GRC Analyst
$74.58k - $120kVersatrans Division Tyler Tech
GRC Analyst Apply Online Tyler Technologies is seeking a Governance, Risk, and Compliance (GRC) Analyst to support our Data & Insights (D&I) solutions within the Security team. This role offers a meaningful opportunity to own and evolve the compliance posture of Tyler's D&I cloud platform, with a primary focus on sustaining and strengthening our FedRAMP Moderate Authorization to Operate (ATO) in an evolving regulatory landscape. In this role, you will serve as a central driver of audit readiness, continuous monitoring, and compliance program execution, partnering closely with Security, Engineering, Infrastructure & Release (TIRE), Legal, Privacy, and external assessors. You will operate in a fast‑paced, results‑driven environment where strong coordination, documentation quality, and risk‑informed decision‑making are essential to delivering secure, compliant, and resilient cloud services. The D&I team serves as Tyler Technologies' central hub for data, reporting, analytics, and artificial intelligence capabilities. Our teams build and maintain the foundational services and solutions that enable data‑driven innovation across Tyler's product portfolio. We empower teams throughout the organization to incorporate advanced analytics, AI, and data‑driven features into their products, ultimately helping government agencies make better decisions and serve their communities more effectively. Team members contribute their expertise to reduce complexity, introduce innovative solutions, and advance Tyler's data‑driven future. Location Seattle, Washington | Remote Responsibilities Own FedRAMP Moderate authorization sustainment and audit readiness. Managing continuous monitoring (ConMon), POA&Ms, annual assessments, evidence quality, and overall ATO health. Lead readiness for evolving FedRAMP standards, including FedRAMP 20x. Tracking program changes, identifying compliance gaps, and coordinating documentation and process updates. Serve as the primary compliance program coordinator for the D&I Security team. Partnering across Security, Engineering, Infrastructure & Release (TIRE), Legal, Corporate Security and Privacy, and external assessors to deliver consistent, audit‑ready outcomes. Own FedRAMP change management and authorization boundary governance. Managing Security Impact Analyses (SIAs), Significant Change Requests and Notifications (SCRs/SCNs), authorization boundary documentation, and federal / Authorizing Official (AO) communications. Support risk‑based decision‑making. Documentation of control exceptions, risk acceptances, and compensating controls in alignment with FedRAMP and organizational governance. Coordinate external assurance activities, including SOC 2 Type II assessments. Managing auditor engagement, evidence collection, findings tracking, and alignment with existing FedRAMP/NIST controls. Maintain the system‑of‑record for compliance documentation and artifacts. Owning the System Security Plan (SSP), ConMon plan, control narratives, diagrams, and appendices to ensure accuracy, traceability, and defensibility. Drive multi‑framework compliance alignment across regulated environments. Supporting FedRAMP, CJIS, HIPAA, and GDPR through gap identification, baseline documentation, and evidence reuse. Plan and execute internal compliance assessments. Managing annual OWASP SAMM re‑assessments, periodic Cloud Security Assessments (AWS Well‑Architected), and internal CJIS audits to measure maturity and prevent compliance drift. Support D&I's cloud security and Tyler's security maturity initiatives. Managing applicable assessments and re‑assessments, and aligning outcomes with broader security and compliance goals. Continuously improve compliance processes and maturity. Reducing manual effort, improving evidence quality, and preparing the organization for increased automation and reporting expectations. Qualifications Strong organization and prioritization skills. Ability to manage continuous monitoring, POA&Ms, evidence collection, change tracking, and audit deliverables across overlapping timelines without losing accuracy. Clear, accurate written and verbal communication. Ability to document controls and evidence clearly and explain compliance requirements, risks, and decisions to engineers, auditors, customers, and non‑technical stakeholders. Collaborative, cross‑functional working style. Comfort partnering with Security, Engineering, Infrastructure, Legal, Privacy, and external assessors to drive consistent, audit‑ready outcomes. Detail‑oriented with a systems‑level perspective. Ability to track control requirements, dependencies, and boundary impacts while understanding how individual updates affect overall authorization health. Reliability and accountability. Consistently follows through on assigned work, maintains accurate records, meets deadlines, and communicates status, risks, or blockers early. Comfort working within structured frameworks and deadlines. Ability to operate effectively within FedRAMP, NIST, SOC 2, and similar