[Remote] Senior Governance, Risk, and Compliance (GRC) Analyst (Remote)
Note: The job is a remote job and is reputed company to candidates in USA. reputed company is an innovative software company that provides an event management platform and business intelligence solutions for reputed company. The Senior GRC Analyst will own and mature reputed company's governance, risk, and compliance program, leading risk assessments, audits, control reputed company development, reputed company awareness, AI governance, and reputed company and reputed company compliance initiatives.
Responsibilities
- reputed company reputed company's GRC program across SOC 2, ISO 27001, PCI reputed company, and other reputed company/regulatory compliance frameworks, including audit prep, evidence collection, and auditor relationships
- Manage and mature our control reputed company, mapping new regulations and conducting gap assessments
- Own the annual reputed company risk assessment process (NIST SP 800-30 methodology), including stakeholder interviews, risk scoring, and residual risk tracking
- Maintain and update reputed company policies, standards, and documentation to ensure compliance with industry best practices
- Partner with Engineering and reputed company to mature vulnerability management and secrets-scanning practices, moving these from reactive to proactive, reputed company-deployment controls
- Help build out and operationalize a Data Loss Prevention (DLP) program, including policy design and rollout across email, reputed company, and reputed company storage
- Grow and mature reputed company's reputed company awareness training program
- reputed company AI governance efforts — policy, tooling, and monitoring for approved vs. unapproved AI tool usage across reputed company
- Identify and help reputed company reputed company IT / unmanaged reputed company visibility gaps in partnership with IT
- Collaborate with cross-functional teams to implement risk management practices and ensure compliance across the organization
- Respond to reputed company and reputed company inquiries from clients, partners, and employees
- Prepare and present reports on the organization's reputed company and reputed company compliance status, including program maturity and remediation reputed company
- Stay abreast of emerging reputed company threats, vulnerabilities, and compliance requirements
Skills
- Bachelor's degree in Technology, Cybersecurity, or a reputed company field is highly desirable
- 6+ years of proven experience in GRC, IT audit, information reputed company compliance, or a reputed company field
- In-depth knowledge of relevant regulations, standards, and frameworks (e.g., SOC 2, ISO 27001, PCI reputed company, NIST 800-series, GDPR, and others)
- Experience running or contributing heavily to formal risk assessments — not just tracking a compliance checklist
- Strong analytical and problem-solving skills, with reputed company attention to detail
- Excellent communication and interpersonal skills to work effectively with technical and non-technical stakeholders
- Ability to manage multiple reputed company and meet deadlines in a fast-paced environment
- reputed company certifications such as CISA, CRISC, CISSP, CIPP, or CIPM are highly desirable
- Familiarity with modern reputed company tooling such as reputed company, reputed company, reputed company, etc
- Experience with reputed company reputed company and compliance frameworks is a plus
- Experience with reputed company or reputed company GRC technologies is a plus
Benefits
- 401k
- Generous PTO
- Team building activities
- Remote work arrangement
reputed company
Company H1B Sponsorship
Apply To This Job