GRC Analyst

CirrusLabs
Atlanta, US
HybridCareer-pivot friendly

Why this role

Pace
Fast Paced
The role demands a fast-paced environment, with the analyst frequently supporting real-world banking risk and compliance programs, indicating a high level of activity and responsiveness to changing needs.
Collaboration
Medium
Collaboration is central, as the analyst works embedded within IT and GRC teams, supporting initiatives that require coordination across multiple departments and stakeholders.
Autonomy
Medium
While collaboration is key, the role also offers significant autonomy, especially in tasks like configuring and maintaining workflows in RSA Archer, which requires independent decision-making and problem-solving.
Decision Impact
Team
Decisions made as a GRC Analyst can have a significant impact on the organization's risk posture and compliance with regulatory standards, highlighting the importance of accurate and timely work.
Role Level
Individual Contributor
The complexity of the role is high, involving a range of tasks from cybersecurity risk assessments to supporting GRC platforms and automation, requiring a broad skill set and deep understanding of risk management principles.
Career Pivot Friendly
Welcomes transferable skills
The program is designed to accelerate career growth, offering a clear path from GRC Analyst to more senior roles like Cyber Risk Consultant and GRC Architect, making it an ideal stepping stone for those looking to advance in risk management.

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • work directly on enterprise risk platforms
  • support real-world banking risk, compliance, audit, and cybersecurity programs
  • be part of large-scale regulatory, risk transformation, and system modernization initiatives
Typical background
Bachelor’s or Master’s in Cybersecurity, Information Systems, Computer Science, Risk Management / Finance (with tech exposure)

Transferable backgrounds

  • Coming from Cybersecurity intern at a tech firm
    cybersecurity fundamentals · risk management
    Experience in cybersecurity and risk management from an internship can directly translate to the tasks involving cybersecurity risk assessments and tracking vulnerabilities.
  • Coming from Data analyst at a financial services company
    data analysis · SQL
    A background in data analysis and SQL can be highly beneficial for analyzing risk data trends and supporting risk reporting.

Skills & requirements

Required

Basic Understanding Of Cybersecurity FundamentalsRisk & Compliance ConceptsExcel / Data Analysis

Preferred

Familiarity With SQL Or PythonExposure To GRC ToolsRisk FrameworksCloud SecurityCertifications

Stack & domain

RSA ArcherNISTISOCOSOExcelSQLPythonAnalyticalProblem-solvingSecurity+Certified In Cybersecurity (isc2)CriscCybersecurityRisk ManagementComplianceAuditCyber ThreatsRegulatory

About the role

As a GRC Analyst at CirrusLabs, you'll dive into the dynamic world of cybersecurity and governance, working closely with IT and GRC teams to support critical banking risk and compliance initiatives, making you a key player in safeguarding financial systems from a myriad of threats.

Original posting from CirrusLabs

🚀 Job Title

Cybersecurity & GRC Analyst (Early Career / Rising Stars Program)

Location: Atlanta, GA (Hybrid – Banking Client Environment)

Company: CirrusLabs

Industry: Banking & Financial Services

🌟 About the Opportunity (Why this role is exciting)

At CirrusLabs, we are building the next generation of Cyber Risk & Governance talent for a leading banking client.

This is not a typical entry-level role — this is a “Rising Stars Program” where fresh graduates get the opportunity to:

  • Work directly on enterprise risk platforms like RSA Archer
  • Support real-world banking risk, compliance, audit, and cybersecurity programs
  • Be part of large-scale regulatory, risk transformation, and system modernization initiatives
  • Learn how risk decisions impact billions in financial systems

You will help build, run, and improve systems that protect the bank from fraud, cyber threats, regulatory violations, and operational risks.

🎯 What You’ll Work On (Real Banking GRC Projects)

You will be embedded within IT & GRC teams supporting initiatives such as:

🔐 Cyber & IT Risk Management

  • Supporting cybersecurity risk assessments
  • Tracking vulnerabilities, control gaps, and remediation
  • Assisting with IT risk frameworks (NIST, ISO, COSO)

🧠 Archer / GRC Platform Work

  • Configuring and maintaining workflows in RSA Archer
  • Supporting modules like:
  • IT & Security Risk
  • Third-Party Risk
  • Audit Management
  • Regulatory Compliance
  • Creating dashboards, reports, and risk heatmaps

📊 Risk Data & Analytics

  • Analyzing risk data trends and control effectiveness
  • Supporting risk reporting for executives and regulators
  • Working with data from multiple systems integrated into GRC platforms

⚖️ Compliance & Regulatory Programs

  • Supporting audits (internal & external)
  • Assisting with regulatory requirements (SOX, FFIEC, etc.)
  • Helping ensure policies align with enterprise risk frameworks

🔄 Transformation & Automation

  • Supporting migration and enhancement of GRC systems
  • Working on automation of controls, workflows, and reporting
  • Exposure to AI-driven risk and fraud detection initiatives

🧠 What We’re Looking For (Fresh Graduate Profile)

🎓 Education

  • Bachelor’s or Master’s in:
  • Cybersecurity
  • Information Systems
  • Computer Science
  • Risk Management / Finance (with tech exposure)

💡 Core Skills (Must Have Potential)

  • Basic understanding of:
  • Cybersecurity fundamentals (CIA triad, threats, vulnerabilities)
  • Risk & compliance concepts
  • Familiarity with:
  • Excel / data analysis
  • SQL or Python (nice to have)
  • Strong analytical and problem-solving mindset

🚀 Bonus (Nice to Have)

  • Exposure to:
  • GRC tools (Archer, ServiceNow GRC, etc.)
  • Risk frameworks (NIST, ISO 27001)
  • Cloud security (AWS/Azure basics)
  • Certifications (or pursuing):
  • Security+
  • Certified in Cybersecurity (ISC2)
  • CRISC (entry-level awareness)

🧩 What You Will Learn (Career Acceleration)

This program is designed to turn you into:

👉 GRC Analyst → Cyber Risk Consultant → GRC Architect → Risk Leader

You will gain hands-on experience in:

  • Enterprise Risk Management (ERM) programs
  • Regulatory compliance in banking
  • GRC platforms and automation
  • Stakeholder management across IT, Risk, and Audit teams

Source: CirrusLabs careers

Similar roles