frameworks, including audits, assessments, and recurring reporting cycles. Practical problem‑solving mindset. Able to identify gaps, inconsistencies, or risks in documentation or processes and work with others to resolve them pragmatically. Proactive learning and openness to feedback. Willingness to build expertise in FedRAMP, NIST, CJIS, HIPAA, GDPR, and regulatory requirements over time and incorporate feedback into work. Adaptability and resilience. Ability to adjust to changing regulatory guidance, audit findings, and shifting priorities while maintaining quality and professionalism. Stakeholder‑ and trust‑focused mindset. Appreciation for how strong compliance practices support customer trust, audit confidence, and long‑term platform credibility. Tools and Technologies FedRAMP Moderate compliance and authorization tooling, including System Security Plans (SSPs), control narratives, continuous monitoring (ConMon) deliverables, POA&Ms, SARs, and other annual assessment artifacts. Experience working within FedRAMP repositories and maintaining audit‑ready system‑of‑record documentation. NIST‑based security frameworks, particularly NIST SP 800‑53 Rev.5, with the ability to map controls to technical and procedural implementations, evaluate control inheritance, and support baseline tailoring across regulated environments. Experience supporting regulated compliance programs, including FedRAMP Moderate, CJIS, SOC2 TypeII, HIPAA, and GDPR, with an emphasis on overlap analysis, evidence reuse, and consistency across frameworks. AWS cloud environments (working knowledge), including IAM, CloudTrail, AWS Config, Security Hub, GuardDuty, and VPC networking concepts, sufficient to assess compliance impact, authorization boundary changes, and shared responsibility considerations (not hands‑on infrastructure ownership). Identity and access management concepts, including familiarity with NIST SP 800‑63, 800‑63A, 800‑63B, and 800‑63C; identity proofing, authentication assurance levels (IAL/AAL/FAL); federated identity models (SAML, OIDC, OAuth2.0); and privileged access management fundamentals. Security monitoring and audit evidence sources, including SIEM and centralized logging platforms (e.g., Sumo Logic or equivalent), with experience evaluating alerting, log retention, and evidence quality for continuous monitoring and audit support. Vulnerability management workflows, including familiarity with scanning tools (e.g., Nessus, AquaSec, Invicti, Qualys, or equivalent), risk rating methodologies, remediation tracking, and POA&M lifecycle management in compliance‑driven environments. Change management and security impact analysis processes, including Security Impact Analyses (SIAs), Significant Change Requests (SCRs/SCNs), authorization boundary documentation, and coordination of approval workflows with internal and external stakeholders. Secure development lifecycle (SDLC) and configuration management concepts, aligned with NIST SA, CM, and SI control families, with sufficient understanding to evaluate engineering practices, CI/CD security signals, and control effectiveness without acting as a primary implementer. Collaboration and documentation platforms, including Confluence and Jira for compliance tracking, evidence coordination, and audit workflows, and GitHub (or equivalent) for policy versioning, evidence references, and change traceability. Basic automation and reporting skills, including the use of spreadsheets, lightweight scripting, or GRC platform automation to improve evidence accuracy, reporting consistency, and delivery timelines. Ability to pass a federal background check and obtain and maintain CJIS clearance required. Other Bachelor's degree in Computer Science, Engineering, Mathematics, Information Systems, or a related field preferred. Valued Certifications: CISSP, CCSP, CRISC, or CISA. Cloud or identity‑focused certifications (e.g., AWS Security Specialty) are a plus. Equivalent experience in regulated, compliance‑driven environments is valued over specific credentials. Candidates with less experience directly applicable to this position will be considered. You belong here! Not everyone checks every single box, and we encourage you to apply. State‑Specific Salary Range Disclosure Requirements Salary will generally fall between $74,575 - $120,000 before adjustment for geographic differences. Recruiter can confirm if position is incentive eligible. Taking Care of You & Your Family Your health and well‑being are important to us. That's why we invest in our team members by offering competitive benefits to support their health and financial wellness. Learn more about how we care for our people. Equal Opportunity Statement Tyler is subject to regulations, guidelines, and/or client requirements relating to the qualifications of Tyler personnel performing certain client work. Because of the nature of this position, it is a requirement that the candidate can successfully pass a federal background check at the time an offer is extended and over the course of employment with Tyler. Tyler Technologies is proud to be an equal opportunity employer. All qualified applicants will receive consideration without regard to race, creed, gender, marital status, sexual orientation, citizenship status, color, religion, national origin, age, disability, protected veteran status, or any other status protected under local, state, or federal laws. If you require reasonable accommodation for any part of the application or hiring process due to a disability, please submit your request by emailing View email address on click.appcast.io or by calling View phone number on click.appcast.io. Please keep in mind these methods are reserved for individuals who require accommodation due to a disability. Apply Online Requisition Number: 2026-8554 #J-18808-Ljbffr Tyler Technologies
