compliance practices support customer trust, audit confidence, and long-term platform credibility. Tools and Technologies FedRAMP Moderate compliance and authorization tooling, including System Security Plans (SSPs), control narratives, continuous monitoring (ConMon) deliverables, POA&Ms, SARs, and other annual assessment artifacts. Experience working within FedRAMP repositories and maintaining audit-ready system-of-record documentation. NIST-based security frameworks, particularly NIST SP 800-53 Rev. 5, with the ability to map controls to technical and procedural implementations, evaluate control inheritance, and support baseline tailoring across regulated environments. Experience supporting regulated compliance programs, including FedRAMP Moderate, CJIS, SOC 2 Type II, HIPAA, and GDPR, with an emphasis on overlap analysis, evidence reuse, and consistency across frameworks. AWS cloud environments (working knowledge), including IAM, CloudTrail, AWS Config, Security Hub, GuardDuty, and VPC networking concepts, sufficient to assess compliance impact, authorization boundary changes, and shared responsibility considerations (not hands-on infrastructure ownership). Identity and access management concepts, including familiarity with NIST SP 800-63, 800-63A, 800-63B, and 800-63C; identity proofing, authentication assurance levels (IAL/AAL/FAL); federated identity models (SAML, OIDC, OAuth 2.0); and privileged access management fundamentals. Security monitoring and audit evidence sources, including SIEM and centralized logging platforms (e.g., Sumo Logic or equivalent), with experience evaluating alerting, log retention, and evidence quality for continuous monitoring and audit support. Vulnerability management workflows, including familiarity with scanning tools (e.g., Nessus, AquaSec, Invicti, Qualys, or equivalent), risk rating methodologies, remediation tracking, and POA&M lifecycle management in compliance-driven environments. Change management and security impact analysis processes, including Security Impact Analyses (SIAs), Significant Change Requests (SCRs/SCNs), authorization boundary documentation, and coordination of approval workflows with internal and external stakeholders. Secure development lifecycle (SDLC) and configuration management concepts, aligned with NIST SA, CM, and SI control families, with sufficient understanding to evaluate engineering practices, CI/CD security signals, and control effectiveness without acting as a primary implementer. Collaboration and documentation platforms, including Confluence and Jira for compliance tracking, evidence coordination, and audit workflows, and GitHub (or equivalent) for policy versioning, evidence references, and change traceability. Basic automation and reporting skills, including the use of spreadsheets, lightweight scripting, or GRC platform automation to improve evidence accuracy, reporting consistency, and delivery timelines. Ability to pass a federal background check and obtain and maintain CJIS clearance required. Other Bachelor's degree in Computer Science, Engineering, Mathematics, Information Systems, or a related field preferred Valued Certifications: CISSP, CCSP, CRISC, or CISA. Cloud or identity-focused certifications (e.g., AWS Security Specialty) are a plus. Equivalent experience in regulated, compliance-driven environments is valued over specific credentials. Candidates with less experience directly applicable to this position will be considered. You belong here! Not everyone checks every single box, and we encourage you to apply. #J-18808-Ljbffr Tyler Technologies, Inc.
$74.58k - $120k
...GRC Analyst Apply Online Tyler Technologies is seeking a Governance, Risk, and Compliance (GRC) Analyst to support our Data & Insights (D&I) solutions within the Security team. This role offers a meaningful opportunity to own and evolve the compliance posture...SuggestedLocal areaRemote workShift work- Synchrony is seeking a highly motivated Senior Business Analyst in Seattle to join the GRC Risk Management Systems team. This role is crucial for achieving organizational risk management goals through data-driven decision-making. The ideal candidate has a strong background...SuggestedWork at officeWork from home
- A prominent technology firm in Seattle is seeking a Governance, Risk, and Compliance (GRC) Analyst to enhance its data and insights solutions. The role emphasizes sustaining FedRAMP Moderate Authorization and requires strong organizational skills and collaboration across...Suggested
$145.19k - $203.26k
Senior Cybersecurity GRC Analyst page is loaded## Senior Cybersecurity GRC Analystlocations: Greater Seattle Areatime type: Full timeposted on: Posted Todayjob requisition id: R63425Application close date:Applications will be accepted on an ongoing basis until the requisition...SuggestedPermanent employmentTemporary workLocal areaImmediate start- Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) Company: The Boeing Company Boeing currently has an opening for a Governance, Risk, & Compliance (GRC) Analyst (Senior or Lead) that will play a key role in developing and maintaining enterprise policies, standards...SuggestedPermanent employmentFull timeWork experience placementRelocationVisa sponsorshipWork visaRelocation packageFlexible hoursShift work
$29.25 - $36.5 per hour
Job Description Job Description Sono Bello is America's top cosmetic surgery specialist, with 185+ board-certified surgeons who have performed over 300,000 laser liposuction and body contouring procedures. A career at Sono Bello means being part of a dynamic and high...Hourly payFull timeWork at officeRemote work- Job Description Job Description Company Overview At Allied Residential, we don't just manage properties-we build communities. Since 1987, we've been creating vibrant living spaces across the Puget Sound and beyond. Our team thrives in a culture of growth, integrity...Interim roleWork at officeRemote work
- ...Job Description Job Description JOB DESCRIPTION: The Compliance Analyst works within a team environment under the direction of the Compliance Director, with a primary focus on ensuring full regulatory compliance across Indigo's affordable housing portfolio. This...Full timeInterim roleRemote workWork from homeHome office
$77k - $202k
PwC is seeking a Senior Associate in Cybersecurity & Privacy in Seattle. The role involves designing cybersecurity programs, mentoring team members, and building client relationships. Candidates should possess a Bachelor's Degree and have at least 3 years of experience ...$104k - $113.6k
