Hiring.Camp

Technology Risk & Compliance Analyst

Bbinsurance

·

May 18, 2026

Salary
$85k – $105k
Location
Remote - Florida, United States of America
Workplace
Remote
Type
Full-time
Department
IT
Experience
3+ years
Source
Workday

Description

Built on meritocracy, our unique company culture rewards self-starters and those who are committed to doing what is best for our customers.

Brown & Brown is seeking a Technology Risk & Compliance Analyst to manage technology risk and ensure compliance across the Retail Technology portfolio. This role embeds risk and compliance into delivery as an integrated capability that enables speed, quality, and regulatory alignment.

The ideal candidate will partner with portfolio leaders, delivery teams, security, and business stakeholders to proactively identify, prioritize, and manage risks, enforce compliance standards, and drive remediation across applications, infrastructure, and data environments. This role aligns to the Retail OCIO objective of managing risk within defined appetite while enabling scalable, secure technology delivery.

How you will Contribute:

Technology Risk Management

  • Identify, assess, and document technology risks across projects, products, and platforms within the Retail portfolio.

  • Facilitate the prioritization of technology risks based on business impact, regulatory exposure, and defined risk appetite.

  • Conduct risk assessments for new initiatives, including M&A integrations and platform implementations.

  • Partner with project managers and product teams to integrate risk mitigation into delivery plans and milestones.

  • Ensure risk mitigation strategies align to enterprise risk appetite and portfolio priorities.

  • Monitor risk exposure and ensure remediation activities are tracked through completion.

Compliance Oversight & Governance

  • Ensure alignment with internal policies and external regulatory requirements (e.g., SOX, SOC controls, data privacy standards).

  • Support implementation and maintenance of IT governance, risk, and compliance (GRC) frameworks.

  • Evaluate and ensure technology policies, standards, and procedures are fit for purpose and aligned to regulatory and business requirements.

  • Recommend updates to policies and standards based on regulatory changes, audit findings, and evolving risk landscape.

  • Maintain compliance documentation, control narratives, and evidence repositories.

  • Monitor and report adherence to policies, standards, and standard operating procedures across the portfolio.

Audit & Control Effectiveness

  • Support internal and external audit activities, including evidence collection, walkthroughs, and remediation tracking.

  • Partner with internal and external Audit to support successful audit outcomes, including SOX compliance, evidence validation, and timely remediation of findings.

  • Assess effectiveness of IT controls and identify gaps across applications, infrastructure, and processes.

  • Partner with control owners to strengthen control design and execution.

  • Drive timely closure of audit findings and control deficiencies.

Vendor & Third-Party Risk

  • Partner with Vendor Management and enterprise third- and fourth-party risk teams to ensure technology-related vendor risks are identified and addressed.

  • Incorporate vendor-related risks into portfolio-level risk visibility and reporting.

  • Support tracking and remediation of vendor-related control gaps impacting Retail Technology delivery.

Reporting & Decision Support

  • Prepare and deliver transparent, decision-ready reporting for governance forums, including Steering Committees and OCIO leadership.

  • Provide insights that enable leadership to evaluate risk exposure alongside investment, delivery progress, and business outcomes.

  • Highlight trade-offs, emerging risks, and areas requiring leadership attention or decision.

  • Track key risk indicators (KRIs), control effectiveness, and remediation progress.

Continuous Improvement

  • Identify opportunities to streamline and improve GRC processes, tooling, and operating model effectiveness.

  • Contribute to the evolution of OCIO governance, risk, and control frameworks.

Skills and Experience to be Successful:

  • Bachelor’s degree in Information Technology, Cybersecurity, Business, or related field.

  • 3–7 years of experience in IT risk, compliance, audit, or cybersecurity.

  • Strong working knowledge of GRC frameworks (e.g., NIST, ISO 27001, COBIT).

  • Knowledge of regulatory standards (SOX, SOC, GDPR, or similar).

  • Experience with risk assessment, control design, and audit support.

  • Ability to translate technical risk into business impact and executive-level messaging.

  • Strong collaboration and stakeholder management across technology and business teams.

  • High attention to detail with disciplined documentation practices.

  • Able to travel up to 30%.

Pay Range

$85,000 - $105,000 Annual

The pay range provided above is made in good faith and based on our lowest and highest annual salary or hourly rate paid for the role and takes into account years of experience required, geography, and/or budget for the role.

Teammate Benefits & Total Well-Being

We go beyond standard benefits, focusing on the total well-being of our teammates, including:

  • Health Benefits: Medical/Rx, Dental, Vision, Life Insurance, Disability Insurance  
  • Financial Benefits: ESPP; 401k; Student Loan Assistance; Tuition Reimbursement 
  • Mental Health & Wellness: Free Mental Health & Enhanced Advocacy Services
  • Beyond Benefits: Paid Time Off, Holidays, Preferred Partner Discounts and more. 

