GRC Analyst
Merci Technologies - Talent
Job Description
Job Description
About the Role
Merci Technologies is seeking a GRC Analyst to support the governance, risk, and compliance program for one of our enterprise clients. This role sits at the intersection of security, audit, and business operations, translating complex regulatory and framework requirements into practical controls that teams can actually implement and sustain. You will be the person who knows where the control gaps are, what the auditors are going to ask for, and how to keep the organization audit-ready year round rather than scrambling at assessment time.
The work is varied and visible. In a given month you might run a control assessment against NIST CSF, prepare evidence for a SOC 2 examination, complete a vendor risk review for a new SaaS purchase, and brief stakeholders on the status of open findings. You will maintain the policy library, track risk to closure, and act as a trusted advisor to engineering and business teams who need to understand what compliance requires of them. This is a strong fit for someone who is organized, detail-driven, and comfortable holding teams accountable to commitments. This is a fully remote position open to Contract or Full-Time candidates.
Key Responsibilities
- Conduct control assessments and gap analyses against frameworks including NIST CSF, NIST 800-53, ISO 27001, SOC 2, and CMMC
- Plan and support internal and third-party audits, including scoping, evidence collection, and walkthroughs
- Track audit and assessment findings to remediation and closure, escalating risks where needed
- Develop, maintain, and version-control security policies, standards, and procedures
- Perform vendor and third-party risk assessments and document risk acceptance decisions
- Build and maintain the risk register and report risk posture to leadership and stakeholders
- Support regulatory, customer, and compliance reporting requests
- Help operationalize new framework or regulatory requirements as they emerge
Required Qualifications
- 3 to 5 years of experience in governance, risk, and compliance, IT audit, or information security
- Working knowledge of one or more frameworks: NIST CSF, NIST 800-53, ISO 27001, SOC 2, or CMMC
- Demonstrated experience supporting audit cycles and risk assessments end to end
- Ability to read a control requirement and translate it into clear, actionable guidance
- Strong documentation, organization, and stakeholder communication skills
Preferred Qualifications
- CISA, CRISC, ISO 27001 Lead Auditor, or CISSP certification
- Hands-on experience with GRC platforms such as Archer, ServiceNow GRC, or OneTrust
- Familiarity with defense, healthcare, or financial-services compliance requirements
- Experience with CMMC readiness and assessment preparation
What You Will Bring
You are the kind of person who reads the fine print and keeps the spreadsheet honest. You can push a remediation owner for an update without burning the relationship, and you can explain to a busy engineer why a control matters in language they care about. You treat compliance as a way to make the organization genuinely more secure, not just to pass an audit.
- ...A financial services provider in Atlanta seeks an Analyst for its Information Security GRC team. The role includes managing security metrics, maintaining policies, and handling regulatory inquiries. Ideal candidates have a degree in Information Security, experience in...Suggested
- ...The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) is a risk focused, highly analytical role that ensures all human and third‑party risk to Clayco is identified, quantified...SuggestedImmediate startFlexible hours
- Merci Technologies is seeking a GRC Analyst to support governance, risk, and compliance for an enterprise client. The role sits at the intersection of security, audit, and business operations, translating complex regulatory requirements into practical controls that teams...SuggestedRemote jobFull timeContract work
- A leading financial services firm based in Atlanta, Georgia, is seeking an Analyst, Information Security GRC. The role involves responsibilities in maintaining corporate security policies, producing security metrics, and conducting risk assessments. The ideal candidate...Suggested
- A leading financial services provider in Atlanta seeks an Analyst for Information Security GRC to contribute to their global cybersecurity program. This role will involve maintaining information security policies, producing reports, and ensuring regulatory compliance....Suggested
- ...collect evidence, and manage remediation across Legal, Regulatory, Internal Audit and other stakeholders. The role emphasizes scalable GRC processes and cross‑functional collaboration. In this position you will drive third‑party risk assessments, support SOC 2, PCI and...Remote job
- CRH is seeking a cybersecurity governance professional to drive risk assessment and security standards across its global operations. This position based in Atlanta offers a hybrid work schedule and significant engagement across divisions. The successful candidate will have...
- Georgia Tech Research Institute (GTRI) is seeking a GRC Cybersecurity Analyst in Atlanta, GA. This role is focused on risk management and compliance to protect sensitive information. Responsibilities include monitoring security incidents, conducting risk assessments, and...
- The Georgia Tech Research Institute in Atlanta, GA, is seeking a Cybersecurity Analyst to strengthen cybersecurity measures and ensure compliance with regulations. This professional will assess business policies, manage risks related to information assets, and implement...
$57 - $67 per hour
Apex Systems is hiring a Cybersecurity Analyst in Atlanta, GA. This role will focus on governance, risk management, and compliance, ensuring... ...'s degree and at least 5 years of progressive experience in GRC. Responsibilities include risk assessment and the development of...Hourly payContract work- ...UMB Bank is seeking an EFT Risk Analyst to monitor Risk for ACH and other payment channels. This crucial role will assist with risk programs and ensure adherence to UMB’s Risk appetite. The position features a hybrid work schedule and specific responsibilities related...
