Governance, Risk & Compliance Senior Analyst

Tier4 Group

Atlanta (GA)

On-site

USD 90,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Tier4 Group is seeking an IT Governance, Risk & Compliance (GRC) Analyst to support technology compliance, risk, and data governance programs in Atlanta. This hands-on role focuses on SOC 2 readiness and IT controls, with collaboration across security, IT, and audit teams.

You will coordinate access reviews, administer Purview-based classifications, retention initiatives, and security awareness activities while maintaining audit-ready documentation.

Qualifications

  • 4+ years of experience in IT GRC or related fields.
  • Understanding of IT controls, audit evidence, and risk management concepts.
  • Experience with Microsoft 365 or similar enterprise environments.
  • Strong organization and communication skills.

Responsibilities

  • Maintain SOC 2 control calendar and coordinate activities.
  • Collect, review, and maintain audit evidence.
  • Track control gaps, remediation plans and items.
  • Coordinate SOC 2 readiness with external auditors.
  • Perform and document user and privileged access reviews.
  • Support Purview initiatives: data classification, DLP, retention.
  • Assist with data retention programs development.
  • Administer security awareness campaigns and phishing simulations.
  • Review change requests for compliance and audit requirements.

Skills

IT GRC
SOC/SOX controls
Microsoft 365 experience
Documentation
Communication
Independent work

Tools

Microsoft Purview
Entra ID
GRC platforms

Job description

Governance, Risk & Compliance Senior Analyst
Atlanta, GA
IT Governance, Risk & Compliance (GRC) Analyst

We are seeking an IT Governance, Risk & Compliance (GRC) Analyst to support technology compliance, risk, and data governance programs.

This hands-on role will help maintain year-round SOC 2 readiness, coordinate IT controls and access reviews, support Microsoft Purview and data retention initiatives, administer security awareness activities, and ensure compliance documentation remains organized and audit-ready.

The ideal candidate has experience in IT audit, GRC, cybersecurity compliance, or technology risk and is looking to continue developing their expertise in a collaborative environment.

What Youll Do
  • Maintain the SOC 2 control calendar and coordinate recurring control activities.
  • Collect, review, and maintain audit evidence and documentation.
  • Track control gaps, exceptions, remediation plans, and outstanding items.
  • Coordinate SOC 2 readiness activities and external auditor requests.
  • Perform and document recurring user and privileged access reviews.
  • Support Microsoft Purview initiatives, including data classification, DLP, sensitivity labeling, and retention.
  • Assist with the development and implementation of data retention programs.
  • Administer security awareness campaigns, phishing simulations, and reporting.
  • Maintain IT compliance and security policies and coordinate periodic reviews.
  • Review change requests for compliance, risk, data protection, and audit requirements, ensuring proper approvals and documentation.
  • Assist with technology risk assessments, vendor security reviews, and client security questionnaires.
  • Maintain risk and remediation registers and follow up with control owners.
  • Prepare compliance reporting for IT leadership.
  • Identify opportunities to automate compliance monitoring and evidence collection.
  • Escalate significant control failures, risks, and policy exceptions.
What Were Looking For
  • 4+ years of experience in IT GRC, IT audit, cybersecurity compliance, technology risk, SOC/SOX controls, or information security.
  • Understanding of IT controls, audit evidence, and risk management concepts.
  • Experience working within Microsoft 365 or similar enterprise technology environments.
  • Strong organization, documentation, communication, and follow-through skills.
  • Ability to work independently while coordinating across multiple teams.
Preferred Qualifications
  • SOC 2 audit or readiness experience.
  • Experience with Microsoft Purview, Entra ID, DLP, or data retention.
  • Experience with access reviews or GRC/compliance platforms.
  • Vendor or third-party risk experience.
  • Security awareness program administration experience.
  • Experience in accounting, financial services, professional services, or another environment handling sensitive client information.
  • Security+, CISA, CRISC, CGRC, Microsoft security/compliance, or a similar certification, or an interest in pursuing one.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior GRC Analyst - SOC 2 & IT Compliance
Senior GRC Analyst - SOC 2 & IT Compliance

Tier4 Group • Atlanta (GA)

On-site
USD 90,000 - 150,000
Senior GRC Analyst
Senior GRC Analyst

Averity • New York (NY)

On-site
USD 90,000 - 140,000
Staff Risk & Compliance Analyst
Staff Risk & Compliance Analyst

GE Vernova • United States

On-site
USD 85,000 - 120,000
Relocation assistance
Senior Cybersecurity Risk & Governance Analyst
Senior Cybersecurity Risk & Governance Analyst

Mortgage-Trade-Holding-Company,-LL • Oxford (MS)

On-site
USD 110,000 - 150,000
Sr. IT Security Analyst
Sr. IT Security Analyst

The Marzetti Company • Columbus (OH)

On-site
USD 90,000 - 120,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Kalepa • Cincinnati (OH)

Hybrid
USD 110,000 - 150,000
Medical Insurance
Dental Insurance
401(k) Plan
+1
Governance, Risk, & Compliance (GRC) Analyst
Governance, Risk, & Compliance (GRC) Analyst

Districttechgroup • Washington

On-site
USD 80,000 - 100,000
Fully remote work environment
Competitive salary and performance bonuses
Health, dental, and vision insurance
+2
IT GRC Lead Analyst
IT GRC Lead Analyst

Core Specialty • Cincinnati (OH)

Hybrid
USD 110,000 - 140,000
Medical, dental, vision, and life ins.
401(k) with company match
Employee Assistance Plan
+1
GRC (Governance, Risk, and Compliance) Consultant
GRC (Governance, Risk, and Compliance) Consultant

Zoho • United States

Remote
USD 120,000 - 180,000
GRC Analyst
GRC Analyst

Golden Technology • North Carolina

On-site
USD 120,000 - 160,000