See all roles

Security Compliance Analyst, GRC

Work from home Full-time role Hiring

Job Description:

  • Support and maintain security and compliance programs aligned with frameworks such as NIST, ISO, PCI DSS, and HIPAA
  • Assist in maintaining alignment with global privacy regulations (GDPR, CCPA, and similar frameworks)
  • Assist in the development, implementation, and maintenance of security, privacy, and AI governance policies, standards, and procedures
  • Coordinate and support internal and external audits (e.g., SOX, PCI DSS, SOC 2, ISO, HIPAA)
  • Track and manage remediation efforts for identified risks, control gaps, and audit findings
  • Support third-party risk management processes, including vendor assessments for AI/ML and data processing providers
  • Partner with engineering, data, and AI/ML teams to ensure secure and compliant system and model lifecycle practices
  • Maintain and improve GRC tooling (e.g., AuditBoard, Vanta, or similar platforms)
  • Monitor regulatory and framework changes (U.S. and international), including emerging AI governance requirements
  • Develop and maintain risk registers, control matrices, and compliance documentation
  • Conduct risk assessments, including technology, security, privacy, and AI/ML model risk evaluations
  • Assist with security, privacy, and responsible AI awareness and training initiatives
  • Provide reporting and metrics on risk posture, compliance status, and AI governance maturity

Requirements:

  • Bachelor’s degree in Cybersecurity, Information Security, Information Technology/Systems, or related field
  • 3–5 years of experience in GRC, security compliance, risk management, audit, or related field
  • Experience supporting audits and compliance assessments
  • Experience with third-party/vendor risk management
  • Familiarity with data governance principles (classification, retention, lineage)
  • Thorough understanding of risk management methodologies and control frameworks
  • Strong communication, documentation, organizational, and analytical skills
  • Ability to communicate security, privacy, and AI risk concepts to technical and non-technical stakeholders
  • Working knowledge of core frameworks: NIST CSF, PCI DSS, HIPAA, ISO 27001/27002, and global privacy regulations (GDPR, CCPA)
  • Foundational understanding of AI/ML systems and associated governance, risk, and compliance considerations (NIST AI RMF, ISO 42001)
  • Familiarity with cloud environments (AWS primary, Google Workspace/MS Azure preferred) and modern SaaS architectures
  • Experience with GRC tools (AuditBoard, Vanta, Drata, Archer, ServiceNow GRC, or similar) and ticketing/workflow/documentation tools (Jira, Freshservice, Confluence, GitHub, etc.)

Benefits:

  • Competitive salary & equity compensation for full-time roles
  • Unlimited PTO, company holidays, and quarterly mental health days
  • Comprehensive health benefits including medical, dental & vision, and parental leave
  • Employee Stock Purchase Program (ESPP)
  • 401k benefits with employer matching contribution
  • Offsite team retreats

Apply tot his job Apply To this Job

You might like

GRC Technology Financial Services Senior Consultant

Work from home Full-time role

Senior GRC Specialist

Work from home Full-time role

Sr GRC Consultant I

Work from home Full-time role

Principal Consultant, GRC, Proactive Services (Unit 42) – Remote

Work from home Full-time role

Cyber Security Technical Advisor (GRC), AVP

Work from home Full-time role

Risk Manager

Work from home Full-time role

Security GRC Program Manager, Third Party

Work from home Full-time role

AMER - Future Opportunities at SAI360

Work from home Full-time role

Compliance Automation Engineer, GRC

Work from home Full-time role

Security GRC Engineer-CA/NC-Mandarin preferred(full-time, exempt)

Work from home Full-time role

Senior HRIS Analyst, HRIS

Work from home Full-time role

Dir. of Inside Commercial & Customer Relation

Work from home Full-time role

Experienced Remote Data Entry Clerk – Flexible Work Arrangements at arenaflex

Work from home Full-time role

Director, Real Estate and Workplace Experience

Work from home Full-time role

CDI Coding Liaison

Work from home Full-time role

Clinical Trial Coordinator I - FSP

Work from home Full-time role

Experienced Customer Marketing Manager – Building Meaningful Customer Relationships and Driving Growth at arenaflex

Work from home Full-time role

Experienced Data Entry Clerk – Remote Opportunity with arenaflex

Work from home Full-time role

[Hiring] Statewide Intake Specialist @TX-HHSC-DSHS-DFPS

Work from home Full-time role

Senior RFP / Grant Writer – Education, SEL & AI Innovation

Work from home Full-time role