×
Register Here to Apply for Jobs or Post Jobs. X

Junior Governance, Risk & Compliance; GRC) Analyst

Job in Marysville, Snohomish County, Washington, 98270, USA
Listing for: Jobvite, Inc.
Full Time position
Listed on 2026-10-04
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 94000 - 104000 USD Yearly USD 94000.00 104000.00 YEAR
Job Description & How to Apply Below
Position: Junior Governance, Risk & Compliance (GRC) Analyst

This is an exciting opportunity to work for one of the top law firms in the U.S.! Davis Wright Tremaine LLP is looking for a Junior Governance, Risk & Compliance (GRC) Analyst to join our team in our Seattle, Portland, Anchorage, San Francisco, Los Angeles, New York or Washington D.C. offices.

This position offers the flexibility to be fully remote while working within reasonable commuting distance from any of our offices.

The Junior GRC Analyst supports the Security Office's governance, risk management, compliance, client assurance, and third-party risk management functions. The position assists with client security audits, vendor cybersecurity reviews, Outside Counsel Guideline (OCG) security evaluations, regulatory and certification readiness activities, policy administration, evidence collection, and security documentation management.

Working under the direction of senior Security Office personnel, the Junior GRC Analyst helps maintain the firm's Information Security Management System (ISMS), coordinates responses to client security inquiries, evaluates vendor-provided security documentation, tracks remediation activities, and contributes to audit preparedness initiatives. The role serves as a foundational cybersecurity governance position designed to develop expertise in security risk management, compliance frameworks, vendor security assessments, client assurance activities, and legal industry cybersecurity requirements.

At Davis Wright Tremaine, you will find challenging assignments, opportunities for professional growth and community involvement, and a culture of inclusion. DWT fosters inclusiveness and authenticity. Regardless of position, everyone here has a voice and the support is unparalleled.

On a typical day you will:
  • Client Audit & Security Questionnaire Support
    • Assist with client security audits and assessments.
    • Gather, organize, and maintain audit evidence packages.
    • Coordinate collection of supporting documentation from multiple business units.
    • Draft responses to customer security questionnaires utilizing approved evidence repositories.
    • Track audit deliverables, deadlines, and open requests.
    • Maintain client audit documentation and records.
    • Support continuous improvement of audit response processes.
  • Outside Counsel Guideline (OCG) Analysis
    • Review client Outside Counsel Guidelines for cybersecurity, privacy, AI governance, incident response, and compliance requirements.
    • Document identified security requirements and contractual obligations.
    • Track OCG-derived security requirements and remediation activities.
    • Support preparation of Security Office recommendations and exception documentation.
    • Maintain OCG tracking databases and reporting artifacts.
  • Vendor Security Reviews
    • Support vendor cybersecurity reviews and due diligence activities.
    • Review vendor security questionnaires, SIG responses, SOC reports, certifications, attestations, and supporting evidence.
    • Assist in documenting security findings, risks, recommendations, and compensating controls.
    • Track vendor remediation activities and review cycles.
    • Maintain vendor assessment records and documentation libraries.
    • Support periodic vendor reevaluations and monitoring activities.
  • Regulatory & Audit Readiness
    • Support ISO 27001, internal audit, client audit, and regulatory readiness activities.
    • Assist with evidence management and document control.
    • Verify security policies, standards, procedures, and records remain current.
    • Participate in audit preparation exercises and gap assessments.
    • Track corrective actions and audit observations.
  • Governance & Compliance Activities
    • Maintain governance documentation repositories.
    • Assist with security policy review activities.
    • Monitor compliance tracking programs.
    • Support security metrics development and reporting.
    • Assist with risk register and remediation tracking activities.
    • Contribute to process improvement and automation initiatives.
  • Documentation & Process Management
    • Update SOPs, standards, procedures, and knowledge base content.
    • Maintain audit, OCG, and vendor review records.
    • Ensure documentation remains organized, current, and accessible.
    • Coordinate with Procurement, Information Governance, Legal, and Security Operations stakeholders.
Join us if you have:
  • 2 years of experience in cybersecurity, compliance, audit, risk management, legal operations, governance, or related fields.
  • Bachelor's Degree in Cybersecurity, Information Systems, Business Administration, Risk Management, Legal Studies, or related field preferred
  • Equivalent combination of education and…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary