Logo for Davis Wright Tremaine LLP

Junior Governance, Risk & Compliance (GRC) Analyst

Role overview

Qualifications

  • 2 years of experience in cybersecurity, compliance, audit, risk management, legal operations, governance, or related fields
  • Bachelor's Degree in Cybersecurity, Information Systems, Business Administration, Risk Management, Legal Studies, or related field preferred
  • Strong written communication and documentation skills
  • Proficiency using Microsoft 365 applications

Responsibilities

  • Assist with client security audits and assessments
  • Review client Outside Counsel Guidelines for cybersecurity and compliance requirements
  • Support vendor cybersecurity reviews and due diligence activities
  • Assist with evidence management and document control

Hard skills

Other skills

  • Governance
  • Organizational Skills
  • Analytical Skills
  • Time Management

About the company

Davis Wright Tremaine LLP logo

Davis Wright Tremaine LLP

Legal Services

What does success look like for you? The answer will be different for every client and for everyone who joins our firm. Our dedication to custom-tailored service and great client experiences distinguishes us in the market, and we take the same approach to careers. There is no one-size-fits-all. Goals and needs differ, and change with time and circumstance. What remains constant is our dedication to top-of-market excellence and innovation in client service. We focus on what we do extremely well. This means we will not be all things to all people. But it means we are a highly valued partner with all who work with us in defining success together.

Company details

Company typeLarge
IndustryLegal Services
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

This is an exciting opportunity to work for one of the top law firms in the U.S.! Davis Wright Tremaine LLP is looking for a Junior Governance, Risk & Compliance (GRC) Analyst to join our team in our Seattle, Portland, Anchorage, San Francisco, Los Angeles, New York or Washington D.C. offices. 

This position offers the flexibility to be fully remote while working within reasonable commuting distance from any of our offices.  

The Junior GRC Analyst supports the Security Office's governance, risk management, compliance, client assurance, and third-party risk management functions. The position assists with client security audits, vendor cybersecurity reviews, Outside Counsel Guideline (OCG) security evaluations, regulatory and certification readiness activities, policy administration, evidence collection, and security documentation management. 

Working under the direction of senior Security Office personnel, the Junior GRC Analyst helps maintain the firm's Information Security Management System (ISMS), coordinates responses to client security inquiries, evaluates vendor-provided security documentation, tracks remediation activities, and contributes to audit preparedness initiatives. The role serves as a foundational cybersecurity governance position designed to develop expertise in security risk management, compliance frameworks, vendor security assessments, client assurance activities, and legal industry cybersecurity requirements.

At Davis Wright Tremaine, you will find challenging assignments, opportunities for professional growth and community involvement, and a culture of inclusion. DWT fosters inclusiveness and authenticity. Regardless of position, everyone here has a voice and the support is unparalleled.

On a typical day you will:

  • Client Audit & Security Questionnaire Support
    • Assist with client security audits and assessments.
    • Gather, organize, and maintain audit evidence packages.
    • Coordinate collection of supporting documentation from multiple business units.
    • Draft responses to customer security questionnaires utilizing approved evidence repositories.
    • Track audit deliverables, deadlines, and open requests.
    • Maintain client audit documentation and records.
    • Support continuous improvement of audit response processes.
  • Outside Counsel Guideline (OCG) Analysis
    • Review client Outside Counsel Guidelines for cybersecurity, privacy, AI governance, incident response, and compliance requirements.
    • Document identified security requirements and contractual obligations.
    • Track OCG-derived security requirements and remediation activities.
    • Support preparation of Security Office recommendations and exception documentation.
    • Maintain OCG tracking databases and reporting artifacts.
  • Vendor Security Reviews
    • Support vendor cybersecurity reviews and due diligence activities.
    • Review vendor security questionnaires, SIG responses, SOC reports, certifications, attestations, and supporting evidence.
    • Assist in documenting security findings, risks, recommendations, and compensating controls.
    • Track vendor remediation activities and review cycles.
    • Maintain vendor assessment records and documentation libraries.
    • Support periodic vendor reevaluations and monitoring activities.
  • Regulatory & Audit Readiness
    • Support ISO 27001, internal audit, client audit, and regulatory readiness activities.
    • Assist with evidence management and document control.
    • Verify security policies, standards, procedures, and records remain current.
    • Participate in audit preparation exercises and gap assessments.
    • Track corrective actions and audit observations.
  • Governance & Compliance Activities
    • Maintain governance documentation repositories.
    • Assist with security policy review activities.
    • Monitor compliance tracking programs.
    • Support security metrics development and reporting.
    • Assist with risk register and remediation tracking activities.
    • Contribute to process improvement and automation initiatives.
  • Documentation & Process Management
    • Update SOPs, standards, procedures, and knowledge base content.
    • Maintain audit, OCG, and vendor review records.
    • Ensure documentation remains organized, current, and accessible.
    • Coordinate with Procurement, Information Governance, Legal, and Security Operations stakeholders.

