Risk Compliance Analyst Jobs
Risk Compliance Analyst jobs are open across financial services, healthcare, insurance, and technology, from entry-level to senior and manager roles, with specializations in regulatory compliance, enterprise risk management, and AML. Find a role that fits from the openings below and apply directly.
Find Risk Compliance Analyst JobsLooking for remote work? View remote risk compliance analyst jobs →Overview
Showing 5 of 377+ Risk Compliance Analyst jobs








Location: Denville, NJ (In Office 5 Days/Week)
Travel: Client onsite visits throughout Northern New Jersey as required
Company: Proactive Risk, Inc.
Website: www.proactiverisk.com
About Proactive Risk
Proactive Risk is a cybersecurity, technology risk management, and compliance advisory firm serving commercial, government, and regulated organizations. We help clients strengthen their cybersecurity posture through governance, risk management, compliance assessments, penetration testing, vCISO services, managed security consulting, and third-party risk programs.
We are seeking a professional, client-facing Cybersecurity & Compliance Consultant to join our growing team. This position requires an individual who can work directly with clients, conduct assessments, gather evidence, identify security gaps, and help organizations improve their cybersecurity and compliance programs.
This is not a fully remote position. Candidates must reside within approximately 20 miles of our Denville, NJ headquarters and be available to work from the office five days per week while traveling to client locations as required.
Position Summary
The Cybersecurity & Compliance Consultant is responsible for delivering cybersecurity, risk management, and compliance consulting services to clients. The role combines technical knowledge, project management, client communication, and regulatory compliance expertise.
The ideal candidate possesses a strong understanding of cybersecurity controls, Microsoft 365 environments, risk assessments, and compliance frameworks such as CIS Controls, NIST 800-171, CMMC, and NIST 800-53.
This role involves both onsite and remote client engagement, evidence collection, control validation, report development, policy support, and project coordination.
ResponsibilitiesClient Engagement & Consulting
- Conduct client interviews, workshops, and discovery sessions both onsite and remotely.
- Gather and review documentation, policies, procedures, and technical evidence.
- Assist organizations in identifying gaps, risks, and compliance deficiencies.
- Develop remediation recommendations and implementation roadmaps.
- Present findings and recommendations to business and technical stakeholders.
- Serve as a trusted advisor to client leadership teams.
Governance, Risk & Compliance (GRC)
- Perform cybersecurity and compliance assessments against:
- CIS Controls v8.1
- NIST SP 800-171
- NIST SP 800-53
- CMMC
- NY Shield Act
- PCI DSS
- Other regulatory requirements as assigned
- Assist with risk assessments, risk register development, and remediation planning.
- Support clients with governance, policy, and procedure development.
- Maintain compliance documentation and audit evidence repositories.
Security & Technical Assessments
- Evaluate administrative, technical, and physical security controls.
- Participate in security reviews involving:
- Firewalls
- VPNs
- Multi-factor Authentication
- Identity and Access Management
- Microsoft 365 Security
- Endpoint Security Platforms
- Vulnerability Management Programs
- Review network architectures, cloud environments, and security configurations.
- Analyze security findings and assist with remediation planning.
Audit & Compliance Support
- Collect and validate audit evidence.
- Support internal and external security audits.
- Track remediation activities and compliance milestones.
- Utilize compliance platforms such as:
- Apptega
- Virtual CISO
- HaloPSA
- Other governance and risk management tools
Project Management
- Manage multiple client engagements simultaneously.
- Track project progress, deliverables, and deadlines.
- Coordinate activities between clients, consultants, and technical teams.
- Communicate project status professionally and proactively.
Required Qualifications
- 3-7 years of experience in cybersecurity, information technology, risk management, compliance, or consulting.
- Experience conducting assessments, audits, or security reviews.
- Strong understanding of cybersecurity frameworks and best practices.
- Experience working with Microsoft 365, Entra ID (Azure AD), Intune, and cloud-based environments.
- Working knowledge of networking fundamentals including:
- TCP/IP
- DNS
- DHCP
- VPN technologies
- Firewalls
- Routing and Switching
- Strong written communication and documentation skills.
- Ability to interact professionally with executives, technical teams, and business stakeholders.
- Ability to manage multiple projects and priorities simultaneously.
- Valid driver's license and reliable transportation.
Preferred Qualifications
- Experience with:
- CIS Controls
- NIST 800-171
- CMMC
- NIST 800-53
- PCI DSS
- Risk Management Programs
- Familiarity with:
- Windows Server
- Linux
- macOS
- Microsoft Defender
- Security Monitoring Platforms
- Basic automation or scripting skills in:
- PowerShell
- Python
- Bash
- Previous consulting, MSP, MSSP, or advisory experience.
- Industry certifications such as:
- Security+
- CISSP
- CISM
- CRISC
- CISA
- Microsoft Security Certifications
Work Environment
- Office-based position located in Denville, NJ.
- Candidate must reside within approximately 20 miles of Denville, NJ.
- In-office attendance required five days per week.
- Regular travel to client sites throughout Morris, Essex, Passaic, Union, and surrounding counties.
- Hybrid delivery model requiring both onsite and remote consulting services.
What Success Looks Like
Within your first year, you will:
- Lead client assessment engagements.
- Conduct interviews and evidence collection independently.
- Deliver high-quality risk and compliance reports.
- Support cybersecurity program development initiatives.
- Become a trusted advisor to multiple Proactive Risk clients.
- Contribute to the growth and reputation of Proactive Risk's CyberAdvisor consulting team.
Join Proactive Risk and help organizations strengthen their cybersecurity, compliance, and operational resilience while building a rewarding consulting career.
Pay: $65,000.00 - $75,000.00 per year
Benefits:
- 401(k)
- Flexible schedule
Work Location: In person
Risk Compliance Analyst Jobs by Experience Level
Top Cities Hiring Risk Compliance Analysts
Explore risk compliance analyst openings in the cities hiring most right now.
See All 377+ Risk Compliance Analyst Jobs
Find roles that match your experience and apply in just a few clicks.
Find Risk Compliance Analyst JobsRisk Compliance Analyst Job Market
Who's Hiring
- JPMorganChase29

