Governance, Risk & Compliance Analyst

Acrisure

Atlanta (GA)

On-site

USD 70,000 - 100,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Comprehensive benefits
401(k) plan matching
HSA/FSA options
Paid time off

Job summary

Acrisure is seeking a detail‑oriented GRC Analyst to join our growing team. You will support governance, risk, and compliance initiatives, assist with SOC 2, SOX ITGC, and HIPAA audits, and help implement audit and governance frameworks across departments.

Ideal candidates have 2+ years in GRC security activities, strong regulatory knowledge, and a Bachelor’s in IS Assurance or related field. On-site collaboration and growth opportunities await.

Qualifications

  • 2+ years of experience in security governance, risk and compliance.
  • Knowledge of NIST, ISO 27001, CIS Controls, GDPR, HIPAA, PCI‑DSS.
  • Bachelor’s degree in Information Systems Assurance or related.
  • Preferred Certifications: CRISC, CISSP, CISA, CEH.

Responsibilities

  • Support GRC activities by assisting with framework implementation and regulatory compliance.
  • Coordinate evidence collection and readiness for SOC 2, SOX ITGC and HIPAA assessments.
  • Perform user access reviews for applications and systems.
  • Assist in maintaining compliance with SOX, HIPAA, SOC 2, GDPR, and PCI‑DSS.
  • Collaborate with cross-functional teams and communicate with both technical and non-technical stakeholders.

Skills

GRC coordination
Regulatory knowledge
Audit support
Communication
Time management

Education

Bachelor’s degree in Information Systems Assurance or related

Tools

GRC tools

Job description

About Acrisure:

A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting‑edge technology and top‑tier human support together, we connect clients with customized solutions across a range of insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services – and more.

In the last twelve years, Acrisure has grown in revenue from $38 million to almost $5 billion and employs over 19,000 colleagues in more than 20 countries. Acrisure was built on entrepreneurial spirit. Prioritizing leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible.

Job Summary:

We are seeking a detail-oriented and motivated GRC Analyst to join our growing team. The ideal candidate will have 32+ years of experience in supporting governance, risk, and compliance initiatives. This includes assisting with client/prospect compliance questionnaires, user access reviews, SOC1 and SOC2 audits, Sarbanes‑Oxley IT general controls audits, and internal risk reviews. You will help maintain awareness of relevant cybersecurity regulations and contribute to implementing audit, governance, risk, and compliance (GRC) frameworks.

As a GRC Analyst, you will collaborate across departments to ensure security solutions protect internal systems, vendor environments, and customer data while also aligning with compliance requirements.

Join one of the fastest-growing companies in the world, where you’ll gain hands‑on experience with cybersecurity, compliance, and privacy frameworks, and work alongside industry experts in an environment built for growth, impact, and continuous learning.

Responsibilities:
  • Support governance, risk, and compliance (GRC) activities by assisting with cybersecurity framework implementation and regulatory compliance efforts.

  • Participate in internal and external audits by coordinating evidence collection, tracking remediation efforts, and supporting readiness for SOC 2, SOX ITGC, and HIPAA assessments.

  • Performing user access reviews for assigned applications and systems.

  • Assist in maintaining compliance with regulatory standards including SOX, HIPAA, SOC 2, GDPR, and PCI‑DSS, while staying informed about evolving cybersecurity laws and obligations.

  • Collaborate with cross-functional teams to support security initiatives and communicate effectively with both technical and non-technical stakeholders.

Requirements:
  • Able to work independently and enjoy a high degree of interaction with team members
  • Ability to contribute to a collaborative environment by consistently demonstrating teamwork, high motivation, positive behavior and effort to achieve goals and objectives
  • Self‑motivated and driven
  • Maintain a sense of urgency and ability to work with and meet deadlines
  • Demonstrate effective written and verbal communication, including the ability actively listen, and problem solve with minimal assistance
  • Demonstrate excellent time management and prioritization skills
  • Attention to detail and commitment to a high level of accuracy
  • The ability to multitask, prioritize, work independently, and use discretion surrounding sensitive information
  • Ability to maintain a professional demeanor and positive attitude
Education and Experience:
  • 2+ years of relevant experience in GRC-focused security activities.

  • Understanding of security standards and frameworks such as NIST, ISO 27001, CIS Controls, and industry compliance regulations (NYDFS, GDPR, HIPAA, PCI‑DSS).