Join us if you have:

  • 2 years of experience in cybersecurity, compliance, audit, risk management, legal operations, governance, or related fields.
  • Bachelor's Degree in Cybersecurity, Information Systems, Business Administration, Risk Management, Legal Studies, or related field preferred
  • Equivalent combination of education and experience may be considered
  • Strong written communication and documentation skills
  • Proficiency using Microsoft 365 applications
  • Ability to manage sensitive and confidential information
  • Strong organizational and analytical skills
  • Ability to manage multiple concurrent projects and deadlines
  • Exposure to cybersecurity governance or compliance activities
  • Understanding of common security frameworks (ISO 27001, NIST CSF, SOC 2)
  • Experience reviewing contracts, questionnaires, audit requests, or vendor documentation
  • Familiarity with professional services, legal, or highly regulated environments
  • Experience using AI-assisted research and document analysis tools

Who We Are

Davis Wright Tremaine LLP is an AmLaw 100 law firm with 9 offices nationwide. We are relentlessly committed to client service and look for candidates who share that commitment. At DWT, client service means having empathy for each client’s and each lawyer’s work and personal pressures, business objectives, and legal needs; anticipating their needs; and having the capabilities and commitment to deliver what matters most to them.

What’s in it For You?

DWT offers competitive compensation in addition to ample benefits including but not limited to:

  • Choice of health and vision insurance plans
  • 2 paid volunteer days for qualifying community service work
  • Dental plan
  • Fertility and adoption benefit
  • Paid sabbatical after 13 years of service
  • Tuition reimbursement
  • Commuter benefits
  • Retirement contribution

This job description intends to describe the general nature and level of work being performed by individuals assigned to this position. It is not intended to include all duties and responsibilities.

Washington State  

The annualized salary range for this position in Washington is $94,000 to $104,000. Actual pay will be adjusted based on the candidate’s education, training, experience and other job-related factors permitted by law.  Full time employees may be eligible for a bonus, health insurance with an optional HSA, long term disability, dental insurance, vision care, telemedicine and virtual short term solution based counseling services, life insurance, Healthcare and Dependent Care Flexible Spending Accounts, subsidized backup care and caregiving resources, 401(k), vacation, sick time, 11 paid holidays each year and an employee assistance program.  For full-time employees, the initial vacation benefit is 15 days per year and 11 days of sick leave per year, accrued bi-weekly. Additional voluntary programs include:  voluntary accident insurance, voluntary life, voluntary disability, voluntary long term care, and pet insurance.  Commuter and Transit programs are also available.

California

The annualized salary range for this position in Los Angeles is $91,000 to $101,000; and in San Francisco is $111,000 to $122,000. Actual pay will be adjusted based on experience and other job-related factors permitted by law.  Full time employees may be eligible for a bonus, health insurance with an optional HSA, long term disability, dental insurance, vision care, telemedicine and virtual short term solution based counseling services, life insurance, Healthcare and Dependent Care Flexible Spending Accounts, subsidized backup care and caregiving resources, 401(k), vacation, sick time, and an employee assistance program.  Additional voluntary programs include:  voluntary accident insurance, voluntary life, voluntary disability, voluntary long term care, and pet insurance.  Commuter and Transit programs are also available.

New York

The annualized salary range for this position in New York City is $101,000 to $111,000. Actual pay will be adjusted based on experience and other job-related factors permitted by law.  Full time employees may be eligible for a bonus, health insurance with an optional HSA, short term disability, long term disability, dental insurance, vision care, telemedicine and virtual short term solution based counseling services, life insurance, Healthcare and Dependent Care Flexible Spending Accounts, subsidized backup care and caregiving resources, 401(k), vacation, sick time, and an employee assistance program.  Additional voluntary programs include:  voluntary accident insurance, voluntary life, voluntary disability, voluntary long term care, and pet insurance.  Commuter and Transit programs are also available.

District of Columbia

The annualized salary range for this position in Washington D.C. is $97,000 to $107,000. Actual pay will be adjusted based on experience and other job-related factors permitted by law. Full time employees may be eligible for a bonus, health insurance with an optional HSA, short term disability, long term disability, dental insurance, vision care, telemedicine and virtual short term solution based counseling services, life insurance, Healthcare and Dependent Care Flexible Spending Accounts, subsidized backup care and caregiving resources, 401(k), vacation, sick time, and an employee assistance program. Additional voluntary programs include: voluntary accident insurance, voluntary life, voluntary disability, voluntary long term care, and pet insurance. Commuter and Transit programs are also available.

Davis Wright Tremaine LLP fosters a culture where all talented individuals—including those who are traditionally underrepresented in the legal profession—can have, and can see, paths to success. Our commitment to diversity, equity, and inclusion sits on four pillars: Community, Growth, Education, and Engagement. Learn more about the firm’s commitment to DEI here:www.dwt.com/dei. 


Davis Wright Tremaine provides reasonable accommodations for those who need them to complete the application or recruiting process and for employees who need reasonable accommodations to perform the essential functions of their positions due to a disability or for religious reasons. If you need to request accommodation during the application or recruiting process, please email humanresources_confidential@dwt.com.  

#LI-DL1

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Risk and Compliance Analyst Related jobs

Other jobs at Davis Wright Tremaine LLP

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.