Junior Governance, Risk & Compliance (GRC) Analyst at Davis Wright Tremaine LLP | AK, US | Rezi

Junior Governance, Risk & Compliance (GRC) Analyst at Davis Wright Tremaine LLP

Junior Governance, Risk & Compliance (GRC) Analyst

Davis Wright Tremaine LLP · AK, US

2 days ago

Junior Governance, Risk & Compliance (GRC) Analyst

Davis Wright Tremaine LLP · AK, US

2 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Junior Governance, Risk & Compliance (GRC) Analyst role.

Rezi rewrites your resume against Davis Wright Tremaine LLP's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Junior Governance, Risk & Compliance (GRC) Analyst posting at Davis Wright Tremaine LLP — free, in seconds.

About the Role

This position supports the Security Office's governance, risk management, compliance, client assurance, and third-party risk management functions. The role serves as a foundational cybersecurity governance position designed to develop expertise in security risk management, compliance frameworks, vendor security assessments, client assurance activities, and legal industry cybersecurity requirements.

Responsibilities

  • Assist with client security audits and assessments.
  • Gather, organize, and maintain audit evidence packages.
  • Coordinate collection of supporting documentation from multiple business units.
  • Draft responses to customer security questionnaires utilizing approved evidence repositories.
  • Track audit deliverables, deadlines, and open requests.
  • Maintain client audit documentation and records.
  • Support continuous improvement of audit response processes.
  • Review client Outside Counsel Guidelines for cybersecurity, privacy, AI governance, incident response, and compliance requirements.
  • Document identified security requirements and contractual obligations.
  • Track OCG-derived security requirements and remediation activities.
  • Support preparation of Security Office recommendations and exception documentation.
  • Maintain OCG tracking databases and reporting artifacts.
  • Support vendor cybersecurity reviews and due diligence activities.
  • Review vendor security questionnaires, SIG responses, SOC reports, certifications, attestations, and supporting evidence.
  • Assist in documenting security findings, risks, recommendations, and compensating controls.
  • Track vendor remediation activities and review cycles.
  • Maintain vendor assessment records and documentation libraries.
  • Support periodic vendor reevaluations and monitoring activities.
  • Support ISO 27001, internal audit, client audit, and regulatory readiness activities.
  • Assist with evidence management and document control.
  • Verify security policies, standards, procedures, and records remain current.
  • Participate in audit preparation exercises and gap assessments.
  • Track corrective actions and audit observations.
  • Maintain governance documentation repositories.
  • Assist with security policy review activities.
  • Monitor compliance tracking programs.
  • Support security metrics development and reporting.
  • Assist with risk register and remediation tracking activities.
  • Contribute to process improvement and automation initiatives.
  • Update SOPs, standards, procedures, and knowledge base content.
  • Maintain audit, OCG, and vendor review records.
  • Ensure documentation remains organized, current, and accessible.
  • Coordinate with Procurement, Information Governance, Legal, and Security Operations stakeholders.

Requirements

  • 2 years of experience in cybersecurity, compliance, audit, risk management, legal operations, governance, or related fields.
  • Strong written communication and documentation skills
  • Proficiency using Microsoft 365 applications
  • Ability to manage sensitive and confidential information
  • Strong organizational and analytical skills
  • Ability to manage multiple concurrent projects and deadlines
  • Exposure to cybersecurity governance or compliance activities
  • Understanding of common security frameworks (ISO 27001, NIST CSF, SOC 2)
  • Experience reviewing contracts, questionnaires, audit requests, or vendor documentation
  • Familiarity with professional services, legal, or highly regulated environments
  • Experience using AI-assisted research and document analysis tools

Skills

  • Cybersecurity
  • Compliance
  • Audit
  • Risk Management
  • Governance
  • Client Assurance
  • Third-Party Risk Management
  • Information Security Management System (ISMS)
  • Microsoft 365
  • ISO 27001
  • NIST CSF
  • SOC 2

Location

  • Seattle
  • Portland
  • Anchorage
  • San Francisco
  • Los Angeles
  • New York
  • Washington D.C.

Work Type

  • Fully remote
  • Onsite

Experience Level

  • Junior

Education Level

  • Bachelor's Degree in Cybersecurity, Information Systems, Business Administration, Risk Management, Legal Studies, or related field preferred
  • Equivalent combination of education and experience may be considered

Salary/Compensations

  • Washington: $94,000 to $104,000
  • Los Angeles: $91,000 to $101,000
  • San Francisco: $111,000 to $122,000
  • New York City: $101,000 to $111,000
  • Washington D.C.: $97,000 to $107,000

Benefits

  • Choice of health and vision insurance plans
  • 2 paid volunteer days for qualifying community service work
  • Dental plan
  • Fertility and adoption benefit
  • Paid sabbatical after 13 years of service
  • Tuition reimbursement
  • Commuter benefits
  • Retirement contribution
  • Health insurance with an optional HSA
  • Long term disability
  • Vision care
  • Telemedicine and virtual short term solution based counseling services
  • Life insurance
  • Healthcare and Dependent Care Flexible Spending Accounts
  • Subsidized backup care and caregiving resources
  • 401(k)
  • Vacation
  • Sick time
  • 11 paid holidays each year
  • Employee assistance program
  • Voluntary accident insurance
  • Voluntary life
  • Voluntary disability
  • Voluntary long term care
  • Pet insurance
  • Commuter and Transit programs

About the Company

  • Davis Wright Tremaine LLP is one of the top law firms in the U.S.
  • Davis Wright Tremaine LLP is an AmLaw 100 law firm with 9 offices nationwide.
  • We are relentlessly committed to client service and look for candidates who share that commitment.
  • At DWT, client service means having empathy for each client’s and each lawyer’s work and personal pressures, business objectives, and legal needs; anticipating their needs; and having the capabilities and commitment to deliver what matters most to them.
  • At Davis Wright Tremaine, you will find challenging assignments, opportunities for professional growth and community involvement, and a culture of inclusion.
  • DWT fosters inclusiveness and authenticity.
  • Regardless of position, everyone here has a voice and the support is unparalleled.

Equal Opportunity

  • Davis Wright Tremaine LLP fosters a culture where all talented individuals—including those who are traditionally underrepresented in the legal profession—can have, and can see, paths to success.
  • Our commitment to diversity, equity, and inclusion sits on four pillars: Community, Growth, Education, and Engagement.
  • Davis Wright Tremaine provides reasonable accommodations for those who need them to complete the application or recruiting process and for employees who need reasonable accommodations to perform the essential functions of their positions due to a disability or for religious reasons.