GOVERNANCE, RISK, & COMPLIANCE ANALYST - 72003924

State of Florida

Tallahassee (FL)

On-site

USD 70,000 - 88,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

The State of Florida Department of Management Services seeks a Governance, Risk, and Compliance (GRC) Analyst in Tallahassee to support enterprise-wide governance, risk, and compliance programs and to advance statewide Digital Forward initiatives in line with NIST CSF, NIST 800-53, and DAMA-DMBOK.

The role covers cybersecurity, data governance, enterprise architecture, and project oversight; you will help implement a Unified Enterprise GRC Solution, develop policies, standards, playbooks, and

Qualifications

  • Experience in governance, risk, compliance, audit, or IT-related functions.
  • Experience with frameworks such as NIST, ISO, or data governance standards.
  • Ability to support enterprise-level initiatives and cross-functional collaboration.

Responsibilities

  • Support GRC operations across cybersecurity, data governance, enterprise architecture, and project oversight.
  • Assist in implementation and adoption of a Unified Enterprise GRC Solution, enabling centralized risk tracking, compliance monitoring, and reporting.
  • Develop, review, and maintain policies, standards, procedures, and guidelines.
  • Develop templates, playbooks, and process guides aligned with FLDS requirements, NIST CSF, and DAMA-DMBOK.
  • Support governance forums and cross-agency collaboration.
  • Deliver training and governance documentation.

Skills

GRC principles
Data governance
Cybersecurity basics
Risk assessment
Policy development

Education

Bachelor’s degree in information systems / cybersecurity / data management / public administration
Graduate degree preferred

Tools

GRC tools
Enterprise risk platforms

Job description

Salary: $70,000.00 - $87,500.00

State of Florida Department of Management Services

This position is located in Tallahassee, FL

The Governance, Risk, & Compliance (GRC) Analyst supports enterprise-wide governance, risk, and compliance functions across data, cybersecurity, project management oversight, and enterprise architecture domains. This role advances statewide Digital Forward initiatives and ensures alignment with FLDS, NIST, and DAMA-DMBOK frameworks.

Duties & Responsibilities
Governance & GRC Program Activities
  • Support GRC operations across multiple domains (cybersecurity, data governance, enterprise architecture, and project oversight).
  • Assist in implementation and adoption of a Unified Enterprise GRC Solution, enabling centralized risk tracking, compliance monitoring, and reporting.
  • Participate in governance activities including development, review, and maintenance of policies, standards, procedures, and guidelines.
  • Develop and maintain templates, playbooks, and process guides aligned with FLDS requirements, NIST CSF, and DAMA-DMBOK.
  • Support enterprise governance forums, working groups, and cross-agency collaboration efforts.
  • Assist in development and delivery of training, awareness materials, and governance documentation.
Risk Management & Assessment Activities
  • Support development, facilitation, and tracking of:
  • Triennial enterprise cybersecurity risk assessments
  • Annual agency strategic and operational plans
  • Risk remediation plans and recommendations
  • Track risk findings, remediation progress, and maturity improvements across agencies.
  • Integrate vulnerability, audit, and assessment findings into enterprise risk management processes.
  • Assist agencies in identifying risks, prioritizing mitigation strategies, and aligning with statewide standards.
  • Contribute to maturity model assessments that measure agency capability and progress over time.
Compliance & Audit Support Activities
  • Support compliance monitoring and audit readiness across multiple regulatory domains.
  • Assist with internal and external audits, documentation collection, and remediation tracking.
  • Analyze compliance against:
  • FLDS policies and standards
  • NIST Cybersecurity Framework
  • DAMA-DMBOK data governance practices
  • Facilitate coordination with agencies and stakeholders for audit activities and reporting.
  • Support development of compliance metrics, dashboards, and reporting capabilities.
Data Governance & Enterprise Initiatives
  • Support implementation of a Data Governance Framework that promotes secure data sharing and collaboration.
  • Assist with development of governance artifacts including:
  • Data standards
  • Data sharing agreements
  • Authoritative data source identification
  • Contribute to enterprise data maturity assessments and data literacy initiatives.
  • Support federated governance efforts that balance enterprise oversight with agency autonomy.
Digital Forward Initiative Support
Support Key Statewide Initiatives Including
  • Strengthening enterprise cybersecurity maturity through a unified GRC solution
  • Establishing maturity models for continuous improvement
  • Implementing secure data sharing and interoperability frameworks
  • Increasing operational technology (OT) cybersecurity maturity to ensure resilient environments
Professional Development & Other Duties
  • Maintain knowledge of emerging GRC, cybersecurity, data governance, and enterprise architecture practices.
  • Obtain and maintain relevant certifications and continuing education.
  • Perform other duties as assigned.
  • Other duties as required.
Knowledge, skills, and abilities, including utilization of equipment, required for the position:
  • Knowledge of governance, risk, and compliance principles across cybersecurity, data, and enterprise IT domains
  • Familiarity with frameworks such as NIST CSF, NIST 800-53, and DAMA-DMBOK
  • Ability to analyze risk, compliance, and governance data to support decision-making
  • Ability to develop policies, standards, and procedural documentation
  • Strong stakeholder engagement and facilitation skills
  • Ability to manage multiple initiatives in a fast‑paced environment
  • Strong analytical, organizational, and problem‑solving skills
Minimum Qualifications
Education:
  • Experience in governance, risk, compliance, audit, or IT-related functions
  • Experience working with frameworks such as NIST, ISO, or data governance standards
  • Ability to support enterprise-level initiatives and cross‑functional collaboration
Nice To Have
  • Experience with GRC tools or enterprise risk platforms
  • Experience with public sector governance or statewide IT initiatives
  • Knowledge of data governance frameworks and practices
  • Experience supporting audits, risk assessments, or compliance programs

