Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance & Risk Analyst

ZS

ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you'll work side-by-side with a powerful collective of thinkers and experts shaping life-changing solutions for patients, caregivers and consumers, worldwide. ZSers drive impact by bringing a client-first mentality to each and every engagement. We partner collaboratively with our clients to develop custom solutions and technology products that create value and deliver company results across critical areas of their business. Bring your curiosity for learning, bold ideas, courage and passion to drive life-changing impact to ZS.

What you'll do: Governance & Risk Analyst in the Enterprise will...

The GRC Analyst will support the organization's Governance, Risk & Compliance function with a primary focus on Third-Party Risk Management (TPRM) and Vendor Risk Assessments (VRA). This role is responsible for conducting end-to-end risk assessments of third-party vendors, identifying security, privacy, and compliance risks, and working with internal stakeholders and vendors to ensure timely risk remediation and closure.

The role requires strong analytical skills, stakeholder engagement, and familiarity with information security, privacy, and regulatory frameworks.

Key Responsibilities

Third-Party Risk Management (TPRM) & Vendor Risk Assessments (VRA)
  • Conduct end-to-end Vendor Risk Assessments (VRA) including initiation, analysis, follow-ups, and final reporting
  • Review vendor security questionnaires, supporting evidence, and contractual artifacts to assess information security, privacy, and compliance risks
  • Identify inherent and residual risks across domains such as not limited only to below:
    • Information Security
    • Data Privacy
    • Access Controls
    • Business Continuity & Disaster Recovery
    • Regulatory & Compliance requirements
  • Clearly document assessment findings, risk ratings, and remediation recommendations in risk management tools and trackers
  • Coordinate with vendors to obtain clarifications, remediation plans, and follow-up evidence for identified gaps
Stakeholder Collaboration & Governance
  • Partner with internal teams including Procurement, Legal, Information Security, Privacy, and Business Owners to support third-party onboarding and risk decisions
  • Escalate high-risk findings and delays to GRC leadership with clear summaries and recommended actions
  • Support second-level reviews and management reporting for VRAs and TPRM activities
Risk Reporting & Continuous Improvement
  • Maintain accurate risk registers, assessment trackers, and dashboards for VRA/TPRM
  • Contribute to improving TPRM frameworks, workflows, and reporting to enhance stakeholder value
  • Assist in developing and updating SOPs, templates, and guidance documents related to vendor risk management
Audit & Compliance Support
  • Support internal and external audits by providing VRA documentation, evidence, and risk summaries
  • Assist with broader GRC initiatives such as policy reviews, opportunity security risk assessments, and compliance assessments as needed
What you'll bring:
  • Bachelor's degree in computer science, Information Systems, or a related field. A relevant master's degree is a plus.
  • Proven experience of at least 2 years or more in IT risk management, governance, or a related field.
  • Strong understanding of IT risk assessment methodologies, frameworks, and industry best practices.
  • Assess vendor security posture against frameworks such as ISO 27001 / 27002, NIST, and SOC 2.
  • Familiarity with regulatory requirements (e.g., GDPR, HIPAA, PCI DSS) and their impact on IT risk management.
  • Knowledge of vendor risk management principles and practices.
  • Experience in performing process, Contract review and project security risk assessments.
  • Proficiency in using risk assessment tools and technologies.
  • Excellent analytical and problem-solving skills.
  • Strong written and verbal communication skills, with the ability to effectively communicate technical concepts to both technical and non-technical audiences.
  • Strong organizational and time management skills, with the ability to manage multiple priorities and deadlines.
  • Relevant certification such as ISO 27001:2022 LA is preferred.
  • Fluency in English
  • Client-first mentality
  • Intense work ethic
  • Collaborative spirit and problem-solving approach
How you'll grow:
  • Cross-functional skills development & custom learning pathways
  • Milestone training programs aligned to career progression opportunities
  • Internal mobility paths that empower growth via s-curves, individual contribution and role expansions

Perks & Benefits:

At ZS, your growth matters. We offer a comprehensive total rewards package that supports your health and well-being, financial future, time away, and professional development. With robust skills-building programs, multiple career progression paths, internal mobility, and a deeply collaborative culture, you'll have the opportunity to do meaningful work, expand your capabilities, and thrive as part of a global community. For details on total rewards in United States, visit ZS US office locations | Where we work | ZS.


