Information Governance Risk and Compliance Analyst
$110k - $125kFried, Frank, Harris, Shriver & Jacobson LLP
At Fried Frank, we’re a community of 800 lawyers and 500 business services professionals across New York, Washington, DC, London, Frankfurt, and Brussels. We advise leading corporations, investment funds, and financial institutions on high-stakes M&A, securities, regulatory matters, real estate, and litigation. Our culture is grounded in our core values — excellence, integrity and collaboration — and is designed to foster continuous learning, meaningful mentorship, and lasting professional growth. We are firmly committed to pro bono service and social justice, building on a proud legacy in civil rights. Our inclusive talent strategy is a core part of our broader talent management efforts and we remain steadfast in fostering a workplace where everyone has the opportunity to grow, thrive, and become their best professional and personal selves. Our business services professionals are integral to the firm’s success, driving innovation, operational excellence and exceptional client service across all areas of the firm. We offer competitive compensation and a comprehensive benefits package, including comprehensive medical coverage, retirement plans and health and wellness initiatives designed to support your personal and professional wellbeing. We welcome passionate, driven individuals to join us, and be part of a team where you’ll be supported, inspired and empowered to build an exceptional career.Position Summary:As an Information Governance (IG), Risk, and Compliance Analyst, you will test, evidence, and report on the controls behind the firm's IG, risk, compliance, and information security programs. You will run recurring control audits, build the queries and scripts that generate the evidence, and produce the artifacts relied upon in client audits and internal assurance work.Duties & Responsibilities:Information Governance:DevelopIG policies and procedures, and translate them into enforceable technical configurations and measurable controls.Maintain an auditable inventory of data assets across Microsoft 365 and other approved information repositories, capturing classification, ownership, location, and retention state.Risk Management:Contribute to enterprise-wide risk assessments, quantifying exposure from overprovisioned access, stale data, and sensitive data sprawl from platform reporting rather than self-attestation.Develop risk mitigation strategies and control requirements, and track findings and remediation to verified closure.Compliance:Support compliance with client contractual obligations (including outside counsel guidelines), regulations, and data protection laws by implementing and evidencing the corresponding controls.Serve as technical respondent for client audits, security questionnaires, and regulatory inquiries, mapping requests to implemented controls and assembling the evidence; familiarity with control frameworks (ISO, SOC 2, NIST) helps, though the emphasis is technical testing over certification work.Audit, Control Testing, and Evidence Collection:Plan and execute recurring control audits across Microsoft 365, Entra ID, Active Directory, and approved information repositories, and maintain the audit calendar, evidence library, and exception record.Collect evidence programmatically with PowerShell, Microsoft Graph, and KQL, querying audit trails across identity, mail, file, and endpoint platforms to show a control operated over a defined period.Perform entitlement reviews and access recertification covering nested group membership, privileged roles, service and shared accounts, dormant objects, and broadly permissioned repositories.Test control effectiveness rather than assuming it, validating classification and DLP detection, retention and disposition execution, and alerting coverage.Information Security:Oversee of the information security program, including periodic review of security tooling configuration against approved baselines and hardening against exfiltration and insider risk.Perform incident response and recovery tasks, including log review, containment and scoping queries, evidence preservation, and post-incident remediation tracking.Vendor and Third-Party Management:Assess third-party vendor risk in data handling, reviewing questionnaires, audit reports, and penetration test summaries against observable configuration.Collaborate with procurement and legal teams on contractual security, audit rights, and data handling requirements.Reporting and Communication:Communicate risk, compliance, and security findings to technical and non-technical stakeholders, and maintain recurring reporting on control testing and access review results.Education:Bachelor's degree in a relevant field; certifications in IT audit (e.g., CISA), Microsoft security and compliance administration (e.g., SC-400, SC-200), or in risk management are a plus.Experience:Mid-level position; 3-5 years of hands-on experience in IG, compliance, IT audit, or information security, including demonstrable work running control tests or access reviews.Skills & Abilities:Strong analytical, problem-solving, and communication skills, with working proficiency in PowerShell and KQL and experience querying platform audit logs.Practical familiarity with Microsoft 365, Entra ID, Active Directory, and permissions models across approved information repositories, plus audit logging on those platforms and the ability to collaborate cross-functionally.The actual salary offered will be based on a number of factors including but not limited to the qualifications of the applicant, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location in which the applicant lives and/or from which they will be performing the job.New York Salary Range$110,000—$125,000 USD
