Technology Risk & Compliance Analyst

Brown & Brown

Plano (TX)

On-site

USD 90,000 - 120,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Brown & Brown in Plano, Texas, seeks a Technology Risk & Compliance Analyst to embed risk and compliance into delivery, enabling speed, quality, and regulatory alignment. The role partners with portfolio leaders, delivery teams, security, and stakeholders to identify, prioritize, and manage risks across applications, infrastructure, and data environments.

The ideal candidate will drive remediation, support SOX and SOC controls, and maintain governance frameworks while communicating risk insights

Qualifications

  • Bachelor’s degree in Information Technology, Cybersecurity, Business, or related field.
  • 3–7 years of experience in IT risk, compliance, audit, or cybersecurity.
  • Strong working knowledge of GRC frameworks (e.g., NIST, ISO 27001, COBIT).
  • Knowledge of regulatory standards (SOX, SOC, GDPR, or similar).
  • Experience with risk assessment, control design, and audit support.
  • Ability to translate technical risk into business impact and executive-level messaging.
  • Strong collaboration and stakeholder management across technology and business teams.
  • High attention to detail with disciplined documentation practices.

Responsibilities

  • Identify, assess, and document technology risks across projects, products, and platforms within the Retail portfolio.
  • Facilitate the prioritization of technology risks based on business impact, regulatory exposure, and defined risk appetite.
  • Conduct risk assessments for new initiatives, including M&A integrations and platform implementations.
  • Partner with project managers and product teams to integrate risk mitigation into delivery plans and milestones.
  • Ensure risk mitigation strategies align to enterprise risk appetite and portfolio priorities.
  • Monitor risk exposure and ensure remediation activities are tracked through completion.

Skills

GRC frameworks knowledge
Regulatory standards
Risk assessment & audit support
Stakeholder management
Business impact translation

Education

Bachelor's degree in IT/Cybersecurity/Business

Job description

Brown & Brown is seeking a Technology Risk & Compliance Analyst to join our growing team in Plano, Texas! This role embeds risk and compliance into delivery as an integrated capability that enables speed, quality, and regulatory alignment.

The ideal candidate will partner with portfolio leaders, delivery teams, security, and business stakeholders to proactively identify, prioritize, and manage risks, enforce compliance standards, and drive remediation across applications, infrastructure, and data environments. This role aligns to the Retail OCIO objective of managing risk within defined appetite while enabling scalable, secure technology delivery.

How you will Contribute:
Technology Risk Management
  • Identify, assess, and document technology risks across projects, products, and platforms within the Retail portfolio.
  • Facilitate the prioritization of technology risks based on business impact, regulatory exposure, and defined risk appetite.
  • Conduct risk assessments for new initiatives, including M&A integrations and platform implementations.
  • Partner with project managers and product teams to integrate risk mitigation into delivery plans and milestones.
  • Ensure risk mitigation strategies align to enterprise risk appetite and portfolio priorities.
  • Monitor risk exposure and ensure remediation activities are tracked through completion.
Compliance Oversight & Governance
  • Ensure alignment with internal policies and external regulatory requirements (e.g., SOX, SOC controls, data privacy standards).
  • Support implementation and maintenance of IT governance, risk, and compliance (GRC) frameworks.
  • Evaluate and ensure technology policies, standards, and procedures are fit for purpose and aligned to regulatory and business requirements.
  • Recommend updates to policies and standards based on regulatory changes, audit findings, and evolving risk landscape.
  • Maintain compliance documentation, control narratives, and evidence repositories.
  • Monitor and report adherence to policies, standards, and standard operating procedures across the portfolio.
Audit & Control Effectiveness
  • Support internal and external audit activities, including evidence collection, walkthroughs, and remediation tracking.
  • Partner with internal and external Audit to support successful audit outcomes, including SOX compliance, evidence validation, and timely remediation of findings.
  • Assess effectiveness of IT controls and identify gaps across applications, infrastructure, and processes.
  • Partner with control owners to strengthen control design and execution.
  • Drive timely closure of audit findings and control deficiencies.
Vendor & Third-Party Risk
  • Partner with Vendor Management and enterprise third- and fourth-party risk teams to ensure technology-related vendor risks are identified and addressed.
  • Incorporate vendor-related risks into portfolio-level risk visibility and reporting.
  • Support tracking and remediation of vendor-related control gaps impacting Retail Technology delivery.
Reporting & Decision Support
  • Prepare and deliver transparent, decision-ready reporting for governance forums, including Steering Committees and OCIO leadership.
  • Provide insights that enable leadership to evaluate risk exposure alongside investment, delivery progress, and business outcomes.
  • Highlight trade-offs, emerging risks, and areas requiring leadership attention or decision.
  • Track key risk indicators (KRIs), control effectiveness, and remediation progress.
  • Identify opportunities to streamline and improve GRC processes, tooling, and operating model effectiveness.
  • Contribute to the evolution of OCIO governance, risk, and control frameworks.
Skills and Experience to be Successful:
  • Bachelor’s degree in Information Technology, Cybersecurity, Business, or related field.
  • 3–7 years of experience in IT risk, compliance, audit, or cybersecurity.
  • Strong working knowledge of GRC frameworks (e.g., NIST, ISO 27001, COBIT).
  • Knowledge of regulatory standards (SOX, SOC, GDPR, or similar).
  • Experience with risk assessment, control design, and audit support.
  • Ability to translate technical risk into business impact and executive-level messaging.
  • Strong collaboration and stakeholder management across technology and business teams.
  • High attention to detail with disciplined documentation practices.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Tech Risk & Compliance Strategist
Tech Risk & Compliance Strategist

