The Senior Governance Risk and Controls (GRC) Analyst is a key driver of Dun & Bradstreet’s Global Security and Risk strategy, partnering with process owners, internal Technology, Legal, and Ethics, external auditors, and cross‑functional stakeholders to strengthen control effectiveness and regulatory alignment. This role supports the organization’s cybersecurity posture by performing third-party risk assessments, managing governance workflows in ServiceNow and TrustArc, responding to client cyber security RFIs and audits, and supporting SOC 2 and ISO 27001 certification programs globally. The analyst will also support initiatives related to AI risk, automation, and scalable GRC operations.
Operating in a highly collaborative, global environment, the Senior GRC Analyst works closely with North America and has a direct focus on EU and APAC regions. The role plays a critical part in transforming D&B’s global IT compliance program by executing internal and external assessments, managing the full lifecycle of compliance audits, and ensuring ongoing adherence to existing and emerging regulations and standards, including SOC 2, ISO 27001, PCI DSS, and related GRC initiatives.