$140k - $165k
...while learning, having fun, and making a profound difference for the dreamers and builders in the world. We’re looking for a Senior GRC Analyst to serve as the primary architect for our expanding ISO ecosystem. As a Senior GRC Analyst at DigitalOcean, you will lead the...SuggestedLocal areaWorldwideFlexible hours$28 - $35 per hour
...weeks ago Seattle, WA $68,000.00-$98,220.00 2 weeks ago Seattle, WA $66,800.00-$142,800.00 2 weeks ago Technology Risk & Compliance Analyst (Cloud) Seattle, WA $80,000.00-$120,000.00 1 day ago Bellevue, WA $80,648.00-$160,729.00 1 month ago Seattle, WA $66,800.00-$142,80...SuggestedContract workInternship- Risk Consultant Puget Sound Workers' Compensation Trust and Unemployment Pool (PSWCT/UP) seeks an experienced Risk Consultant to lead workplace safety and pre-loss initiatives aimed at cultivating a best-practice risk management culture to promote health and workplace...SuggestedLocal area
$168.32k - $252.48k
...Risk Analyst TerraPower is a nuclear technology company based in Bellevue, Washington. At its core, the company is working to raise living standards globally through a more affordable, secure, and environmentally friendly form of nuclear energy along with innovations...SuggestedPermanent employmentTemporary workFor subcontractorRelocation package$144.45k - $152.48k
...1 week ago Associate Product Counsel, Strategic Growth and Compliance Seattle, WA $210,000.00 -$312,000.00 2 weeks ago Compliance Analyst, Regulatory Compliance, AWS Compliance & Security Assurance Chief Compliance and Operations Oversight Officer Seattle, WA $140,000....Suggested16 hoursFull timeWork at office3 days per week- 1 day ago Be among the first 25 applicants NextGen | GTA: A Kelly Telecom Company provided pay range This range is provided by NextGen | GTA: A Kelly Telecom Company. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base...Contract workWork experience placement
- Workforce Classification: Hybrid What you’ll do Set strategy and lead enterprise compliance. Lead the design, development, and implementation of an enterprise-wide program to monitor compliance with applicable legal and regulatory requirements, including services delivered...Work experience placement
$168.32k - $252.48k
...physical or mental disability, protected Veteran status, or any other characteristic protected by federal, state, or local law. Risk Analyst This role reports to the TerraPower Project Management Office under either the Enterprise Risk Management or Project Risk...Temporary workFor subcontractorLocal areaRelocation package$36.15 - $60.25 per hour
...Gesa Credit UnionRole Summary:The Experience Risk Management (ERM) Analyst supports the execution of the Credit Union’s Enterprise Risk... ...Microsoft Excel (data analysis), Word, and PowerPointFamiliarity with GRC tools or risk tracking systemsAbility to conduct risk...Contract work- ...Circle, located in Seattle, is seeking a Senior Analyst to join its Compliance Operations team. The successful candidate will focus on quality control and assurance within the compliance program, working collaboratively with various stakeholders. With a commitment to...Remote workFlexible hours
- Head of Compliance About the Company Innovative financial services company transforming capital markets infrastructure. Industry Financial Services Type Privately Held About the Role The Company is in search of a Head of Compliance to...
$110k - $140k
Glacier Fish Company is dedicated to producing the highest quality frozen-at-sea groundfish products in the world. We accomplish our mission with a day-in-and-day-out commitment to quality, safety, consistent attention to detail and an on-going concern for the stability...Casual workRemote workFlexible hours- Responsibilities Overall implementation and management of the company safety management system Maintain leading and lagging indicator metrics; conduct trend analysis and maintain year to year measurements on program effectiveness Maintain all Safety Documentation including...
- Plaid is looking for a Fraud and Abuse Operations Analyst to safeguard its platform against fraud events. The analyst will investigate incidents and collaborate with various teams to improve fraud mitigation strategies. Ideal candidates will have over 3 years of experience...