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're looking for experienced GRC professionals to help evaluate and... ...on experience in GRC, compliance, risk management, or information security ~ Solid familiarity with one or more major...SuggestedHourly payOngoing contractContract workFreelanceRemote workFlexible hours
$90k - $105k
...institutions, payroll providers, government agencies, and individual... ...? The Vestwell Corporate Information Technology team is looking... ...Information Security compliance analyst to be responsible for monitoring... ...? Manage cybersecurity risk processes, including risk registers...SuggestedContract workFor subcontractorWork at officeLocal area$120k - $160k
...and delighting sports fans globally. The Role The Information Security GRC Analyst III, Controls Assurance (Fanatics Corporate) sits at the center... ..., work through the grey areas, and take a practical, risk-based approach to compensating controls, tailored to how each...SuggestedTemporary work- A leading consulting firm is seeking a Compliance Analyst to join their team in New York. The role offers a hybrid schedule with four days in the office. You will support regulatory gap assessments, assist with project management in the derivatives market, evaluate internal...SuggestedWork at office
$80k - $130k
...drive better outcomes for clients. The Compliance Officer will work regularly with the CCO... ...compliance programs; help define and develop risk parameters, implement the programs, and... ...in regulatory examinations and prepare information and responses to various requests Help...SuggestedLocal areaWorldwideShift work- ...operate with honesty and clarity. We share information openly, the good and the bad, and... ...the Role Verse is looking for a Senior Compliance Associate to independently own the ongoing... ...scheduled visit Escalate urgent or high‑risk findings promptly to compliance leadership...Work at officeMonday to Friday
- Senior GRC Analyst job at Quantexa. New York, NY. What... ...experience in both US Government and non-government security and compliance, applying deep knowledge... ...of our Governance, Risk, and Compliance (GRC) function... ...3 controls for federal information systems and NIST SP 800...Contract workTemporary workWork experience placementImmediate start
$90k - $200k
...American Investigations, Diligence and Compliance practice is seeking a Senior Manager based... ...(client) investigations, insider risk compliance assessments, consulting projects... ...research where necessary. Ability to lead information gathering and investigative interviews...Temporary workFlexible hours- ...Private Markets. You will support day-to-day administration, governance coordination for a portfolio of U.S. entities, and assist the... ...with Europe and Asia teams ensures consistent execution and information flow. You will coordinate with external corporate secretarial...
$120k - $130k
This position supports the US CIB Corporate Compliance team in governance, compliance monitoring, regulatory tracking, and reporting activities.... ...to ensure accuracy, consistency, and timely delivery of information. Key Responsibilities Corporate Compliance Monitoring Support...Work at officeLocal area$70k - $120k
COMPLIANCE ANALYST - BROKER/DEALER WHAT IS THE OPPORTUNITY? The Compliance Analyst will be responsible for monitoring, oversight and independent... ...oversight, tracking and reporting of compliance program risks that includes an internal control structure, new products, training...Work at office$110k - $140k
The Compliance Officer will be instrumentally involved in overseeing... ...of interest and on information barriers. The CO will be reporting... ...conflicts-related matters and governance decisions Drive remediation... ...senior management on conflicts risk and control effectiveness...Local areaFlexible hours$125k - $195k
...technology-powered services. For more information visit ( Purpose of Role: Marex is recruiting for a Surveillance Compliance officer to join the team our at our New York... ...and procedures to minimize non-compliance risks. Compliance efforts are instrumental in...Full timeWork at officeImmediate start$130k - $160k
...of Regulatory and Corporate Compliance within the New York Branch Compliance... ..., identifying conflicts or risks Monitor compliance... ...Chief Compliance Officer Governance Area oversees compliance with... ...review the dedicated Privacy Information Notic e for more details....Local area$160k - $180k
Department: ComplianceDivision: Risk & Compliance DivisionTitle: Senior Compliance Manager and Privacy Officer Job SummaryProvide advice and... ....Ability to quickly assimilate sizable amounts of information relating to complex issues, maintain professionalism, diplomacy...Local area$90k - $110k