- ...management related to regulatory adoption or compliance changes Audit or certification readiness Familiarity or direct experience with GRC/Cybersecurity solutions, tools and technologies Control design or maturation for high-demand technical areas such as ERP, Identity...Permanent employmentWork experience placement
- Regions Bank is seeking an Enterprise Compliance and Operational Risk Analyst in Atlanta, GA. This position requires a Bachelor's degree and at least six years of experience in risk management or related fields, aiming to develop a strong risk culture across the organization...
- Rubicon Global Holdings LLC is seeking a Compliance Specialist in Atlanta, Georgia, responsible for vendor qualification and compliance verification management. This role collaborates with various teams to evaluate vendor risk and maintain compliance across regulatory and...
- Locations: Atlanta What You'll Do Performing financial and economic data experimentation and leveraging advanced data analytics to derive critical insights. Review capital markets, dissect complex data, and translate it into actionable strategies to help optimize credit...H1b
- In this role, you will serve as one point of contact for application access, ensure corporate business licenses are renewed timely, and work with Compliance team managers to update or create compliance trainings Your responsibilities include but may not be limited to Distribute...H1b
$54.22k - $79.02k
...This team is essential in ensuring customer ACHOrigination activity is processed according to UMB’s Risk appetite. As the EFT Risk Analyst , you will assist with the ongoing administration and support of multiple risk programs, processes, and audits that impact Bank Operations...Local areaRemote workMonday to FridayFlexible hours- Responsibilities Complete 20+ inbound calls daily, solving complex risk‑based financial & fraud questions for our payment processing merchants Review merchant cases to release funds held for fraud and financial concerns, collect balances owed, and assist with chargeback...Hourly payContract workWork experience placement
$95k - $110k
...Risk Analyst - Atlanta To Apply Now - email your resume to [email protected] Who: A growing auto finance company building out its credit risk team. What: Analyze and forecast repossessions, origination risks, servicing exposure, and overall credit performance...Work at office$100k
Senior Risk Management Professional - SOX Controls, Oversight & Advisory Location: Atlanta, GA Salary-$100k with benefits. Onsite and fulltime only Certifications in relevant areas are good to have, such as: CISA CPA CIA CRISC Role...Full time- ...ATLANTA HYBRID 3-4 days a week onsite. Risk Analyst/Project Controls Key Responsibilities: Develop, maintain, and update project risk registers in collaboration with project managers, engineers, and stakeholders. Facilitate risk identification...3 days per week
- ...Risk Analyst We are seeking a Risk Analyst for a contract position in a hybrid setting within the Southeastern U.S. The role involves supporting a Risk Management and Analytics organization focused on portfolio analytics, forecasting, predictive modeling, and strategic...Contract work
$81.9k - $143.4k
Risk Control Consultant Our not-so-secret sauce. Award-winning, inclusive, top workplace culture doesn't happen overnight. It's a result of hard work by extraordinary people. The industry's brightest talent drives our efforts to deliver purposeful work and meaningful...Minimum wageLocal areaNight shift- ...InComm Risk Analyst I US-GA-Atlanta Job ID: 2026-21050 # of Openings: 1 Category: Risk & Compliance InComm Payments Overview When you think of InComm Payments, think of Innovative Payments Technology. We were founded over 30 years ago and continue to be a pioneer in the...Contract workLocal area
$85k - $110k
...Risk and Compliance teams Qualifications 3+ years in risk, compliance, IT, security, or vendor risk management Experience with TPRM and GRC tools (like Archer, ServiceNow, OneTrust, Upguard) Experience supporting third‑party risk or audit processes preferred Familiarity...Temporary workWork at officeRemote workHome officeFlexible hours- Person selected for this role must have a primary residence in the State of Georgia. The person selected for this role will serve counties in the southern region of the state of Georgia: from Chattahoochee to Seminole County, as far east as Screven to Charlton County. ...Work at officeLocal areaRemote work
- The Fayette Chamber of Commerce is seeking an Enterprise Risk Testing Analyst. This role ensures a strong risk culture by managing programs that monitor compliance with laws and regulations, testing activities, and collaborating with stakeholders. The ideal candidate has...Full timeFlexible hours
- EY is seeking a Senior Manager for its Life Sciences Regulatory Submissions practice. This role is crucial in driving growth and establishing EY as a leader in Regulatory Compliance. You will lead client engagement teams, develop solutions, and manage relationships with...
- NCR Voyix is seeking an Executive Director of Corporate Compliance in Atlanta, Georgia. This role involves leading and enhancing the company’s compliance program, ensuring effectiveness across multi-jurisdictional environments. The ideal candidate will have significant ...
- Lead Program Specialist - Early Childhood Grants - Atlanta, Philadelphia, Washington D.C. The Early Childhood Specialist I provides grant management support and delivers customer service for Head Start, Early Head Start, and Early Head Start-Child Care Partnership grant...Contract workWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!

