Senior IT Risk & Governance Analyst

Vestis Corporation

Roswell (GA)

On-site

USD 120,000 - 160,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Vestis Corporation in Roswell, GA seeks a Senior Analyst, IT Risk & Governance to lead governance, risk, and compliance initiatives across IT, finance, and operations. You will manage risk assessments, policy updates, and third-party risk programs while coordinating with internal audit and leadership.

The role focuses on driving risk visibility through dashboards, strengthening controls, and aligning with regulatory requirements, including SOX and privacy regimes.

Qualifications

  • Bachelor's degree in information technology, finance, business, or related discipline.
  • 10+ years’ experience in IT governance, risk management, internal audit, security operations, or related disciplines.
  • Experience supporting audits, compliance programs, or control assessments.
  • Strong analytical and problem-solving skills.
  • Experience with Microsoft Excel, Power BI, and reporting tools.
  • Excellent written and verbal communication skills.
  • Experience supporting SOX, PCI DSS, privacy, or security programs.
  • Experience with GRC platforms such as ServiceNow GRC, Archer, AuditBoard, or similar tools.
  • Familiarity with cloud platforms (Azure, AWS, or Google Cloud).
  • Professional certifications such as: CRISC, CISA, CGRC, CDPSE, CISSP (Associate or progressing toward) desired.

Responsibilities

  • Support administration and continuous improvement of the IT Governance, Risk, and Compliance (GRC) program.
  • Maintain the enterprise IT risk register, including documentation of risk owners, mitigation plans, due dates, and risk ratings.
  • Facilitate periodic IT risk assessments and control reviews across infrastructure, applications, data, cloud platforms, and vendor environments.
  • Assist business and technology teams in identifying emerging risks and developing risk mitigation plans.
  • Coordinate governance committee meetings, risk reviews, and action item tracking.
  • Support policy management processes, including policy updates, exception tracking, and annual reviews.
  • Support compliance activities related to SOX, PCI DSS, privacy requirements, cybersecurity frameworks, and other regulatory obligations.
  • Assist in conducting technology vendor and third-party risk assessments.
  • Coordinate collection and review of security documentation, including SOC reports, security questionnaires, and attestations.
  • Monitor remediation activities associated with vendor risk findings.
  • Maintain vendor risk inventories and reporting.
  • Develop and maintain executive dashboards and reporting using Power BI and related tools.
  • Coordinate with security operations’ vendor partner to gather analytics to assess trends associated with technology risks, vulnerabilities, audit findings, compliance activities, and remediation performance.
  • Prepare materials for executive leadership, governance committees, and auditors.
  • Produce recurring risk and compliance reports to support management decision-making.
  • Partner with security operations vendor partner, infrastructure, application, and data teams to track risks identified through vulnerability management, incident response, and other security activities.
  • Assist with governance related to AI, cloud services, data privacy, and emerging technologies.
  • Support awareness initiatives that strengthen the organization\'s culture of governance and risk management.

Job description

Vestis Corporation in Roswell, GA seeks a Senior Analyst, IT Risk & Governance to lead governance, risk, and compliance initiatives across IT, finance, and operations. You will manage risk assessments, policy updates, and third-party risk programs while coordinating with internal audit and leadership.

The role focuses on driving risk visibility through dashboards, strengthening controls, and aligning with regulatory requirements, including SOX and privacy regimes.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior IT GRC & Risk Analyst
Senior IT GRC & Risk Analyst

Vestis • Roswell (GA)

On-site
USD 110,000 - 150,000
Senior IT Audit Leader - SOX, ITGC & Cyber Risk
Senior IT Audit Leader - SOX, ITGC & Cyber Risk

Vestis Corporation • Roswell (GA)

Hybrid
USD 120,000 - 180,000
Strategic IT Audit & Compliance Leader
Strategic IT Audit & Compliance Leader

Vestis • Roswell (GA)

Hybrid
USD 120,000 - 180,000
Director of Cloud & Infrastructure Platform Strategy
Director of Cloud & Infrastructure Platform Strategy

Vestis Corporation • Roswell (GA)

On-site
USD 150,000 - 230,000
Senior IT Risk & GRC Analyst - SOX & Controls
Senior IT Risk & GRC Analyst - SOX & Controls

Remote Jobs • United States

Remote
USD 91,000 - 143,000
Senior IT Risk & GRC Advisor (SOX)
Senior IT Risk & GRC Advisor (SOX)

Viasat • United States

On-site
USD 113,000 - 169,000
Benefits package
GRC Cybersecurity Analyst — Policy, Risk & Compliance
GRC Cybersecurity Analyst — Policy, Risk & Compliance

Central Business Solutions, Inc • Atlanta (GA)

On-site
USD 95,000 - 110,000
Vulnerability Governance & Risk Analyst
Vulnerability Governance & Risk Analyst

Acrisure, LLC • Atlanta (GA)

On-site
USD 95,000 - 135,000
Health insurance
401(k) plan
Paid time off
+1
Senior IT Risk & Security Analyst (Remote)
Senior IT Risk & Security Analyst (Remote)

Symetra Financial Corporation • Northern (KY)

Hybrid
USD 80,000 - 133,000
Flexible full-time or hybrid telecommu
401(k) with company match up to 6%
Paid time off and holidays
+1
Enterprise Risk Governance Analyst II
Enterprise Risk Governance Analyst II

Fhlbatl • Atlanta (GA)

Hybrid
USD 80,000 - 110,000