Back to Remote jobs   >   Compliance   >   grc analyst
Junior Governance, Risk & Compliance Analyst @Davis Wright Tremaine LLP
Compliance
Salary usd 91,000 - 12..
Remote Location
πŸ‡ΊπŸ‡Έ USA Only
Employment Type full-time
Posted 4d ago

[Hiring] Junior Governance, Risk & Compliance Analyst @Davis Wright Tremaine LLP

4d ago - Davis Wright Tremaine LLP is hiring a remote Junior Governance, Risk & Compliance Analyst. πŸ’Έ Salary: usd 91,000 - 122,000 per year πŸ“Location: USA

Role Description

This is an exciting opportunity to work for one of the top law firms in the U.S.! Davis Wright Tremaine LLP is looking for a Junior Governance, Risk & Compliance (GRC) Analyst to join our team in our Seattle, Portland, Anchorage, San Francisco, Los Angeles, New York, or Washington D.C. offices. This position offers the flexibility to be fully remote while working within reasonable commuting distance from any of our offices.

The Junior GRC Analyst supports the Security Office's governance, risk management, compliance, client assurance, and third-party risk management functions. The position assists with:

  • Client security audits
  • Vendor cybersecurity reviews
  • Outside Counsel Guideline (OCG) security evaluations
  • Regulatory and certification readiness activities
  • Policy administration
  • Evidence collection
  • Security documentation management

Working under the direction of senior Security Office personnel, the Junior GRC Analyst helps maintain the firm's Information Security Management System (ISMS), coordinates responses to client security inquiries, evaluates vendor-provided security documentation, tracks remediation activities, and contributes to audit preparedness initiatives. The role serves as a foundational cybersecurity governance position designed to develop expertise in:

  • Security risk management
  • Compliance frameworks
  • Vendor security assessments
  • Client assurance activities
  • Legal industry cybersecurity requirements

On a typical day you will:

  • Client Audit & Security Questionnaire Support
    • Assist with client security audits and assessments.
    • Gather, organize, and maintain audit evidence packages.
    • Coordinate collection of supporting documentation from multiple business units.
    • Draft responses to customer security questionnaires utilizing approved evidence repositories.
    • Track audit deliverables, deadlines, and open requests.
    • Maintain client audit documentation and records.
    • Support continuous improvement of audit response processes.
  • Outside Counsel Guideline (OCG) Analysis
    • Review client Outside Counsel Guidelines for cybersecurity, privacy, AI governance, incident response, and compliance requirements.
    • Document identified security requirements and contractual obligations.
    • Track OCG-derived security requirements and remediation activities.
    • Support preparation of Security Office recommendations and exception documentation.
    • Maintain OCG tracking databases and reporting artifacts.
  • Vendor Security Reviews
    • Support vendor cybersecurity reviews and due diligence activities.
    • Review vendor security questionnaires, SIG responses, SOC reports, certifications, attestations, and supporting evidence.
    • Assist in documenting security findings, risks, recommendations, and compensating controls.
    • Track vendor remediation activities and review cycles.
    • Maintain vendor assessment records and documentation libraries.
    • Support periodic vendor reevaluations and monitoring activities.
  • Regulatory & Audit Readiness
    • Support ISO 27001, internal audit, client audit, and regulatory readiness activities.
    • Assist with evidence management and document control.
    • Verify security policies, standards, procedures, and records remain current.
    • Participate in audit preparation exercises and gap assessments.
    • Track corrective actions and audit observations.
  • Governance & Compliance Activities
    • Maintain governance documentation repositories.
    • Assist with security policy review activities.
    • Monitor compliance tracking programs.
    • Support security metrics development and reporting.
    • Assist with risk register and remediation tracking activities.
    • Contribute to process improvement and automation initiatives.
  • Documentation & Process Management
    • Update SOPs, standards, procedures, and knowledge base content.
    • Maintain audit, OCG, and vendor review records.
    • Ensure documentation remains organized, current, and accessible.
    • Coordinate with Procurement, Information Governance, Legal, and Security Operations stakeholders.

Qualifications

  • 2 years of experience in cybersecurity, compliance, audit, risk management, legal operations, governance, or related fields.
  • Bachelor's Degree in Cybersecurity, Information Systems, Business Administration, Risk Management, Legal Studies, or related field preferred.
  • Equivalent combination of education and experience may be considered.
  • Strong written communication and documentation skills.
  • Proficiency using Microsoft 365 applications.
  • Ability to manage sensitive and confidential information.
  • Strong organizational and analytical skills.
  • Ability to manage multiple concurrent projects and deadlines.
  • Exposure to cybersecurity governance or compliance activities.
  • Understanding of common security frameworks (ISO 27001, NIST CSF, SOC 2).
  • Experience reviewing contracts, questionnaires, audit requests, or vendor documentation.
  • Familiarity with professional services, legal, or highly regulated environments.
  • Experience using AI-assisted research and document analysis tools.

Benefits

  • Choice of health and vision insurance plans.
  • 2 paid volunteer days for qualifying community service work.
  • Dental plan.
  • Fertility and adoption benefit.
  • Paid sabbatical after 13 years of service.
  • Tuition reimbursement.
  • Commuter benefits.
  • Retirement contribution.
Before You Apply
️
πŸ‡ΊπŸ‡Έ Be aware of the location restriction for this remote position: USA Only
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Back to Remote jobs   >   Compliance   >   grc analyst
Junior Governance, Risk & Compliance Analyst @Davis Wright Tremaine LLP
Compliance
Salary usd 91,000 - 12..
Remote Location
πŸ‡ΊπŸ‡Έ USA Only
Employment Type full-time
Posted 4d ago
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 120,000+ Remote Jobs
️
πŸ‡ΊπŸ‡Έ Be aware of the location restriction for this remote position: USA Only
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 120,000+ Remote Jobs
Γ—
Apply to the best remote jobs
before everyone else

Access 120,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews

⚑ 123,411+ remote jobs, refreshed hourly

πŸ”” Real-time alerts: Apply first, direct to employer

πŸ›‘οΈ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later