GRC Analyst / Onsite in Downtown Phoenix

Motion Recruitment
Phoenix, AZ, United States
30 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Microsoft Excel JIRA Microsoft Azure Cyber Security DevOps Microsoft Office Microsoft SharePoint RSA Archer Platform Tools for Reporting CIS Benchmarks Servicenow

Job description

A large enterprise organization is seeking a GRC Analyst to support a high-visibility security initiative in a onsite role based in downtown Phoenix, AZ. This is a contract position focused on governance, risk, and compliance activities across technology projects, with exposure to security frameworks, audit processes, and enterprise risk management tools such as ServiceNow, Azure DevOps, Jira, and SharePoint.

This is an excellent opportunity for someone who thrives in structured environments and enjoys bringing order to complex security processes. The key value of this role is ownership of the risk register and approval lifecycle - you’ll be the central point ensuring risks, decisions, documentation, and approvals are clearly tracked and audit-ready. If you’re looking to deepen your GRC experience while working closely with security architects, engineering teams, and stakeholders across a large organization, this role offers strong exposure to enterprise-scale governance practices and real-world security decision-making., Tech Breakdown

  • 50% GRC Platforms and Documentation
  • 30% Security Frameworks and Risk Management
  • 20% Collaboration and Reporting Tools

Daily Responsibilities

  • 60% Risk and Compliance Tracking
  • 15% Process Coordination and Follow-Ups
  • 25% Cross-Team Collaboration

Requirements

  • Experience supporting governance, risk, compliance, audit readiness, security documentation, risk management, or approval tracking for technology projects
  • Ability to maintain a project risk register with clear risk descriptions, owners, impacts, likelihood, mitigation plans, residual risk, decisions, and status updates
  • Working knowledge of security governance and risk management concepts, including control mapping, risk acceptance, evidence collection, approval workflows, and issue remediation tracking
  • Familiarity with security frameworks such as NIST Cybersecurity Framework, NIST SP 800-53, CIS Controls, ISO 27001, or equivalent
  • Ability to understand technical project context well enough to accurately document risks, controls, approvals, dependencies, and evidence requirements
  • Strong documentation discipline, attention to detail, follow-up skills, and ability to keep records audit-ready
  • Proficiency with Microsoft Office, Excel, SharePoint, Teams, and tools such as ServiceNow, Azure DevOps, Jira, Archer, or OneTrust
  • Ability to coordinate across security, architecture, engineering, project delivery, compliance, operations, and stakeholder groups
  • Strong written communication skills and ability to clearly summarize risk and approval status

Desired Skills & Experience

  • Security+, CGRC, CISA, CRISC, CISM, or similar certifications
  • Experience supporting public sector, regulated, or high-governance environments
  • Experience with authorization, exception, risk acceptance, audit, or compliance evidence processes
  • Experience building dashboards, trackers, approval matrices, or evidence repositories
  • Familiarity with Azure cloud, infrastructure delivery, DevOps, and security review processes

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

Videos

See all

Related articles

See all