...owning the systems, records, and recurring compliance workflows that keep the department... ...workflow tracking), corporate compliance and governance (entity management and licensing, board... ...to handle confidential and privileged information with discretion and sound judgment....Hourly payContract workFor contractorsApprenticeshipFor subcontractorWork at officeLocal areaRemote workFlexible hours3 days per week$310k - $420k
...level/Senior) Practice Area: ~ Global Data Governance, Incident Response & Information Security Regulatory Compliance Location: ~ Washington, D.C., New York,... ...Legal 500, serving as the vanguard for digital risk management. The group is comprised of an...Full timeFixed term contractFlexible hours$150k - $185k
...and technology-powered services. For more information visit ( Purpose of Role: Marex is a seeking a Broker-Dealer Compliance Advisor (focusing on Equities and Options)... ...regulatory requirements, regulatory and firm risk, and industry best practices. Marex has...Full timeImmediate start$145k - $185k
...Job Description Job Description Job Summary Risk & Compliance Analyst Initio Capital Full-time, Part-time, Contract, Internship,... ...roles. Actual openings vary depending on employer needs. For more information on the Career Launch AI Talent Network, visit:...Full timeContract workTemporary workPart timeCasual workInternship$70k - $150k
...American Investigations, Diligence and Compliance - Specialist practice is seeking an Associate... ...identification of evidence, performing information gathering and investigative interviews,... ...internal controls, performing insider risk compliance assessments, managing projects...Temporary workInterim roleFlexible hours$120k - $132k
...opportunities for ACA’s leading market Regulatory Compliance business unit. We are looking for... ...About ACA: ACA Group is the leading governance, risk, and compliance (GRC) advisor in... ...using, storing, sharing or transmitting information with or through ACA devices or systems...Work experience placementSummer workFlexible hours$140k - $190k
Security, Risk and Compliance Consultant New York, New York, United States WHO WE LOOK FOR An... ...professionals in the following areas: Compliance Information Security Data Privacy The ideal... ...or projects with military or federal government agencies in Risk, Compliance or...Permanent employment$80k
...scale with confidence. We’re hiring a Compliance Ops Analyst who thrives in a fast-moving startup... ...(business model, funds flow, AML risk, adverse media, review cadence) Qualifications... ...and ability to work through complex information Ability to manage multiple cases...- ...Global Payments Financial Crimes Compliance (FCC) team in support of our... ...on anti-money laundering risks and regulatory obligations. You... ....- Participate in internal governance forums and provide compliance... ...control evidence as needed.- Stay informed on global AML regulatory...
$85k - $145k
...COMPLIANCE SPECIALIST SENIOR WEALTH MANAGEMENT WHAT IS THE OPPORTUNITY? The Compliance Specialist establishes and implements an effective... ...or compliance operations Minimum 5 years of experience with risk management and/or Compliance policies and procedures...Remote work- ...is running a confidential search for a compliance analyst to join the legal and compliance... ...automated reporting. Applying the rules governing participation in securities offerings... ...stand up to regulator review. Running the information barrier process when people need to be...Internship
- ...Compliance Operations Associate Verse is looking for a Compliance Operations Associate to help keep our compliance program running smoothly... ..., not just before a scheduled visit Escalate urgent or high-risk findings promptly to compliance leadership Cross-...Work at officeMonday to Friday
$280k - $350k
...opportunity to support the International Risk & Compliance Director of an international law firm... ...engagement terms, and ethical screens/information barriers.Coordinate with the AML &... ...refreshers) on conflicts, engagement governance, ethical screens, confidentiality, information...Permanent employmentFull timeWork at officeLocal areaMonday to Friday$70k - $160k
Compliance AnalystAbout MillenniumMillennium is a global, diversified alternative investment... ...committed to collaboration, disciplined risk management and continuous learning. With... ...to collect required personal trading information and support trade monitoring in line with...$120k - $150k
...As a Senior GRC Analyst, you will be a cornerstone... ...framework. You will manage our compliance with key industry standards, lead risk assessments, oversee... .... As part of the Information Security department, this... .... RESPONSIBILITIES Governance & Policy Management...Permanent employmentFull timeContract workApprenticeshipWork experience placementInternshipRemote workFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Governance Risk and Compliance Analyst. Be the first to apply!
- transaction risk analyst New York, NY
- operational risk consultant New York, NY
- senior quantitative risk analyst New York, NY
- it risk analyst New York, NY
- risk analyst intern New York, NY
- risk officer New York, NY
- third party risk analyst New York, NY
- information risk analyst New York, NY
- risk consultant New York, NY
- operational risk specialist New York, NY


