Governance Risk and Compliance Analysts ensure that an organization’s operations and procedures meet government and industry compliance standards. They research regulations and policies on behalf of the enterprise, communicate the necessary requirements, apply for certifications, and serve as a subject matter expert on all compliance-related matters.
GRC Analyst’s play a pivotal role in assessing and prioritizing information, security, and cybersecurity risk across an organization. A GRC Analyst’s technical skills, combined with their ability to manage risks and ensure compliance, make them key players in any organization's cybersecurity strategy.
Governance Risk and Compliance Analysts need experience working with governance, risk, and compliance (GRC) tools such as ServiceNow, Archer, or MetricStream, and should be familiar with national and international regulatory frameworks like NIST, ISO, SOX, EU DPD, HIPAA, PCI DSS, and GDPR. These cybersecurity professionals also work with risk analytics tools, risk assessments, and reporting tools.
Category | Organization | Certification |
---|---|---|
GRC | (ISC)2 | HCISPP |
GRC | APMG | ISO/IEC 27001-P ISO |
GRC | APMG | ISO/IEC 27001-F |
GRC | APMG | NCSP-P |
GRC | APMG | NCSP-F |
GRC | Crypto Consortium | CCSSA |
GRC | EXIN | PDP-P |
GRC | EXIN | PDP-E |
GRC | EXIN | PDP-F |
GRC | EXIN | ISO/IEC 27001-F |
Organization |
Get our latest insights. Subscribe to our newsletter.