Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance Risk & Compliance Analyst

Whatnot Inc.

Join the Future of Commerce with Whatnot! Whatnot is the largest live shopping platform in North America and Europe to buy, sell, and discover the things you love. Whether it's trading cards, fashion, electronics, or live plants, our sellers are building real businesses across hundreds of categories. We're building live commerce at a scale that's never been done in the West, and there's no playbook to copy. The people here are shaping how an entirely new industry develops. As a remote co-located team, we're inspired by our values and anchored in hubs across the US, UK, Ireland, Poland, Germany, and Australia. We move fast, stay close to our users, and focus on the work that drives the most impact. We're one of the fastest growing marketplaces and were recently named the #1 Best Startup Employer in America by Forbes. Check out the latest Whatnot updates on our news and engineering blogs and join us as we enable anyone to turn their passion into a business and bring people together through commerce. Role Whatnot's Security GRC team is dedicated to building trust with regulators, customers, employees, and investors by demonstrating commitment to industry standards and continuous improvement. We defend and protect our users' data and information as if it were our own. As part of the Security GRC team, you can expect to be responsible for: Reviewing and implementing secure configurations across various tools like Okta, Terraform, AWS, Lumos, Cloudflare, and Github. Developing security requirements for partner teams and driving progress towards the execution of those requirements. Preparing for and running our external security audits. Shaping the strategic direction of the Security GRC team. Leading our security risk management program to prioritize security risks and ensure proper mitigations are implemented. Team members in this role are required to be within commuting distance of our Los Angeles, CA, San Francisco, CA, Seattle, WA or New York, NY hubs. You Curious about who thrives at Whatnot? We’ve found that low ego, a growth mindset, and leaning into action and high impact goes a long way here. As our Governance, Risk, & Compliance Analyst you should have a minimum of 5+ years of relevant experience in security governance, risk, and compliance, preferably in a tech startup environment, plus: A Bachelor’s degree in Computer Science, Information Security, or a related field. The successful candidate will have a deep knowledge of security best practices and industry standards, such as ISO 27001, SOC2, PCI, and GDPR/ CCPA. Experience at a Big 4 firm or similar reputable audit firm. Experience in supporting complex third party audit projects in a cloud centric environment, with a strong aptitude to understand emerging technologies to ensure regulatory and compliance requirements are met. Excellent written communication skills with the ability to document, communicate, and report security assessments as well as the status of the implementation and effectiveness of cybersecurity controls with product and business leaders. Experience creating and running a security risk management program that adeptly balances security risks with business priorities. Benefits Generous Holiday and Time off Policy Health Insurance options including Medical, Dental, Vision Work From Home Support Home office setup allowance Monthly allowance for cell phone and internet Care benefits Monthly allowance for wellness Annual allowance towards Childcare Lifetime benefit for family planning, such as adoption or fertility expenses Retirement; 401k offering for Traditional and Roth accounts in the US (employer match up to 4% of base salary) and Pension plans internationally Monthly allowance to dogfood the app All Whatnauts are expected to develop a deep understanding of our product. We're passionate about building the best user experience, and all employees are expected to use Whatnot as both a buyer and a seller as part of their job (our dogfooding budget makes this fun and easy!). Parental Leave 16 weeks of paid parental leave + one month gradual return to work *company leave allowances run concurrently with country leave requirements which take precedence. EOE Whatnot is proud to be an Equal Opportunity Employer. We value diversity, and we do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, parental status, disability status, or any other status protected by local law. We believe that our work is better and our company culture is improved when we encourage, support, and respect the different skills and experiences represented within our workforce. #J-18808-Ljbffr

Vacancy posted 14 hours ago
Similar jobs that could be interesting for youBased on the Governance Risk & Compliance Analyst in Brooklyn, NY vacancy
  • $49.73k - $73.13k

     ...shape the future of commerce, this is the place for you. We're looking for a detail-oriented and curious GRC Analyst to join our Governance, Risk & Compliance team. In this role, you'll support the day-to-day operations of our risk and compliance program, helping assess... 
    Suggested
    Work experience placement
    Internship
    Work at office
    Local area

