GRC Analyst Job at Acrisure LLC, Oklahoma City, OK

bERzRmViVjZCUkZLd3hoS1VhVVBKN2w4bUE9PQ==
  • Acrisure LLC
  • Oklahoma City, OK

Job Description

About Auris

Auris is the payroll and HR partner built for small and medium-sized business who can't afford to get it wrong. Trusted by over 50,000 business nationwide, Auris pairs easy-to-use technology with with real human services to give leaders the confidence that every detail is done right - so they can focus on growing their team and their business. Acquired by Acrisure in 2025, Auris formerly Heartland Payroll is accelerating its vision to deliver seamless human-centered technology to help small businesses thrive.


Role Summary

You will be a hands-on GRC professional who builds, monitors, and improves the frameworks that keep our organization compliant, resilient, and risk-informed. You'll work across technology, operations, and product teams to assess control effectiveness, manage audits, and translate regulatory requirements into actionable, measurable security practices.


Success in this role means turning governance into enablement - helping teams move faster by defining clear expectations, automating evidence, and maintaining trust with our customers, auditors, and partners.


Role Requirements

  • Maintain and evolve the Information Security Governance Framework aligned with NIST, ISO 27001, SOC 2, PCI-DSS, and SOX.

  • Map controls across frameworks to identify overlaps, gaps, and automation opportunities.

  • Draft and update policies, standards, and procedures.

  • Monitor control effectiveness through dashboards and continuous checks.
  • Identify, assess, and report technology and cybersecurity risks.

  • Facilitate risk assessments for products, vendors, and projects; track mitigation plans.

  • Maintain risk register with likelihood, impact, and residual risk metrics.

  • Produce risk reports and heatmaps for leadership.

  • Lead or support audits (SOC, NYDFS, Texas DOB); coordinate evidence and interviews.
  • Maintain audit calendar and ensure timely control testing.

  • Track remediation of findings and report status.

  • Manage vendor security reviews: questionnaires, evidence validation, risk scoring.

  • Oversee security due diligence for acquisitions and critical partners.

  • Maintain vendor risk register and report exposure.

  • Publish dashboards on control health, risk posture, and compliance.

  • Communicate risk and compliance expectations clearly to stakeholders.

  • Support security awareness and training campaigns.

Behavior Competencies

Enablement mindset: You see governance as a way to empower teams, not block them.


Curiosity: You dig into how controls really work in technical systems, not just on paper.


Precision: You care about evidence quality and clarity of documentation.


Collaboration: You work cross-functionally with engineers, legal, and executives to close risk gaps.


Communication: You distill complex regulatory and control requirements into understandable, actionable guidance.


#Auris


Candidates should be comfortable with an on-site presence to support collaboration, team leadership, and cross-functional partnership.

Why Join Us:

At Acrisure, we're building more than a business, we're building a community where people can grow, thrive, and make an impact. Our benefits are designed to support every dimension of your life, from your health and finances to your family and future.

Making a lasting impact on the communities it serves, Acrisure has pledged more than $22 million through its partnerships with Corewell Health Helen DeVos Children's Hospital in Grand Rapids, Michigan, UPMC Children's Hospital in Pittsburgh, Pennsylvania and Blythedale Children's Hospital in Valhalla, New York.

Employee Benefits

We also offer our employees a comprehensive suite of benefits and perks, including:
  • Physical Wellness: Comprehensive medical insurance, dental insurance, and vision insurance; life and disability insurance; fertility benefits; wellness resources; and paid sick time.
  • Mental Wellness: Generous paid time off and holidays; Employee Assistance Program (EAP); and a complimentary Calm app subscription.
  • Financial Wellness: Immediate vesting in a 401(k) plan; Health Savings Account (HSA) and Flexible Spending Account (FSA) options; commuter benefits; and employee discount programs.
  • Family Care: Paid maternity leave and paid paternity leave (including for adoptive parents); legal plan options; and pet insurance coverage.
  • ... and so much more!
This list is not exhaustive of all available benefits. Eligibility and waiting periods may apply to certain offerings. Benefits may vary based on subsidiary entity and geographic location.

Acrisure is an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, religion, sex, national origin, disability, or protected veteran status. Applicants may request reasonable accommodation by contacting leaves@acrisure.com.

California Residents: Learn more about our privacy practices for applicants by visiting the Acrisure California Applicant Privacy Policy.

Recruitment Fraud: Please visit here to learn more about our Recruitment Fraud Notice.

Welcome, your new opportunity awaits you.

Job Tags

Immediate start, Flexible hours

Similar Jobs

NEFCO Fire Investigations

Certified Fire Investigators Job at NEFCO Fire Investigations

 ...Join the Industry Leader in Fire Investigations NOW HIRING: Experienced Fire Investigators Nationwide NEFCO Fire Investigations is continuing to grow and is actively seeking highly qualified fire investigators across the United States to join our industry-leading... 

DocuSign

GTM Systems Manager Job at DocuSign

 ...location is required. (Frequency: Minimum 2 days per week; may vary by team but will be weekly in-office expectation) Positions at Docusign are assigned a job designation of either In Office, Hybrid or Remote and are specific to the role/job. Preferred job designations... 

City and County of San Francisco

Investigator Job at City and County of San Francisco

 ...Background Investigator Under general direction, coordinates, directs and conducts background investigations for candidates under consideration for employment. Incumbents in this class are considered journey level investigators who may function independently or as... 

Menasha Corporation

2nd Shift Plastic Extrusion Operator Job at Menasha Corporation

A leading packaging manufacturer in Wisconsin is seeking an experienced machine operator to set up and operate extrusion machinery, ensuring high-quality production standards. The role requires strong mechanical skills and the ability to troubleshoot issues to minimize... 

Suncap Technology

CFO Job at Suncap Technology

 ...planning. Team Leadership: Provide strong leadership to the finance team, fostering a culture of excellence, collaboration, and...  ...Education & Experience Bachelor's degree in accounting; Masters or MBA preferred. CP must. Proven experience as a CFO...