Highly Preferred Certifications: CISA, GSEC, CISSP-ISSEP, CRISC, CGEIT, DAMA CDMP

Preferred Certifications: Security+, CISSP, CISM, SSCP, PMI-RMP

Desirable Education
  • Bachelor’s degree in information systems, cybersecurity, data management, public administration, or related field
  • Graduate degree preferred.
On-the-Job Certification/Training Schedule

Within 12 months obtain one of the following professional certifications: CompTIA Security+, ISACA CISA, DAMA CDMP Associate

Within 24 months obtain one of the following professional certifications: ISC2 CISSP, ISACA CRISC, PMI-RMP, or DAMA CDMP Practitioner

Other Job-related Requirements For This Position

Criminal background investigation including fingerprinting and statewide and national criminal history records check per Section 110.1127 Florida Statutes, Chapter 435 Florida Statutes and the Federal Bureau of Investigation’s CJIS Security Policy CJISD-ITS-DOC-08140-4.5.

Pursuant to F.S. 215.422 every officer or employee who is responsible for the approval or processing of vendors’ invoices or distribution of warrants to vendors are mandated to process, resolve, and comply as section 215.422 requires.

Ability to sit for extended periods of time. Ability to stand for extended periods of time. Ability to drive and/or fly for long distances. Ability to lift, push and pull up to 30lbs.

Our Organization And Mission

Under the direction of Governor Ron DeSantis, Secretary Tom Berger and DMS' Executive Leadership Team, the Florida Department of Management Services (DMS) is a customer-oriented agency with a broad portfolio that includes the efficient use and management of real estate, procurement, human resources, group insurance, retirement, telecommunications, fleet, and federal property assistance programs used throughout Florida's state government. It is against this backdrop that DMS strives to demonstrate its motto, "We serve those who serve Florida."

Special Notes

DMS is committed to successfully recruiting and onboarding talented and skilled individuals into its workforce. We recognize the extensive training, experience and transferrable skills that veterans and individuals with disabilities bring to the workforce. Veterans and individuals with disabilities are encouraged to contact our recruiter for guidance and answers to questions through the following provided email addresses:

DMS.Ability@dms.myflorida.com

DMS.Veterans@

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst: Cybersecurity, Data Governance & Compliance
GRC Analyst: Cybersecurity, Data Governance & Compliance

State of Florida • Tallahassee (FL)

On-site
USD 70,000 - 88,000
SENIOR APPLICATIONS DEVELOPER - 72003964
SENIOR APPLICATIONS DEVELOPER - 72003964

State of Florida • Tallahassee (FL)

On-site
USD 90,000 - 120,000
CHIEF OF CONTRACT MANAGEMENT - 72000033
CHIEF OF CONTRACT MANAGEMENT - 72000033

State of Florida • Tallahassee (FL)

On-site
USD 140,000 - 190,000
SUPPLIER DEVELOPMENT ADMINISTRATOR - 72003264
SUPPLIER DEVELOPMENT ADMINISTRATOR - 72003264

State of Florida • Tallahassee (FL)

On-site
USD 95,000 - 130,000
SENIOR PURCHASING ANALYST - 72003971
SENIOR PURCHASING ANALYST - 72003971

State of Florida • Tallahassee (FL)

On-site
USD 75,000 - 110,000
BUDGET ANALYST - 72002364
BUDGET ANALYST - 72002364

State of Florida • Tallahassee (FL)

On-site
USD 65,000 - 90,000
PURCHASING ANALYST - 72002799
PURCHASING ANALYST - 72002799

State of Florida • Tallahassee (FL)

On-site
USD 45,000 - 65,000
ACCOUNTANT IV - 72003694
ACCOUNTANT IV - 72003694

State of Florida • Tallahassee (FL)

On-site
USD 55,000 - 75,000
INTERIOR DESIGN PROJECTS CONSULTANT II - 72001242 at State of Florida Tallahassee, FL
INTERIOR DESIGN PROJECTS CONSULTANT II - 72001242 at State of Florida Tallahassee, FL

kozmetickesluzby.vecnakraska.sk - Jobboard • Tallahassee (FL)

On-site
USD 56,000 - 58,000
Comprehensive health coverage
Retirement options
Tuition waiver program
Government Operations Consultant I
Government Operations Consultant I

Certifiedarchivists • Tallahassee (FL)

On-site
USD 50,000 - 70,000