    BigCommerce Pty

    Brooklyn, NY
    1 day ago
  • TAB Bank is seeking a Regulatory Compliance Analyst in Ogden, UT to perform compliance monitoring, testing, and feedback within the bank's Compliance Program. The role supports the development and maintenance of compliant procedures for new products and services. The ideal... 
    Suggested
    Full time

    TAB Bank

    Brooklyn, NY
    4 days ago
  • Unió Digital is seeking an AI Governance & Risk Analyst to operate the Managed AI program from Tucson, AZ or remotely. You will own AI policy maintenance, vendor risk monitoring, DPA management, and quarterly evidence packaging for client audits and insurance reviews. This... 
    Suggested
    Remote job

    Unió Digital

    Brooklyn, NY
    4 days ago
  • Blue Cross NC is seeking an IT Governance Analyst to help identify, assess, monitor, and mitigate third-party vendor risks across technology, cybersecurity, data privacy, and...  ...procurement, information security, legal and compliance to ensure risk controls align with our... 
    Suggested
    Remote job
    Flexible hours

    Blue Cross and Blue Shield of North Carolina

    Brooklyn, NY
    22 hours ago
  • Park National Bank is seeking a Business Risk & Controls Program Analyst to help maintain and enhance our governance framework. This remote role collaborates with business lines to embed policy and compliance into processes and supports risk governance activities across... 
    Suggested
    Remote job

    Park National Bank

    Brooklyn, NY
    2 days ago
  • BECU is seeking an Enterprise Risk Analyst - AI Risk to shape how AI is adopted and governed across the organization. The role focuses on identifying, assessing,...  ...collaboration across Risk, Technology, Governance, Compliance, and Business teams in a remote-friendly... 
    Remote job

    BECU

    Brooklyn, NY
    4 days ago
  • # AI Governance & Risk AnalystOperates the Managed AI program for our clients on a recurring cadence. Maintains AI Acceptable Use Policy templates...  ...: Not required.## About this roleThe AI Governance & Risk Analyst operates the Managed AI program for our clients on a... 

    Unió Digital

    Brooklyn, NY
    4 days ago
  • $72.86k - $110.01k

    ## Senior Privacy & AI Risk AnalystApplyremote type: Hybridlocations...  ...a Senior Privacy & AI Risk Analyst, you will be expected to...  ...will also support Orion's AI governance efforts from a privacy standpoint...  ...of experience in financial compliance, risk, privacy or anti-money... 
    Work at office
    Local area
    3 days per week

    Orion Advisor Solutions, Inc.

    Brooklyn, NY
    4 days ago
  • Orion Advisor Solutions is seeking a Senior Privacy & AI Risk Analyst to lead privacy initiatives and oversee AI governance from a privacy perspective. You will collaborate across Legal, InfoSec, and business units to ensure privacy controls are applied to AI use cases... 
    Work at office
    3 days per week

    Orion Advisor Technology

    Brooklyn, NY
    2 days ago
  • Blue Cross NC is seeking an IT Governance Analyst to assist in identifying, assessing, monitoring, and mitigating risks from third-party vendors, suppliers, and outsourced providers...  ..., information security, legal, and compliance. You’ll develop dashboards and reporting... 

    Blue Cross and Blue Shield of North Carolina

    Brooklyn, NY
    22 hours ago
  •  ...plays a critical role in strengthening data governance, monitoring data loss prevention (DLP)...  ...to enhance the organization’s data risk posture while supporting both U.S. and Japan...  ..., organized, and comfortable operating in structured, compliance-driven environments... 

    Axiom Path

    Jersey City, NJ
    28 days ago
  • Commerce is seeking a GRC Analyst to join our Governance, Risk & Compliance team. You’ll support day-to-day risk and vendor assessments, ensure documentation, and assist audits. This is an opportunity for early career professionals to grow within a globally distributed... 

    BigCommerce Pty.

    Brooklyn, NY
    1 day ago
  • Medasource is seeking an IT GRC Analyst to join our IT Security and Governance team on a 6-month contract-to-hire basis, working remotely within the...  ...The role focuses on security governance, regulatory compliance, risk management, audit readiness, policy administration,... 
    Remote job
    Contract work

    Medasource

    Brooklyn, NY
    2 days ago
  • Commerce, a leader in enterprise risk and compliance, seeks a detail-oriented GRC Analyst for its Governance, Risk & Compliance team. You will support day-to-day risk and compliance operations, assess third-party vendors, maintain policy documentation, and help with audits... 

