GRC Analyst

Zywave

Milwaukee (WI)

On-site

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Zywave, a leader serving insurers and brokers, seeks a GRC Analyst to manage compliance frameworks and assess organizational risk. You will partner with IT, Legal, and R&D to keep Zywave audit-ready and aligned with evolving regulatory demands.

This role focuses on implementing frameworks like NIST, RMF, ISO 27001, and SOC 2, preparing concise risk reports, and supporting external audits.

Qualifications

  • 3–5 years in governance, risk, and compliance roles.
  • Experience with NIST, RMF, CSF, ISO 27001 and SOC 2.
  • Familiarity with PCI DSS, HIPAA, DORA is a plus.

Responsibilities

  • Develop, implement, and maintain risk and compliance programs.
  • Conduct regular assessments of organizational risks.
  • Respond to customer RFPs and annual risk assessments.
  • Monitor and strengthen controls for security and compliance.
  • Collaborate with IT, Legal, and R&D to implement policies.
  • Prepare reports detailing risk assessments and findings.
  • Facilitate audits and assist internal readiness assessments.

Skills

GRC
Governance
Risk management
Compliance
NIST
RMF
CSF
ISO 27001
SOC 2
Communication

Job description

Brief Description

Zywave's security and regulatory excellence depends on strong governance, risk, and compliance practices and this role sits at the center of that work. As a GRC Analyst, you will manage compliance frameworks, assess organizational risk, and help Zywave maintain the trust of the customers it serves. This role partners closely with IT, Legal, and R&D to keep Zywave's security posture audit-ready and ahead of evolving regulatory demands.

Brief Description

Zywave's security and regulatory excellence depends on strong governance, risk, and compliance practices and this role sits at the center of that work. As a GRC Analyst, you will manage compliance frameworks, assess organizational risk, and help Zywave maintain the trust of the customers it serves. This role partners closely with IT, Legal, and R&D to keep Zywave's security posture audit-ready and ahead of evolving regulatory demands.

What you will do:
  • Develop, implement, and maintain risk and compliance management programs aligned with NIST, RMF, CSF, ISO 27001, and SOC 2 frameworks.
  • Conduct regular assessments of organizational risks to ensure compliance with regulatory and internal standards.
  • Respond to customer RFPs, and annual Risk Assessments
  • Monitor and evaluate the effectiveness of controls and recommend improvements for operational security and compliance.
  • Collaborate with cross-functional teams, including IT, Legal, and R&D, to implement security policies and procedures.
  • Prepare comprehensive reports for stakeholders detailing risk assessments and compliance findings.
  • Facilitate external audits and lead internal readiness assessments in maintenance of the established controls to support Zywave’s compliance program.
What you should bring:
  • 3-5 years of experience in Governance, Risk, and Compliance, with proven expertise in frameworks such as NIST, RMF, CSF, ISO 27001, and SOC 2.
  • Familiarity with PCI DSS, HIPAA, DORA a plus
  • Strong analytical and problem-solving skills with the ability to assess complex organizational risks.
  • Excellent verbal and written communication skills to effectively deliver findings to stakeholders.
  • Comfortable working independently and collaboratively in a fast-paced environment
  • Relevant certifications such as CISA, CRISC are a plus.
Why Work at Zywave?

Zywave empowers insurers and brokers to drive profitable growth and thrive in today’s escalating risk landscape. Only Zywave delivers a powerful Performance Multiplier, bringing together transformative, ecosystem-wide capabilities to amplify impact across data, processes, people, and customer experiences. More than 15,000 insurers, MGAs, agencies, and brokerages trust Zywave to sharpen risk assessment, strengthen client relationships, and enhance operations. Additional information can be found at www.zywave.com.

Equal Opportunity Employer

Zywave is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other legally protected status. We are committed to building an inclusive workplace where everyone can do their best work. If you need a reasonable accommodation during the application or interview process, please contact our Talent Acquisition team.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst: Risk & Compliance Strategist
GRC Analyst: Risk & Compliance Strategist

Zywave • Milwaukee (WI)

On-site
USD 90,000 - 130,000
Associate GRC Analyst
Associate GRC Analyst

Boingo • Frisco (TX)

Hybrid
USD 60,000 - 80,000
Health benefits
401(k) match
Annual bonus plan
+3
Security GRC Analyst
Security GRC Analyst

Socket.dev • United States

Remote
USD 90,000 - 120,000
Health insurance
401(k) with company match
Paid time off
Governance, Risk, and Compliance Manager
Governance, Risk, and Compliance Manager

Doist • Las Vegas (NV)

On-site
USD 140,000 - 190,000
Stock Options
Medical Insurance
Dental Insurance
+7
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta-Denta • St. Louis (MO)

Hybrid
USD 75,000 - 110,000
Senior GRC (Governance Risk and Compliance)/ Risk Analyst - Washington DC (Remote)
Senior GRC (Governance Risk and Compliance)/ Risk Analyst - Washington DC (Remote)

Yakshna Solutions, Inc. • Herndon (VA)

Remote
USD 165,000
401(k)
Health insurance
Dental insurance
+6
Sr. Cybersecurity GRC Analyst (Remote)
Sr. Cybersecurity GRC Analyst (Remote)

RadNet, Inc. • United States

On-site
USD 90,000 - 115,000
Governance, Risk, and Compliance Manager
Governance, Risk, and Compliance Manager

Tensorwave • Las Vegas (NV)

On-site
USD 140,000 - 200,000
Stock options
Medical, dental, vision insurance for
401(k)
+3
Senior IT Compliance Analyst
Senior IT Compliance Analyst

Vizient, Inc. • Chicago (IL)

On-site
USD 69,000 - 116,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta Dental of Missouri • Missouri

Hybrid
USD 80,000 - 100,000