Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior GRC Analyst

CRG - Triad

Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM)

Clayco is a full-service, turnkey real estate development, master planning, architecture, engineering, and construction firm that safely delivers clients across North America the highest quality solutions on time, on budget, and above and beyond expectations. With $8.1 billion in revenue for 2025, Clayco specializes in the "art and science of building," providing fast track, efficient solutions for mission critical, industrial, life sciences, power & energy, aviation, commercial, institutional, residential and sports & entertainment related building projects.

Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) is a Risk focused, highly analytical role that ensures all Human and Third-Party risk to Clayco is identified, quantified, documented, and treated to an acceptable level across the Clayco organization. This role will assume ownership of the Third-Party Risk Management (TPRM) process to gather details on the security practices and compliance levels for each third-party being considered or contracted for a solution or services to assess the potential for compromise due to a control gap or exploitable misconfiguration as well as non-compliance with legal and regulatory requirements. Additional contribution will be expected for internal assessments and 3rd Party audits to gather and submit discovery and transactional responses and artifacts. The Sr. GRC Analyst will also assume ownership of Human Risk Management (HRM) including the delivery of comprehensive security awareness education, the end-to-end execution of phishing simulation programs, and the technical maintenance and life-cycle management of security awareness platforms. Beyond simple training, the position focuses on Human Risk Management (HRM), using data-driven insights to identify high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change. Additional responsibilities will be assigned as deemed necessary. Any travel is usually planned in advance, but issues may arise which warrant immediate travel to one or more satellite locations.

The Specifics of the Role
  • Assumes operational ownership of the 3rd Party Vendor Risk Management program identifying, assessing, and mitigating risks associated with external vendors, suppliers, and service providers
  • Conducts due diligence on new and existing vendors by reviewing security questionnaires, SOC reports, compliance certifications, and other supporting attestations
  • Captures, analyzes, and recommends treatment, assignment, and tracking of identified issues
  • Collaborates with legal and stakeholder teams to ensure contracts include specific clauses for data protection, service-level agreements (SLAs), and AI governance
  • Documents and communicates all relevant findings and recommendations to stakeholders
  • Tracks, monitors, and reports on execution of remediation action plans and escalates inadequate responses or progress
  • Assumes ownership of the Security Awareness program determining appropriate topics, themes, scopes, and timing of cyber awareness communications, events, and content delivery
  • Conducts regular, simulated social engineering exercises to assess and improve employee recognition of real-world attacks
  • Develops engaging, simple materials—such as infographics, newsletters, and videos—that translate complex technical risks into layman's terms
  • Maintains Security Awareness training and simulation platforms to support content delivery and End User interaction, including support for any Client-side functionality (i.e., "Report Phish" button)
  • Plans, coordinates, and executes activities for Cybersecurity month
  • Partners with Employee Relations, Legal, and Marketing to ensure security messaging is integrated into the broader corporate culture
  • Tracks Key Risk Indicators (KRI's) such as actual phishing click-through rates, failed simulations, and missed training as well as Key Performance Indicators (KPIs) like suspicious email reporting, passed simulations, and successful training completion status to measure program effectiveness for leadership
Requirements
  • 6-8+ years' experience in Risk & Compliance Assessment, Audit & Reporting, or similar functions, preferably within the Information Security or Technology fields
  • 3-4+ years working specifically in Information Security roles involving Risk Analysis, Information System Security Assessment, and/or Security Awareness and Human Risk Management
  • Bachelor's degree in Information Technology or related field, or equivalent experience
  • Required Certifications: Certified in Risk & Information Systems Control (CRISC), SANS Security Awareness Professional (SSAP), and Certified Third-party Risk Professional Certification (CTPRP) (Current status, or obtained within 9 months of assuming role)
  • Strong experience leveraging auditing principles and methods to evaluate policies, processes, systems, and vendors to identify business risks and control gaps
  • Strong knowledge of Regulations, Frameworks, and Standards such as NIST 800-171/CSF/RMF, ISO27001, CIS Critical Security Controls, etc.
  • Strong, technical knowledge of modern Systems, Services, Cloud Applications/Platforms, Identity Services, and Data Storage/Handling and their areas of Risk and Threat exposure
  • Experience with administering, maintaining, and leveraging a Risk Register to track and communicate identified Risk and its required remediation
  • Knowledge of statistics, reporting and analytical tools to analyze and solve complex problems
  • Proficiency in necessary productivity tools (i.e., Microsoft Excel, PowerPoint, Word etc.) for analytics and presentations
  • Operate with strong integrity with ability to manage projects of a confidential nature
  • Ability to translate technical or abstract concepts into a narrative that is easily understood
  • Ability to thrive in fast-paced environment.