Brown & Brown • Plano (TX)

On-site
USD 90,000 - 120,000
Technology Risk & Compliance Analyst
Technology Risk & Compliance Analyst

Brown & Brown • Town of Florida (NY)

On-site
USD 85,000 - 105,000
Health Benefits: Medical/Rx, Dental, Vision
Financial Benefits: 401k, Tuition Reimbursement
Mental Health & Wellness: Free Mental Health Services
Technology Risk & Compliance Analyst
Technology Risk & Compliance Analyst

Visa Hunt • United States

On-site
USD 85,000 - 105,000
Health Benefits
401k
Tuition Reimbursement
+1
Technology Risk & Compliance Strategist
Technology Risk & Compliance Strategist

Visa Hunt • United States

On-site
USD 85,000 - 105,000
Health Benefits
401k
Tuition Reimbursement
+1
Strategic Technology Risk & Compliance Specialist
Strategic Technology Risk & Compliance Specialist

Brown & Brown • Town of Florida (NY)

On-site
USD 85,000 - 105,000
Health Benefits: Medical/Rx, Dental, Vision
Financial Benefits: 401k, Tuition Reimbursement
Mental Health & Wellness: Free Mental Health Services
Remote Technology Risk & Compliance Analyst
Remote Technology Risk & Compliance Analyst

Brown & Brown, Inc. • Town of Florida (NY)

On-site
USD 85,000 - 105,000
Health Benefits: Medical/Rx, Dental, Vision, Life Insurance
Financial Benefits: ESPP; 401k; Student Loan Assistance
Mental Health & Wellness: Free Mental Health Services
+1
Technology & Cybersecurity Risk Management Analyst
Technology & Cybersecurity Risk Management Analyst

QUICK USA • Plano (TX)

Hybrid
USD 75,000 - 80,000
Medical, Vision, Dental
PTO, SL
401K
+1
IT Operational Risk Manager
IT Operational Risk Manager

Selby Jennings • Town of Florida (NY)

On-site
USD 90,000 - 140,000
Compliance and Risk Analyst - PCC
Compliance and Risk Analyst - PCC

ViziRecruiter,LLC. • Merrimack (NH)

On-site
USD 70,000 - 90,000
401k plans
Medical insurance
Mental health resources
+1
Senior Business Systems Analyst-Third-Party Risk Management
Senior Business Systems Analyst-Third-Party Risk Management

iFlow Inc. • Plano (TX)

On-site
USD 100,000 - 130,000