Hybrid working model:

We are committed to giving our employees a flexible and connected way of working. A flexible and connected ZS allows us to combine work from home and on-site presence at clients/ZS offices for the majority of our week. The magic of ZS culture and innovation thrives in both planned and spontaneous face-to-face connections.

Travel:

Travel is a requirement at ZS for client facing ZSers; business needs of your project and client are the priority. While some projects may be local, all client-facing ZSers should be prepared to travel as needed. Travel provides opportunities to strengthen client relationships, gain diverse experiences, and enhance professional growth by working in different environments and cultures.

Considering applying?

At ZS, we honor the visible and invisible elements of our identities, personal experiences, and belief systems-the ones that comprise us as individuals, shape who we are, and make us unique. We believe your personal interests, identities, and desire to learn are integral to your success here. We are committed to building a team that reflects a broad variety of backgrounds, perspectives, and experiences. Learn more about our inclusion and belonging efforts and the networks ZS supports to assist our ZSers in cultivating community spaces and obtaining the resources they need to thrive.

If you're eager to grow, contribute, and bring your unique self to our work, we encourage you to apply.

ZS is an equal opportunity employer and is committed to providing equal employment and advancement opportunities without regard to any class protected by applicable law.

To complete your application:
Candidates must possess or be able to obtain work authorization for their intended country of employment. An on-line application, including a full set of transcripts (official or unofficial), is required to be considered.

NO AGENCY CALLS, PLEASE.

Find Out More At:
Vacancy posted 3 hours ago
Similar jobs that could be interesting for youBased on the Governance & Risk Analyst in Chicago, IL vacancy
  •  ...Governance & Risk Analyst In The Enterprise ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human... 
    Suggested
    Contract work
    Local area
    Work from home
    Worldwide
    Flexible hours

    ZS Associates

    Chicago, IL
    4 hours ago
  •  ...GRC Analyst The GRC Analyst is a member of the IT Security team and works closely with other...  ...in onsite and virtual audits and risk remediation. Support the GRC program through...  ...and work within the information security governance process to define control recommendations... 
    Suggested

    1872 Consulting

    Chicago, IL
    4 hours ago
  •  ...and execution of an IT compliance program. Support compliance initiatives and monitoring its effectiveness. Coordinate and/or perform risk assessments and audit processes against a wide variety of security and privacy regulatory and compliance frameworks for several... 
    Suggested

    Samprasoft

    Chicago, IL
    2 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We partner with the world's leading AI research labs to build smarter, safer AI systems - and we need practitioners who know how compliance and risk management actually work in the real world... 
    Suggested
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Worldwide
    Flexible hours

    Alignerr

    Chicago, IL
    2 days ago
  •  ...Senior Analyst, Cybersecurity Governance, Risk and Compliance, Chicago, IL The Senior Analyst, Cybersecurity Governance Risk & Compliance will administer the completion of compliance-related client requests to assess security policies and procedures. The Senior Analyst... 
    Suggested
    Work experience placement

    Next Step Systems LTD

    Chicago, IL
    4 days ago
  •  ...company's mission, objectives, and reputation. As the Security Risk Management Lead, you will streamline, automate, and scale security...  ...units. Your responsibilities include two areas of focus: Government Compliance - Oversee and drive CDW's compliance strategy covering... 
    Local area

    CDW

    Chicago, IL
    4 hours ago
  • $75k - $90k

     ...and operations that keep CIBC running smoothly. As part of the Governance & Oversight (G&O) Team – A First Line Control group within the...  ...etc. to build reporting for senior leadership around governance, risk, & controls. Stakeholder Engagement- Partner with internal... 
    Remote work
    1 day per week

    CIBC

    Chicago, IL
    2 days ago
  •  ...GRC Analyst – Information Governance Focus The GRC Analyst focuses on information governance, compliance assessments, DLP, records/data retention...  ...file management processes. Identify issues and potential risks. Analyze potential benefits and risks of alternatives;... 