Some Things You Should Know .

  • No other builder can offer the collaborative design-build approach that Clayco does.
  • We work on creative, complex, award-winning, high-profile jobs.
  • The pace is fast!
  • This position is classified as a safety-sensitive role in accordance with applicable state and federal laws. Candidates selected for this position will be subject to a comprehensive background check, which includes mandatory drug testing.

Why Clayco?

  • 2025 Best Places to Work – St. Louis Business Journal, Los Angeles Business Journal, and Phoenix Business Journal.
  • 2025 ENR Top 400 – Top Data Center Contractor (Top 3).
  • 2025 ENR Top 100 Design-Build Firms – Design-Build Contractor (Top 5).
  • 2025 ENR Top 100 Green Contractors – Green Contractor (Top 3).

Benefits

  • Discretionary Annual Bonus: Subject to company and individual performance.
  • Comprehensive Benefits Package Including: Medical, dental and vision plans, 401k, generous PTO and paid company holidays, employee assistance program, flexible spending accounts, life insurance, disability coverage, learning & development programs and more!

Compensation

  • The salary range for this position considers a wide range of factors in making compensation decisions including but not limited to: Education, qualifications, skills, training, experience, certifications, internal equity, and location. Compensation decisions are dependent on the facts and circumstances of each case.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior GRC Analyst in Phoenix, AZ vacancy
  • $107k - $126k

    Choice Hotels is looking for a Governance, Risk & Compliance Analyst 3 to oversee risk assessments and compliance processes at their N....  ...The role requires a bachelor's degree, 5+ years of experience in GRC, and strong analytical and communication skills. You will collaborate... 
    Senior
    Work at office

    Choice Hotels

    Scottsdale, AZ
    1 day ago
  • Gilder Search Group is looking for a Sr. GRC Analyst to manage Third-Party & Human Risk while ensuring risks are identified and treated satisfactorily. The role requires 6-8 years in risk assessment, with a bachelor's degree and required certifications expected. You'll... 
    Senior
    Flexible hours

    Gilder Search Group

    Phoenix, AZ
    5 days ago
  • Axon is seeking a Senior Security Program Analyst to lead core corporate security programs focusing on Governance, Risk, and Compliance (GRC). In this role, you will have significant autonomy to coordinate activities that ensure security initiatives are executed effectively... 
    Senior

    Axon

    Scottsdale, AZ
    2 days ago
  •  ...Governance, Risk, and Compliance (GRC) Analyst We operate at the intersection of technology and law, in an industry that demands agility...  ...seeking an experienced Governance, Risk, and Compliance (GRC) Senior Analyst to join our InfoSec team. This role will be... 
    Suggested
    Full time
    Flexible hours

    Fulcrum Global Technologies

    Phoenix, AZ
    1 day ago
  •  ...Governance, Risk, and Compliance (GRC) Analyst Location: Phoenix, AZ (Hybrid – local candidates only) Position Type: Contract (4 months, contract-to-hire) Start Time: 8:00 AM – 5:00 PM (Day Shift) Education: Bachelor’s Degree required Security: Background... 
    Suggested
    Contract work
    Local area
    Visa sponsorship
    Day shift

    I3 INFOTEK INC

    Phoenix, AZ
    2 days ago
  • A governmental agency in Arizona is seeking a Governance, Risk, and Compliance Analyst. This hybrid position requires strong knowledge in NIST 800-53 and Risk Management Framework (RMF). The ideal candidate will perform risk assessments, manage audit documentation, and... 
    Full time
    Contract work

    S R INTERNATIONAL INC

    Phoenix, AZ
    2 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst We're looking for experienced GRC professionals to help build and evaluate AI systems that reason about security, compliance, and risk. At Alignerr, we partner with the world's leading AI research labs to create high-quality... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Phoenix, AZ
    5 days ago
  • A leading hotel franchisor is seeking a Governance, Risk & Compliance Analyst 3 in Scottsdale, AZ. This role involves conducting risk assessments, performing control testing, and maintaining governance documentation. Candidates should have 3-5 years of relevant experience... 