Job Description Job Description Status: Full-time, employee Job function: Program Coordinator/Customer Service/Compliance Relevant work experience: 6 years experience working with customers/members Career level: Experienced Office location: Kirkland, ...Full timeTemporary workWork experience placementWork at officeWork from home$120k - $165k
True Anomaly is looking for a driven Enterprise Risk Analyst in Long Beach, CA, to enhance its risk management capabilities. This role involves executing risk assessments, managing vendor risks, and collaborating across teams to ensure compliance with standards like NIST...$77k - $202k
Specialty/Competency: Cybersecurity & Privacy Industry/Sector: Not Applicable Time Type: Full time Travel Requirements: Up to 60% At PwC, our people in risk and compliance focus on maintaining regulatory compliance and managing risks for clients, providing advice, and...Full time- Job Description Job Description Dairy Regulatory Compliance Specialist Bellevue, WA 98005 This role will be 40 hours per week. Monday through Friday The hours for this role are 7am - 3:30pm. Candidate must be open to work swing and grave shifts when necessary...Full timeWork at officeLocal areaMonday to FridayAfternoon shift
$120k - $175k
Description and Requirements General Description: The USI Insurance Services Personal Risk Practice provides comprehensive risk management and insurance consultation to high net worth individuals and family offices with complex financial and insurance needs. The ...Temporary workWork at officeLocal areaFlexible hours- Senior Risk Solutions Consultant For more than 170 years, The Hanover has been committed to delivering on our promises and being there when it matters the most. We live our values every day, demonstrating we CARE through our values, sustainability initiatives and inclusive...Full timeTemporary workLocal areaRemote workWork from homeFlexible hours
$85.81k - $112.6k
Salary : $85,813.00 - $112,595.00 Annually Location : 800 Oakesdale Ave SW, Renton, WA Job Type: Full-Time Job Number: 260324001 Department: Administration Program: Workers' Compensation Trust & Unemployment Pool Opening Date: 03/25/2026 FLSA...Full timeWork at officeLocal area$70k - $110k
...team member has a big role to play. Come join our growing team in our brand new Seattle office! The role We're adding a Risk Analyst to our team to help us build and scale our user-facing products. You'll work closely with product, machine learning, and business...Work at office$88.92k - $159.6k
...TikTok Shop - Regional Risk Analyst Location: Seattle Employment Type: Regular Job Code: A121649A Responsibilities: About the Team: The TikTok E-commerce Governance and Experience team ensures our marketplace remains safe, trustworthy, and customer-centric...Temporary workLocal area- Head of Global Regulatory Advertising and Promotion About the Company Industry shaping biopharmaceutical company Industry Biotechnology Type Public Company About the Role The Company is seeking a Head of Global Regulatory Advertising and Promotion...
$80k - $120k
...Onboarding & Risk Analyst - Currency Management Mesirow is an independent, employee-owned financial services firm founded in 1937. Headquartered in Chicago, with offices across the country, Mesirow serves clients through capabilities spanning Private Capital & Currency...$119k - $193k
...About This Role: Forrester is currently looking for a Senior Analyst to conduct research and deliver strategic advice for risk management... ...in compliance management, internal or external audit, and GRC platforms is strongly desired. The successful candidate researches...For contractors$110k - $140k
Job Description Job Description Glacier Fish Company is dedicated to producing the highest quality frozen-at-sea groundfish products in the world. We accomplish our mission with a day-in-and-day-out commitment to quality, safety, consistent attention to detail and ...Casual workRemote workFlexible hours- Third-Party Risk Management Program Officer Heritage Bank has an exciting opportunity to join our organization! We are seeking a Third-Party Risk Management Program Officer to join our Risk and Compliance team. The third-party risk management program officer is responsible...Full timeWork experience placement
$165k - $220k
Bausch + Lomb (NYSE/TSX: BLCO) is a leading global eye health company dedicated to protecting and enhancing the gift of sight for millions of people around the worldfrom the moment of birth through every phase of life. Our mission is simple, yet powerful: helping you see...Temporary workWork visa$91k
Who We Are FTI Consulting is the leading global expert firm for organizations facing crisis and transformation. We work with many of the world's top multinational corporations, law firms, banks and private equity firms on their most important issues to deliver impact...Full time$70k - $110k
Personal Risk Specialist The Personal Risk Specialist is an outside sales position focused on serving the unique insurance needs of affluent/high net worth clients. In addition to cross-selling, as a primary focus for business development, this role is also expected...Base plus commissionTemporary workWork at officeLocal areaFlexible hoursAfternoon shift$34 - $38 per hour
Risk And Safety Specialist Climate Pledge Arena's (CPA) Risk and Safety Specialist is responsible for developing, implementing, and maintaining an effective and innovative safety program, with the objective of securing safety, minimizing risk, and protecting the arena...Hourly payFull timeTemporary workWork at officeLocal areaFlexible hours- General Description The Personal Risk Specialist is an outside sales position focused on serving the unique insurance needs of affluent/high net worth clients. In addition to cross‑selling, the primary focus for business development is to establish additional sources of...Base plus commissionWork at officeAfternoon shift
$87.8k - $160.9k
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. At EY, you’ll have the chance...Contract workSummer holidayWork at officeFlexible hours- A leading financial technology firm is seeking a Staff Fraud Risk Analyst in Seattle, WA. The successful candidate will have a strong background in Fraud Analytics with over 5 years of experience, particularly in managing risk-decisioning strategies. Proficiency in SQL...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!