    1872 Consulting

    Chicago, IL
    3 days ago
  • $74.2k - $84.7k

     ...Anti-Money Laundering (AML) Global Payment Network (GPN) Risk Specialist The Anti-Money Laundering (AML) Global Payment Network (GPN) Strategy, Risk Oversight and Governance (STRONG) team is seeking an Associate who will work closely with members across the AML and... 
    Full time
    Part time
    Local area

    Capital One

    Chicago, IL
    9 days ago
  •  ...Affirm is seeking a Compliance Analyst II to enhance compliance governance and oversight. This role involves challenging operations to mitigate risks while ensuring regulatory compliance. Responsibilities include analyzing consumer complaints, working cross-functionally... 
    Remote work
    Flexible hours

    Affirm

    Chicago, IL
    4 days ago
  •  ...Job Title: Sr. Cybersecurity Governance, Risk, and Compliance (GRC) Associate Location: Onsite 4-5x/week in Chicago, IL or Austin, TX Job Type: Direct Hire Bottom Line / In a Nutshell: Risk Management: Experience performing annual risk assessments... 
    Extra income

    RED SKY Consulting

    Chicago, IL
    1 day ago
  • $96.6k - $130k

     ...Sr. Cybersecurity Governance, Risk, and Compliance (GRC) Associate Join a team that values your ambition and empowers your growth At Corient, we help high- and ultra-high-net-worth individuals and families to enjoy a full life, while enabling them to preserve their... 
    Permanent employment
    Temporary work
    Work at office
    Flexible hours

    Corient Capital Partners

    Chicago, IL
    11 days ago
  • $74k - $138k

     ...Oversees, monitors, and reports on information and technology risks for a designated portfolio. Develops and monitors the risk management and governance framework and practices leveraged across BMO to manage information and technology risks. Develops and monitors adherence... 
    Contract work
    Part time
    Local area

    BMO Financial Group

    Chicago, IL
    5 days ago
  •  ...Senior Security Analyst – GRC The Senior Security Analyst – GRC (Governance, Risk and Compliance) is a member of the IT Security team and works closely with other IT teams and business stakeholders in the development and automation of core functions supporting the... 

    1872 Consulting

    Chicago, IL
    1 day ago
  • $80k - $90k

    Summary: The Chargeback and Abuse Risk Analyst is an independent decision-maker and subject matter expert on card disputes and payment...  ...a performance-based bonus as provided by the plan terms and governing documents. Equal Opportunity Employer Topstep is an Equal Opportunity... 
    Full time
    Work experience placement
    Local area
    Remote work

    Topstep

    Chicago, IL
    3 days ago
  • $86k - $101k

     ...Description Sponsorship Oversight Network Compliance Analyst Citizens Bank sponsors payment processors and fintech partners into...  ...Citizens from regulatory, operational, financial, and reputational risk by executing proactive payment network compliance oversight,... 
    Local area
    Visa sponsorship
    Work visa
    Flexible hours

    Citizens

    Chicago, IL
    2 days ago
  • $27.69 - $46.15 per hour

     ...financial ecosystem, clearing and guaranteeing every matched transaction to ensure market integrity. As a Clearing Deliveries & Risk Analyst, you will step into a pivotal role, monitoring the financial performance of clearing members and safeguarding the final settlement... 
    Work experience placement
    Work at office
    Worldwide
    Flexible hours

    CME Group

    Chicago, IL
    5 hours ago
  • $80k - $120k

     ...Onboarding & Risk Analyst - Currency Management Mesirow is an independent, employee-owned financial services firm founded in 1937. Headquartered in Chicago, with offices across the country, Mesirow serves clients through capabilities spanning Private Capital & Currency... 