    Choice Hotels International, Inc.

    Scottsdale, AZ
    4 days ago
  • $107k - $126k

    A global hotel chain is seeking an experienced GRC Analyst 3 to support and execute their Governance, Risk & Compliance processes. The role involves conducting risk assessments, performing control testing, and maintaining governance documentation to ensure alignment with... 

    Choice Hotels International

    Scottsdale, AZ
    5 days ago
  • A top tax advisory firm is seeking a Senior Manager for R&D Tax Credits to work remotely. The role involves analyzing R&D tax credit claims, conducting research, and maintaining client relationships. Candidates should have over 4 years of experience in R&D tax credits,... 
    Senior
    Full time
    Remote work

    Strike Tax Advisory

    Scottsdale, AZ
    2 days ago
  • A leading supply chain management company is seeking a Senior Industry Principal to serve as a trusted C-suite advisor. This remote position requires expertise in supply chain orchestration and industry-specific knowledge. The ideal candidate should have over a decade... 
    Senior
    Remote work

    Kinaxis

    Scottsdale, AZ
    4 days ago
  • $143k - $243k

     ...unique ability to connect care for those we serve. Looking for a purpose-driven career? Come build the future of pharmacy with us.Senior Principal Actuary - REMOTEJob DescriptionThe Senior Principal Actuary is responsible for providing actuarial direction and thought... 
    Senior
    Work experience placement
    Local area
    Remote work
    Visa sponsorship
    Work visa

    Prime Therapeutics

    Phoenix, AZ
    4 days ago
  • Company Details WRBC Support Svcs The Company is an equal employment opportunity employer. Responsibilities Responsibilities for this position were not provided in the source job description. Qualifications Competencies: • Details regarding required...
    Senior

    W. R. Berkley

    Scottsdale, AZ
    8 hours ago
  • Western Alliance Bancorporation is looking for a Senior Fraud Investigator in Phoenix, Arizona. The role involves mitigating losses by identifying, preventing, and recovering funds from fraudulent activities. You'll work closely with various business partners, conduct... 
    Senior

    Western Alliance Bancorporation

    Phoenix, AZ
    5 days ago
  • $46.99k - $122.4k

    CVS Health is seeking a dedicated professional for the role focused on healthcare fraud investigation. The successful candidate will handle complex cases, prevent fraudulent claims, and cooperate with law enforcement. Qualifications include 3 years of experience in fraud...
    Senior
    Full time

    Hispanic Alliance for Career Enhancement

    Phoenix, AZ
    4 days ago
  • $77k - $97k

    West Bend Insurance Company is seeking a Fraud Investigator to work remotely but may require occasional travel to Arizona for team activities. This role involves investigating suspected insurance fraud across various lines including auto and property. The ideal candidate...
    Senior
    Remote job

    West Bend Insurance Company

    Phoenix, AZ
    5 days ago
  •  ...Senior Executive Director, Regulatory Affairs About the Company Well-funded clinical-stage biotech company Industry Biotechnology Type Privately Held About the Role The Company is seeking a Senior Executive Director for Regulatory Affairs to play... 
    Senior

    Confidential

    Phoenix, AZ
    11 days ago
  • $101k - $203k

    A leading defense contractor is seeking a Senior Principal Data Science Developer for a remote position. The ideal candidate has extensive experience with Python, SQL, and machine learning, and will work closely with various stakeholders to develop data-driven solutions... 
    Senior
    For contractors
    Remote work

    Raytheon

    Phoenix, AZ
    12 days ago
  •  ...scenarios that align with global regulatory expectations and business objectives. • Collaborate closely with cross-functional teams and senior leadership to drive clarity, alignment, and accountability for regulatory deliverables, timelines, and interdependencies. •... 
    Senior
    Work at office
    Remote work
    Work from home
    Worldwide

