Home/Resume Examples/GRC Analyst
Cybersecurity

GRC Analyst Resume Example

Use this grc analyst resume example as a reference. Our AI tailors it to any job description in seconds.

Avg. Salary

$80,000 - $125,000

Level

Mid-Level

1

Professional Summary

GRC analyst with 4 years managing governance, risk, and compliance programs for technology companies. Experienced in SOC 2, ISO 27001, and GDPR compliance, with strong skills in risk assessment, policy development, and audit coordination across engineering and business stakeholders.

2

Key Skills

Risk AssessmentSOC 2/ISO 27001GDPR/CCPAPolicy DevelopmentAudit CoordinationVendor Risk ManagementGRC Platforms (ServiceNow, Vanta)Control TestingRisk Register ManagementCompliance MonitoringSecurity Awareness Training
3

Sample Experience Bullets

  • Managed the SOC 2 Type II compliance program across 200+ controls. Clean audit reports three years running with zero exceptions
  • Did 50+ vendor risk assessments per year. Set up a tiered review process that cut assessment time by 40%
  • Wrote and maintained 30+ security policies aligned with NIST CSF. 95% employee acknowledgment rate
  • Set up Vanta for automated compliance monitoring. Evidence collection went from 200 hours to 20 hours per audit cycle
  • Led the GDPR compliance initiative - data mapping, DPIAs, and privacy impact reviews across 15 data processing activities
  • Responsible for maintaining the risk register and presenting quarterly risk reports to the security committee
  • Worked with engineering to collect evidence for SOC 2 controls like change management, access reviews, and incident response
  • Managed the security awareness training program. Ran phishing simulations monthly and tracked completion metrics
  • Coordinated with external auditors during the annual audit. Scheduled interviews, gathered evidence, and tracked remediation items
4

ATS Keywords

Include these keywords in your resume to pass Applicant Tracking Systems.

GRC analystgovernance risk compliancerisk assessmentcompliance analystaudit managementsecurity compliancevendor riskpolicy managementregulatory compliancecontrol framework
5

Recommended Certifications

  • CRISC (Certified in Risk and Information Systems Control)
  • CISA (Certified Information Systems Auditor)
  • ISO 27001 Lead Auditor

Build your GRC Analyst resume

Paste a job description and get a tailored, ATS-optimized resume in 20 seconds.

Generate Resume Free

No credit card required