  • Proven ability to manage complex timelines and deliverables, ensuring alignment with organizational goals and regulatory requirements.

  • Bachelor’s degree (or equal experience) in an Information Systems Assurance or related.

  • Preferred Certifications:

    • CRISC (Certified in Risk and Information Systems Control)
    • CISSP (Certified Information Systems Security Professional)
    • CISA (Certified Information Systems Auditor)
    • CEH (Certified Ethical Hacker)
Candidates should be comfortable with an on‑site presence to support collaboration, team leadership, and cross‑functional partnership.
Why Join Us:

At Acrisure, we’re building more than a business, we’re building a community where people can grow, thrive, and make an impact. Our benefits are designed to support every dimension of your life, from your health and finances to your family and future.

Making a lasting impact on the communities it serves, Acrisure has pledged more than $22 million through its partnerships with Corewell Health Helen DeVos Children’s Hospital in Grand Rapids, Michigan, UPMC Children’s Hospital in Pittsburgh, Pennsylvania and Blythedale Children’s Hospital in Valhalla, New York.

Employee Benefits

We also offer our employees a comprehensive suite of benefits and perks, including:

  • Physical Wellness: Comprehensive medical insurance, dental insurance, and vision insurance; life and disability insurance; fertility benefits; wellness resources; and paid sick time.

  • Mental Wellness: Generous paid time off and holidays; Employee Assistance Program (EAP); and a complimentary Calm app subscription.

  • Financial Wellness: Immediate vesting in a 401(k) plan; Health Savings Account (HSA) and Flexible Spending Account (FSA) options; commuter benefits; and employee discount programs.

  • Family Care: Paid maternity leave and paid paternity leave (including for adoptive parents); legal plan options; and pet insurance coverage.

  • … and so much more!

This list is not exhaustive of all available benefits. Eligibility and waiting periods may apply to certain offerings. Benefits may vary based on subsidiary entity and geographic location.

Acrisure is an Equal Opportunity Employer.

We consider qualified applicants without regard to race, color, religion, sex, national origin, disability, or protected veteran status. Applicants may request reasonable accommodation by contacting leaves@acrisure.com.

Final candidates will be required to complete post‑offer verification processes related to the role and in accordance with applicable laws.

California Residents:

Learn more about our privacy practices for applicants by visiting the Acrisure California Applicant Privacy Policy.

Recruitment Fraud:

Please visit here to learn more about our Recruitment Fraud Notice.

Welcome, your new opportunity awaits you.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Analyst
Senior Security Analyst

Acrisure • Grand Rapids (MI)

On-site
USD 85,000 - 110,000
Comprehensive medical insurance
Paid maternity and paternity leave
401(k) plan with immediate vesting
+1
Director, Security Operations
Director, Security Operations

Acrisure • Atlanta (GA)

On-site
USD 180,000 - 250,000
Health insurance
Dental insurance
Vision insurance
+1
Security Incident Response Engineer
Security Incident Response Engineer

Acrisure • Atlanta (GA)

On-site
USD 120,000 - 180,000
Associate I Carrier Credentialing
Associate I Carrier Credentialing

Acrisure • Grand Rapids (MI)

On-site
USD 35,000 - 52,000
Medical Insurance
401(k) Plan
Paid Time Off
+1
Sr. Manager, Social Media
Sr. Manager, Social Media

Acrisure • Chicago (IL)

On-site
USD 146,000 - 180,000
Medical, dental, and vision insurance
401(k) plan
On-site collaboration & events
Director, External Communications
Director, External Communications

Acrisure • Grand Rapids (MI)

On-site
USD 130,000 - 190,000
Medical, dental, vision insurance
401(k) with company match
Paid time off and holidays
+1
Red Team Engineer
Red Team Engineer

Royal Abstract of New York LLC • Atlanta (GA)

On-site
USD 120,000 - 210,000
401(k) plan
Health, Dental, Vision insurance
Paid time off
Sr. Placement Specialist
Sr. Placement Specialist

Acrisure • Mahwah (NJ)

On-site
USD 70,000 - 110,000
Comprehensive medical insurance
Generous paid time off
401(k) with immediate vesting
Manager, Insurance Revenue Analytics
Manager, Insurance Revenue Analytics

Acrisure • Naperville (IL)

On-site
USD 127,000 - 172,000
Paralegal
Paralegal

Acrisure • Schaumburg (IL)

On-site
USD 34,000 - 47,000
Health insurance
401(k) plan
Paid time off