Senior GRC Analyst
Career Team
About Career TEAM: Founded in 1996, Career TEAM is a socially conscious organization dedicated to closing the opportunity divide through government-funded workforce development programs. Our award-winning portal, Career EDGE, leverages cutting-edge software to transform lives across the U.S. Behind every secure, compliant experience on our platform is a robust governance framework trusted by state agencies nationwide.
Position Overview
We are seeking a highly autonomous Senior GRC Analyst to take ownership of core elements within our security and compliance program. Operating entirely remotely from the Philippines, you will mature the documentation backbone that powers our GovRAMP, FedRAMP, and state-level authorizations. This is a senior, self-directed role designed for an expert who treats compliance documentation as a craft rather than a checkbox, partnering directly with security leadership and engineering to drive continuous improvement.
Key Responsibilities
- Compliance Program Ownership: Maintain and continuously improve the System Security Plan (SSP), policies, procedures, and standards aligned to NIST 800-53 and SOC 2 frameworks.
- POA&M & Evidence Lifecycle: Manage the Plan of Action and Milestones (POA&M) lifecycle, track remediation evidence, and coordinate monthly continuous monitoring deliverables with the U.S. security team and 3PAOs.
- Third-Party Risk Management: Run the vendor risk program end-to-end, evaluating security questionnaires, conducting due diligence, and enforcing subcontractor flow-down obligations.
- Enterprise Risk Maintenance: Maintain the enterprise risk register, facilitate risk acceptance decisions, and translate technical cyber risks into business impact for executive stakeholders.
- Policy & Awareness Administration: Version-control the policy library, administer security awareness training, conduct phishing simulations, and author tabletop exercise scenarios.
Required Skills & Qualifications
- 7+ years of hands-on GRC experience, with a strict minimum of 3 years dedicated to FedRAMP, GovRAMP, StateRAMP, TX-RAMP, or CMMC programs within a SaaS environment.
- Demonstrated track record of independently authoring SSPs, POA&Ms, and continuous monitoring deliverables for successful authorizations.
- Deep working knowledge of NIST 800-53, NIST 800-171, FIPS 199/200, and SOC 2 (Type II) frameworks.
- Exceptional written English proficiency, ensuring documents meet the rigorous standards of state auditors, executives, and 3PAOs.
- Location & Shift Context: Must be permanently located in the Philippines and fully available to work a dedicated night shift to maintain overlap with the U.S. team.
Preferred Strategic Indicators (Nice to Have)
- Bachelor’s degree in Cybersecurity, Information Systems, or a related field.
- Relevant industry certifications such as CISSP, CISA, CRISC, CGRC/CAP, or ISO 27001 Lead Implementer.
- Hands-on experience with modern GRC tooling (Drata, Vanta, Hyperproof, ServiceNow GRC) and prior work dealing with U.S. state government customers.
What We Offer
- The opportunity to act as a senior individual contributor with real, unlayered ownership over a defined portion of a high-stakes GRC program.
- A fully remote work environment built on trust, continuous improvement, and high accountability.
- Direct impact on a product that actively helps thousands of individuals access crucial workforce and educational services.
- Direct partnership with executive leadership and engineering—no micromanagement, no excessive layers.
$80.05k - $165k
...end-to-end issue management activities, including intake, validation, prioritization, assignment, remediation tracking, and closure of GRC-related issues in ServiceNow, ensuring timely resolution, appropriate evidence, and alignment with audit, risk, and regulatory...SeniorFull timeWork at office- ...ROLE, NOW OR IN THE FUTURE. (e.g., H-1B, STEM OPT, TN, etc.)About the RoleAs a member of the Information Security team, the IS GRC Senior Analyst - Risk & Compliance will be responsible for understanding the firm’s security risk and compliance requirements. You will...SeniorFull timeContract workWork experience placementH1bRemote workVisa sponsorshipRelocation packageMonday to Friday
- ...Focused on IT controls and compliance across SOC 2 engagements, the full-time Senior GRC Analyst will evaluate and document security measures, manage client relationships, and mentor team members in a fully remote setting. Key Responsibilities Lead and conduct detailed...SeniorFull timeRemote work
$60 per hour
...,500.00 yearly Full-time +1 Accountant Financial Services Accounting.The Financial Services Accounting team is currently seeking a senior accountant who thrives in a challenging and dynamic workplace to contribute to our tal... Show more Temporary QISG leverages Quanta...SeniorHourly payFull timeContract workTemporary workPart timeRemote workWork from homeWorldwide- ...1 best company for remote workers Responsibilities Workato is seeking a detail-oriented, driven, and technically experienced Senior GRC Analyst to strengthen and advance its security governance, risk, and compliance (GRC) program - with a primary focus on FedRAMP authorization...SeniorRemote workFlexible hours
- ...Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience...SeniorRemote workFlexible hours
$161.6k - $202k
...- and that responsibility demands a security and compliance program that scales with the business. We're building out our dedicated GRC team to improve and mature our program! You'll join the Security team and work across four pillars: security certifications (HITRUST...SeniorWork from homeFlexible hours- You’re a high-performing cybersecurity GRC professional. You want to do meaningful work that makes a real impact. You’re ready... ...alike — and we’re looking for an exceptional Experienced or Senior GRC Analyst to join us. This is a full‑time, remote, contract‑to‑hire...SeniorPermanent employmentFull timeContract workRemote work
- Senior GRC Analyst job at Quantexa. New York, NY. What we’re all about. We find, when we come together in the pursuit of excellence, great things happen. And that’s how we do things at Quantexa - together. Our business is data, but our culture is collective. We’re about...SeniorContract workTemporary workWork experience placementImmediate start
- Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential. With our award-winning Oura Ring and app, we help over 2.5 million people turn insights about sleep, activity, and...SeniorWork at officeLocal areaRemote workFlexible hours
- ...About the Role Hotman Group is a boutique cybersecurity and GRC consulting firm doing meaningful work for clients who need... ...6 months. What You Will Do As an Experienced or Senior GRC Analyst at Hotman Group you will work directly with clients to help them...SeniorRemote jobPermanent employmentFull timeContract work
- ...a robust governance framework trusted by state agencies nationwide. Position Overview We are seeking a highly autonomous Senior GRC Analyst to take ownership of core elements within our security and compliance program. Operating entirely remotely from the Philippines...SeniorFull timeFor subcontractorRemote workShift workNight shift
- Description The Senior IT GRC Analyst leads policy development and audit execution within CMG's IT Governance, Risk, and Compliance program, with particular emphasis on CMG's upcoming SOC 2 readiness effort. This role works closely with the GRC team and the broader IT...SeniorWork at officeRemote work
$95k - $105k
...Job Description Job Description Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven... ...dues and subscription spend under budget. About the Role The Senior GRC Analyst acts as a strategic lead to advance security and...SeniorTemporary workCurrently hiringRemote workRelocation$100.8k - $168k
...automation, and finance leaders to strengthen the control environment and ensure alignment with enterprise priorities. Reporting to the Senior Director of SOX Governance, you will play a key role in enabling compliance strategy, driving insights, and supporting a scalable...Senior- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter, safer AI - and we need practitioners who know how compliance and risk management actually work inside real organizations...Hourly payOngoing contractContract workFreelanceRemote workWorldwideFlexible hours
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter, more trustworthy AI - and we need practitioners who know how GRC actually works in the real world. Your expertise...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...GRC Analyst Join our team as a GRC Analyst and play a key role in regulatory compliance, IT risk management, security. You'll assess risks, support audits, and develop policies that align with industry standards. If you have a solid IT security background, experience...Casual workWork at officeWork from homeHome officeNight shiftWeekend work
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter, safer AI - and we need practitioners who know how GRC actually works in the real world. If you've spent time...Hourly payOngoing contractContract workFreelanceRemote work10 hours per weekFlexible hours
$95k - $150k
...high level of security assurance to customers, aligning security goals with business objectives and customer requirements. As a GRC Analyst at Zip, you’ll be a key driver for ensuring the success of compliance programs at a fast-growing company. Your contributions will...Home officeFlexible hours- ...raised our Series B and have grown 800% over the last 12 months. The Opportunity Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This role will play a key part in...Contract workWork at officeRemote workVisa sponsorshipRelocation packageFlexible hours
$134k - $202k
...customers, growing our community, or shaping our story, you’ll help define what comes next. About the role: We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance with...Work at officeRemote workWorldwideMonday to Friday- ...About The Role As a member of the Information Security team, the IS GRC Risk & Compliance Senior Analyst will support the firm's Governance, Risk, and Compliance (GRC) program by managing security risks, maintaining the risk register, conducting risk assessments, coordinating...Contract workCasual workWork at officeRemote workRelocationMonday to Friday
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We partner with the world's leading AI research labs to build smarter, safer AI systems - and we need practitioners who know how compliance and risk management actually work in the real...Hourly payOngoing contractContract workFreelanceRemote workWorldwideFlexible hours
- ...A cybersecurity compliance consulting firm is looking for a GRC Analyst to help organizations manage cybersecurity compliance and risk. This fully remote position involves conducting assessments, developing security policies, supporting compliance audits, and collaborating...Remote work
- ...IT Governance Risk & Compliance (GRC) Analyst Location US-MS-Ridgeland | US-Within Trustmark's Geographic Footprint Job ID 2026-19605 Category Information Security Type Regular Full-Time Job Grade 11 FLSA Status...Full timeWork at officeRemote work
- ...results. This is a contingent position based on contract win. SkyePoint Decisions is seeking a Governance, Risk & Compliance (GRC) Analyst to support a cybersecurity program and compliance initiatives by managing governance processes, risk management activities,...Contract workRemote work
- ...Alignerr is seeking a GRC Analyst (AI Training) to help shape how AI systems reason about security policies, risk controls, and regulatory frameworks. You will review policies, assess risk mappings, and generate high-quality training data for AI models. This remote, hourly...Hourly payContract workRemote workFlexible hours
- ...To enhance the security framework of a growing organization, the full-time remote GRC Analyst will design, implement, and manage control and risk workflows, perform third-party risk assessments, and ensure compliance with industry standards and regulations. Key responsibilities...Full timeRemote work
- ...Alignerr is seeking a Governance, Risk & Compliance (GRC) Analyst to help build and evaluate AI training systems for security policy, compliance, and risk. This remote hourly contract offers flexibility and the chance to shape how frontier AI models reason about GRC topics...Hourly payContract workRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior GRC Analyst. Be the first to apply!