$29.37 - $41.12 per hour
Fraud Investigator II Salal Credit Union is seeking a Fraud Investigator II to play a vital role in safeguarding our members and organization from financial crime. In this impactful position, you'll dive deep into fraud investigations, uncover suspicious activity, and help...Hourly payLocal areaRemote workWork from home$78.32k - $128.16k
Elevance Health is looking for an Investigator II in Seattle, WA, responsible for investigating healthcare fraud and recovering corporate funds from fraudulent claims. This hybrid role requires in-office attendance 1 to 2 days per week, balancing collaboration with flexibility...Work at office2 days per week1 day per week- Chief Compliance Officer (CCO) About the Company Internationally renowned digital asset platform Industry Financial Services Type Privately Held About the Role The Company is in need of a Chief Compliance Officer to take on a pivotal ...
$70k - $110k
...team member has a big role to play. Come join our growing team in our brand new Seattle office! The role We’re adding a Risk Analyst to our team to help us build and scale our user-facing products. You'll work closely with product, machine learning, and business operations...Work at office$63k - $73k
Primary Purpose The Trade Compliance Specialist is responsible for ensuring that tactical trade compliance functions are executed efficiently and effectively. Key responsibilities include reviewing suppliers’ Free Trade Agreement documentation (e.g., USMCA certificates...$140k - $150k
Job Title: Sr. Manager, Safety & Compliance Department: Human Resources Reports To: Director, Human Resources FLSA: Exempt Compensation: $140,000 - $150,000 Benefit Eligible The Sr. Manager of Safety & Compliance leads a team of safety professionals at Specialized Pavement...Casual workWork at officeLocal areaAfternoon shiftEarly shift- Executive Director, Regulatory Affairs About the Company Esteemed company developing medicines for inflammatory & autoimmune diseases Industry Biotechnology Type Privately Held, VC-backed Founded 2018 Employees 51-200 Funding...
$62.2k - $103.2k
...Position International Trade Compliance Analyst (Level 2) / Principal International Trade Compliance Analyst (Level 3) – Plymouth, MN or Mesa, AZ. Report to Manager of International Trade Compliance (ITC) of Armament Systems Business Unit. Key Responsibilities Work with...$33.02 - $49.54 per hour
All Jobs Regulatory Compliance Specialist Full-time Description This position is fully remote and open to candidates currently residing in Washington, Idaho, Montana, or Oregon. Your Purpose The Regulatory Compliance Specialist is responsible for supporting the credit...Hourly payFull timeContract workWork at officeLocal areaRemote work- Responsibilities This position is responsible for the preparation of regulatory submissions required to market medical devices in both the U.S. and Europe, support of international product registrations and related regulatory affairs activities, including execution of ...Work at office
$39 - $44 per hour
...Compliance Specialist – Quality Control Analyst Location: remote | Duration: 03 Months | Pay Rate: $39–$44/hr (W2) Compliance selects former residential mortgage underwriters to staff its Quality Control department. Quality Control Auditors are responsible for conducting...Remote work$70k - $90k
CopperPoint has an exciting opportunity for a Compliance Specialist. In this role, you'll help develop and administer an effective regulatory compliance program that ensures adherence to state regulatory and statutory requirements. You'll research and resolve compliance...Hourly payTemporary workLocal areaFlexible hours$80.72k - $121.07k
Serves as a subject‑matter expert in quality assurance and regulatory support for clinical research at Seattle Children’s Research Institute. Guides and supports all clinical research team members in adhering to applicable federal regulations, state codes, institutional...Full timeLocal area$33.02 - $49.54 per hour
Hzcu is seeking a full-time Regulatory Compliance Specialist to support its compliance management system. This fully remote position is open to candidates residing in Washington, Idaho, Montana, or Oregon. The Specialist will ensure adherence to federal and state regulations...Hourly payFull timeRemote work- Chief Compliance Officer (CCO) About the Company Academic medical center seeking a Chief Compliance Officer. Industry Medical Practice Type Non Profit Employees 1-10 About the Role The Company is seeking a Chief Compliance Officer (CCO) to oversee...
- Head of Policy and Regulatory Affairs About the Company Innovative layer 1 blockchain technology company Industry Information Technology and Services Type Privately Held About the Role The Company is seeking a Head of Policy to play a pivotal role...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!