    PAREXEL

    Phoenix, AZ
    8 hours ago
  • $100k - $113k

    A leading energy company is seeking a Senior Business Reporting Analyst for Credit and Energy Risk, based in Scottsdale, AZ. This hybrid role involves streamlining reporting of key risk metrics and developing automated processes for the Risk Team. Candidates should have... 
    Senior

    Clearway Energy Group

    Scottsdale, AZ
    2 days ago
  • $112k - $143k

    UFG Insurance is seeking a Senior Risk Control Consultant to join their Risk Control Team in Phoenix, Arizona. This role focuses on risk assessment and provides leadership in underwriting and strategic planning. The ideal candidate should possess a bachelor's degree, relevant... 
    Senior
    Remote work

    UFG Insurance

    Phoenix, AZ
    4 days ago
  •  ...solving, and want to directly influence product quality and patient safety, you'll love consulting at Parexel.Position OverviewThe Senior / Principal Regulatory Compliance Consultant serves as a high-level subject matter expert in QC Microbiology and aseptic sterile drug... 
    Senior
    Remote work
    Worldwide

    PAREXEL

    Phoenix, AZ
    2 days ago
  • $150.03k - $224.25k

    Position Summary Provides critical support in developing global regulatory strategy, planning and execution of global investigational and marketed prescription drug submissions and manages lifecycle activities for all assigned projects in alignment with the Global Regulatory...
    Senior
    Temporary work
    Work at office
    Local area
    Flexible hours

    Otsuka America Pharmaceutical Inc.

    Phoenix, AZ
    8 hours ago
  •  ...Senior Vice President, Legal and Chief Compliance Officer (CCO) About the Company Nationally recognized healthcare services organization Industry Hospital & Health Care Type Privately Held About the Role The Company is in search of a Senior... 
    Senior

    Confidential

    Phoenix, AZ
    1 day ago
  • $85k - $100k

    Current Employees and Contractors Apply HereOsaic Careers Regulatory Data Opportunity in Financial Services Senior Regulatory Data Analyst Location(s): Atlanta: 2300 Windy Ridge Pkwy SE, Suite750, Atlanta, GA 30339 La Vista:12325 Port Grace Blvd, La... 
    Senior
    Full time
    For contractors

    Osaic

    Scottsdale, AZ
    4 days ago
  • Western Alliance Bancorporation is seeking a Senior Card Fraud Investigator in Phoenix, AZ. This role involves identifying, preventing, and recovering funds from fraud. You will work closely with various internal and external partners, manage fraud cases, and report fraud... 
    Senior

    Western Alliance Bancorporation

    Phoenix, AZ
    1 day ago
  • Ll Oefentherapie is seeking a Principal Consultant specialized in Inpatient and Outpatient Pharmacy solutions. The role focuses on consulting with clients, documenting workflows, and maintaining strong client relationships across pharmacy settings. The ideal candidate has...
    Senior

    Ll Oefentherapie

    Phoenix, AZ
    1 day ago
  • The Senior Risk Advisor, Debit Card & Digital Payments, provides risk advisory support for Vanguard’s payment capabilities, including debit card programs, real‑time payments, and digital payment models. This role partners closely with product, operations, technology, legal... 
    Senior
    Work experience placement

    Vanguard

    Scottsdale, AZ
    3 days ago
  • Turo is seeking a Claims Specialist to handle complex claims and make financial impact decisions. You'll be involved in investigating claims, communicating with customers, and ensuring fair outcomes while working in a collaborative environment. The ideal candidate is a ...
    Senior
    Work at office
    3 days per week

    Turo

    Phoenix, AZ
    5 days ago
  • A multinational aerospace company is seeking a Senior Trade Compliance Analyst - Reconciliation in Phoenix, Arizona. The role involves ensuring compliance with international trade regulations, managing complex import compliance initiatives, and conducting audits. Candidates... 
    Senior

    Honeywell Aerospace US LLC

    Phoenix, AZ
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior GRC Analyst. Be the first to apply!