    Mesirow Financial

    Chicago, IL
    5 days ago
  • Third Party Risk Analyst, Sr Job Locations US-IN-Evansville | US-MN-Lake Elmo | US-IL-Chicago Category/Function Risk/Security Position Type Regular Full-Time Requisition ID 2026-19267 Workplace Type On Site... 
    Full time
    Work at office

    Old National Bank

    Chicago, IL
    7 hours ago
  • $95k - $150k

     ...foundation and driving our consistent success in the industry. Department: Risk Management Reports to Director of Risk About the Role: We are seeking a dynamic on-site Risk Analyst to join our proprietary trading firm. This role is centered on real-... 
    Work at office

    Geneva Trading

    Chicago, IL
    3 hours ago
  •  ...entrepreneurial spirit of a startup, we're hiring. SageSure, a leader in catastrophe-exposed property insurance, is seeking a Catastrophe Risk Analyst. In this role, you'll play a critical part in advancing the scientific, statistical, and model-based understanding of... 
    Live in

    SageSure

    Chicago, IL
    4 days ago
  • $75.33k - $125.5k

     ...Chicago is one of 11 Federal Home Loan Banks, government sponsored in support of mortgage lending...  ...compliance. You will perform income at risk modeling and analysis, limits monitoring...  ...designation of CFA (Chartered Financial Analyst) or FRM (Financial Risk Manager) is a plus... 
    Work at office
    Remote work

    FHLBank Chicago

    Chicago, IL
    5 days ago
  • $70.28k - $120.48k

     ...hiring process. Associated Bank conducts a thorough background check on all new hires. Role Summary The Senior First Line Risk Analyst serves as a key risk program leader and subject matter expert supporting fraud risk management across payment channels and... 

    Associated Banc-Corp

    Chicago, IL
    7 hours ago
  •  ...spirit of a startup, we're hiring. SageSure, a leader in catastrophe-exposed property insurance, is seeking a Senior Catastrophe Risk Analyst. In this role, you'll play a critical part in advancing the scientific, statistical, and model-based understanding of... 
    Live in

    SageSure

    Chicago, IL
    5 days ago
  •  ...Director of Cybersecurity and Privacy Risk Advisor About the Company Prestigious international law firm Industry...  ...Advisor to spearhead the advancement of its Information Security Governance and Risk functions. The successful candidate will be responsible... 
    Work experience placement

    Confidential

    Chicago, IL
    3 days ago
  • $75.33k - $125.5k

     ...1932, FHLBank Chicago is one of 11 Federal Home Loan Banks, government sponsored in support of mortgage lending and community investment...  ...needed throughout the year. What you'll do The Model Risk Analyst (Analyst) within the Model Risk Management Group (MRM) is... 
    Work experience placement
    Work at office
    Remote work

    Federal Home Loan Bank of Chicago

    Chicago, IL
    3 days ago
  • $115k

     ...divh2Risk Management Analyst/h2pCalamos Advisors LLC has an opening for Risk Management Analyst in Chicago, Illinois. Develop and maintain robust quantitative models and methodologies to measure and analyze various types of risks, including market risk, credit risk, liquidity... 

    Calamos Asset Management

    Chicago, IL
    1 day ago
  •  ...Job Description Insight Global is seeking a Senior TPM Analyst to join a client in the regulatory technology space. This client is expanding...  ...their offerings into the insurance industry and are seeking a risk and compliance subject matter expert to guide their product... 
    Contract work

    Insight Global

    Hinsdale, IL
    4 days ago
  • $107.2k - $160.8k

     ...Job Description Summary The Lead Risk Specialist/Analyst is responsible for independently underwriting and managing credit risk for lease...  ...restructures, amendments, or credit escalations as needed Governance, Policy & Collaboration Ensure underwriting and... 
    Visa sponsorship
    Work visa
    Relocation package

    GE Healthcare

    Chicago, IL
    5 days ago
  • $128k - $150k

     ...high, and so are the rewards. Brokerage Risk, Strategy & Execution empowers Robinhood...  ...embedding supervision, risk intelligence, and governance directly into products, operational...  ...decision-making. As Senior Technical Risk Analyst, you will be responsible for executing... 
    Work at office
    Flexible hours
    Shift work
    3 days per week

    Robinhood

    Chicago, IL
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance & Risk Analyst. Be the first to apply!