- Thermo Fisher Scientific10

- Deloitte9

- Amazon9

- Google5

Top Industries Hiring
- Technology & Software25
- Banking & Financial Services20
- Investment & Asset Management11
- Consulting & Professional Services8
- Retail7
What Employers Look For
The qualifications that appear most often in risk compliance analyst jobs.
- Bachelor's degree in finance, accounting, business, or a related field
- Experience with risk frameworks such as COSO, SOX, or ISO 31000
- Proficiency in compliance management or GRC software platforms
- Knowledge of applicable regulations including BSA, AML, HIPAA, or FINRA rules
- Strong written communication skills for policy documentation and regulatory reporting
- Professional certification such as CRCM, CFE, CAMS, or CRISC preferred
Tips for Your Risk Compliance Analyst Job Search
Tailor your resume to regulatory frameworks
Hiring managers scan for the specific frameworks you know, whether that's SOX, BSA, HIPAA, or COSO. Name each one explicitly in your experience bullets rather than grouping them under vague phrases like 'regulatory knowledge.'
Earn a targeted compliance certification
Credentials like the CRCM, CFE, or CAMS signal specialization that a degree alone doesn't. Choose the one that aligns with the sector you're targeting, since financial services firms weigh these differently than healthcare or tech employers.
Apply early to roles that fit
Migrate Mate lists risk compliance analyst openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Filter job listings by compliance function
Titles like 'risk analyst,' 'compliance analyst,' and 'regulatory affairs analyst' overlap heavily. Search all three variants and read the responsibilities carefully, because the actual work, whether it's controls testing or policy writing, varies more than the title suggests.
Prepare for a technical scenario round
Many risk compliance interviews include a written or verbal scenario where you're asked to identify a control gap or respond to a regulatory finding. Practice walking through your reasoning methodically, citing the framework or regulation that applies.
Negotiate using scope, not just title
When evaluating an offer, ask specifically what regulatory bodies the team reports to and how large the controls inventory is. These details reveal whether the role has real growth potential and give you concrete leverage in negotiations beyond base compensation.
Risk Compliance Analyst Jobs: Frequently Asked Questions
Which companies are hiring the most risk compliance analysts?
The companies hiring the most risk compliance analysts right now include JPMorganChase, Thermo Fisher Scientific, and Deloitte, with the largest share of openings in California, Texas, and New York, based on current listings on Migrate Mate as of August 2026. Financial services firms and large regional banks tend to post the highest volume of openings year-round.
How many risk compliance analyst jobs are remote?
About 62% of risk compliance analyst openings are fully remote or hybrid as of August 2026, though availability varies by sector and seniority. Policy development, regulatory reporting, and controls documentation roles tend to be the most remote-friendly, while positions requiring on-site audits or direct examination management are more likely to require in-person presence.
How do you become a risk compliance analyst?
Start with a bachelor's degree in finance, accounting, business administration, or a related field. Build foundational knowledge of a regulatory framework relevant to your target industry, such as SOX for public companies or BSA for banking. Gain early experience through internal audit, operations, or a junior compliance role, then pursue a sector-specific certification like the CRCM or CFE to advance.
Can you get a risk compliance analyst job with little experience?
Yes, entry-level risk compliance analyst roles exist and typically look for candidates with relevant coursework, internship experience, or a background in adjacent functions like internal audit, operations, or quality assurance. Demonstrating familiarity with a specific regulatory framework, even from academic projects or self-study, and holding or actively pursuing a compliance certification significantly strengthens an application with a thin work history.
What does the risk compliance analyst interview process look like?
The process typically includes an initial recruiter screen, a hiring manager interview focused on your regulatory knowledge and past experience with controls or audits, and one or more technical rounds where you may be asked to walk through a compliance scenario or analyze a hypothetical risk finding. Some employers add a writing sample or case study to assess how you document findings and communicate risk to stakeholders.
Where can I find and apply to risk compliance analyst jobs?
You can find and apply to risk compliance analyst jobs on Migrate Mate, which lists current openings from across the United States. Find roles that match your experience level and specialization, then apply directly to each listing from the same place.
See All 377+ Risk Compliance Analyst Jobs
Find roles that match your experience and apply in just a few clicks.
Find Risk Compliance Analyst Jobs