GRC Architect: Build & Own Enterprise Risk Program

Morganmorganjobsapplynow

Orlando (FL)

On-site

USD 80,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical and dental insurance
401(k) plan
Paid time off
Paid holidays

Job summary

Morgan & Morgan in Orlando is looking for a Senior GRC Analyst to build and manage the Governance, Risk, and Compliance program from the ground up. The ideal candidate will have strong experience with risk assessments and policy authoring, reporting directly to the Director of Business Continuity.

This role includes key responsibilities such as managing Third-Party Risk Management processes, developing security awareness programs, and ensuring audit and compliance readiness across a national law firm.

The candidate must possess relevant certifications and a Bachelor’s degree, with strong experience in GRC platforms like Vanta highly preferred.

Qualifications

  • 4–6+ years in GRC, IT audit, compliance, or information security.
  • Direct experience leading external audits or client security due diligence.
  • Strong working knowledge of ISACA or ISC2 certifications required.

Responsibilities

  • Build and own the end-to-end TPRM process.
  • Run the full policy lifecycle: drafting, review cadence, approval workflows.
  • Own the enterprise risk register and control testing.

Skills

GRC platform experience
Hands-on risk management
ISO 27001
NIST CSF
CIS v8.1
Security awareness program design
Strong analytical skills

Education

Bachelor’s degree in Information Security, Risk Management, or related field

Tools

Vanta

Job description

Morgan & Morgan in Orlando is looking for a Senior GRC Analyst to build and manage the Governance, Risk, and Compliance program from the ground up. The ideal candidate will have strong experience with risk assessments and policy authoring, reporting directly to the Director of Business Continuity.

This role includes key responsibilities such as managing Third-Party Risk Management processes, developing security awareness programs, and ensuring audit and compliance readiness across a national law firm.

The candidate must possess relevant certifications and a Bachelor’s degree, with strong experience in GRC platforms like Vanta highly preferred.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior GRC Analyst
Senior GRC Analyst

Morganmorganjobsapplynow • Orlando (FL)

On-site
USD 80,000 - 100,000
Medical and dental insurance
401(k) plan
Paid time off
+1
IT Risk & GRC Analyst
IT Risk & GRC Analyst

Holland & Knight • Tampa (FL)

On-site
USD 85,000 - 110,000
Medical, dental and vision plans
401(k) and profit-sharing
Paid holidays and leave for new parents
Senior SAP GRC Security Engineer
Senior SAP GRC Security Engineer

PlanIT Group, LLC • Orlando (FL)

On-site
USD 110,000 - 150,000
Senior Associate - GRC Consultant | Risk Assessment
Senior Associate - GRC Consultant | Risk Assessment

PwC • United States

Hybrid
USD 90,000 - 150,000
GRC Analyst
GRC Analyst

Glocomms • Dallas (TX)

Hybrid
USD 90,000 - 150,000
Competitive base salary
Annual bonus
Comprehensive medical, dental, and eye
+2
Senior GRC Architect & Enterprise Risk Lead
Senior GRC Architect & Enterprise Risk Lead

Transamerica • Baltimore (MD)

On-site
USD 150,000 - 190,000
GRC & Enterprise Risk Consultant
GRC & Enterprise Risk Consultant

Sonoma Consulting Inc. • Milwaukee (WI)

On-site
USD 90,000 - 120,000
Senior GRC Specialist
Senior GRC Specialist

Franklin Fitch • United States

Remote
USD 100,000 - 130,000
GRC Analyst
GRC Analyst

New York Technology Partners • Chicago (IL)

On-site
USD 65,000 - 90,000
Remote GRC Senior Analyst: Risk & Compliance Leader
Remote GRC Senior Analyst: Risk & Compliance Leader

recruit22 • Illinois

On-site
USD 140,000 - 180,000
Bonus opportunities
Comprehensive benefits
Generous paid time off
+1