Not reflective of all benefits. Enrollment waiting periods or eligibility criteria may apply to certain benefits. Benefit details and offerings may vary for subsidiary entities or in specific geographic locations. 

The Power To Be Yourself  

As an Equal Opportunity Employer, we are committed to fostering an inclusive environment comprised of people from all backgrounds, with a variety of experiences and perspectives, guided by our Diversity, Inclusion & Belonging (DIB) motto, “The Power to Be Yourself”. 

Skills

CybersecuritySOCSOXRisk ManagementComplianceGDPRISO 27001

Similar Jobs

30

Technology Risk Analyst Associate

Flagstar · New York/1400 Broadway/114025, United States of America

Today

Engineering Manager - Technology Risk, GRACE

Nab · 15 Tran Bach Dang An Khanh Ward, Vietnam

Today

Associate Manager - Technology, Risk & Compliance

Phonepe · Bangalore +1

Yesterday

Chief Operating Officer – Technology Risk, Governance, Transformation & Client Office, MD

Statestreet · BOSTON, United States of America

Yesterday

Technology Risk Engagement Lead, Regulatory Engagement

JPMorgan Chase · Singapore, Singapore, SG

2 days ago

Technology Risk Engagement Lead, Regulatory Engagement

JP Morgan Chase · Singapore, Singapore, SG

2 days ago

Principal, Technology Risk Analyst

Mastercard · O'Fallon, Missouri (Main Campus), United States of America

2 days ago

Senior Executive, Technology Risk and Compliance

PhonePe · Bangalore +1

3 days ago

Technology Risk Consulting Associate - Summer 2027

RSM · USA-NC-Charlotte-300 South Tryon Street, Suite 1500, United States of America

3 days ago

Technology Risk Consulting Associate - Summer 2027

RSM · USA-VA-McLean-1861 International Drive, Suite 400, United States of America

3 days ago

Technology Risk Consulting Associate - Summer 2027

RSM · USA-PA-Philadelphia-1735 Market Street, United States of America

3 days ago

AI Technology Risk Manager

Empower · KS Overland Park, United States of America · Remote

3 days ago

Operational & Technology Risk Lead

DriveWealth · Office - Chicago; Office - NYC

5 days ago

First Line Technology Risk Specialist - Digital Asset Product Support & Enterprise Architecture

mtb · Buffalo, NY, United States of America · Hybrid

6 days ago

Principal Analyst, HR Technology Risk and Access Governance

Boston Scientific · Arden Hills, MN,US, US · Hybrid

1 week ago

Risk Technology Data Analyst

NMRK-Property Management-PM Northeast · London, Greater London, United Kingdom, GB

1 week ago

Technology Risk and Control Manager

ITV · London, United Kingdom, GB

1 week ago

Cyber and Technology Risk Manager

Fiserv is the global leader · Berkeley Heights, New Jersey, United States of America +3 · Onsite

1 week ago

Lead Software Engineer - Risk Technology

JPMorgan Chase · Singapore, SG

1 week ago

Lead Software Engineer - Risk Technology

JP Morgan Chase · Singapore, SG

1 week ago

Associate - Technology Risk and Controls Test Sr Specialist

JPMorgan Chase · Bengaluru, Karnataka, India

1 week ago

Associate - Technology Risk and Controls Test Sr Specialist

JP Morgan Chase · Bengaluru, Karnataka, India

1 week ago

Associate - Technology Risk and Controls Test Sr Specialist

JPMorgan Chase · Bengaluru, Karnataka, India

1 week ago

Associate - Technology Risk and Controls Test Sr Specialist

JP Morgan Chase · Bengaluru, Karnataka, India

1 week ago

PolyPath Market Risk Technology Specialist (Java/Python)

Santander · Liberty Street, United States of America +1

1 week ago

PolyPath Market Risk Technology Specialist (Java/Python)

Santander Effect Our work touches · Liberty Street, United States of America +1

1 week ago

Technology Risk Remediation Governance Manager, Vice President

Statestreet · Quincy, Massachusetts, United States of America +2

1 week ago

Technology Risk Remediation Governance Manager, Vice President

Statestreet · Quincy, Massachusetts, United States of America +2

1 week ago

Assurance Experienced Manager, Technology Risk Assurance

BDO Seidman · New York, NY, United States, US

1 week ago

Senior Business Systems Analyst – Financial Risk Technology

Depository Trust Company · Jersey City, NJ, United States, US

1 week ago