    BigCommerce Pty

    Brooklyn, NY
    1 day ago
  • Commerce seeks a detail-oriented GRC Analyst to join our Governance, Risk & Compliance team. You will support third-party risk assessments, maintain the vendor risk register, and assist with control testing and audit activities across SOC 2, ISO 27001, PCI-DSS. Ideal candidates... 

    Matcha

    Brooklyn, NY
    1 day ago
  • Medasource is seeking an IT GRC Analyst to join the IT Security and Governance team on a 6-month contract-to-hire basis, remote within the USA. The role focuses on governance, risk, and compliance across HIPAA, SOC 2, and NIST, collaborating with IT, Security, Privacy,... 
    Remote job
    Contract work

    Eightelevengroup

    Brooklyn, NY
    2 days ago
  • Join our dynamic team to navigate complex risk landscapes and fortify technology governance, making a pivotal impact in our firm's robust risk strategy.As...  ...technology-aligned aspects of Governance, Risk, and Compliance in line with the firm's standards. Leverage your broad... 

    JP Morgan Chase

    Jersey City, NJ
    4 days ago
  • Capital One seeks a Principal Analyst in Capital Markets & Risks in McLean, VA to lead SOX advisory and end-to-end risk management across lines of...  ...and remediation actions, driving control improvements and governance across financial reporting. The role requires 3+ years... 

    Capital One Group

    Brooklyn, NY
    1 day ago
  • Vercel is seeking a GRC Analyst to join the Governance, Risk & Compliance team. You will manage ongoing compliance across security and privacy frameworks (ISO 27001, SOC 2, HIPAA, PCI DSS) and collaborate with cross‑functional teams to promote accountability and ethical... 
    Remote job

    Neura Market

    Brooklyn, NY
    1 day ago
  • First Fed is seeking a BSA Specialist I to monitor and review alerts, conduct CDD/EDD reviews, and file CTRs to support regulatory compliance. The role involves gathering information from customers and internal systems, escalating complex cases, and maintaining accurate... 

    Jobless

    Brooklyn, NY
    4 days ago
  • F.N.B. Corporation in Pittsburgh, PA is seeking a Sanctions Compliance Program Analyst 2. The role supports the Risk - BSA/AML unit, reviewing sanctions alerts and maintaining compliant records. Hours are 9 AM - 6 PM, with a focus on regulatory obligation at the transactional... 

    FNB Corporation

    Brooklyn, NY
    1 day ago
  •  ...more than 1,000 clinicians alongside care coordinators, analysts, operators, and professionals from all backgrounds, all working...  ...CuranaHealth.com. Summary Curana Health is seeking an IT Governance, Risk, and Compliance Analyst to join our IT Security and Governance team. In... 

    Curana Health

    Brooklyn, NY
    16 hours ago
  • $91k - $145.6k

     ...details for this role. Line of Business Risk Management Job Description The Operational...  ...Risk Management (ORM) Change Governance team is part of the 2LOD and responsible...  ...supports governance, reporting, regulatory compliance, and oversight activities across the U.S... 
    Work experience placement
    Work at office
    Local area
    Work from home
    Flexible hours

    TD Bank Group

    Brooklyn, NY
    1 day ago
  • Air Liquide in Houston, TX seeks an Information Security Analyst - Business Security and Compliance to uphold governance, risk management, and compliance across Digital & IT environments. Focus on protecting sensitive data and aligning with Global Cyber security Framework... 

    Balazs

    Brooklyn, NY
    1 day ago
  • Whatnot seeks a Governance, Risk, & Compliance Analyst to strengthen its Security GRC program. You will assess security controls, support external audits, and guide risk management across the company. Ideal candidates have 5+ years in security governance, a BS in CS or... 

    Whatnot Inc.

    Brooklyn, NY
    1 day ago
  • Curana Health is seeking an IT Governance, Risk, and Compliance Analyst to join our IT Security and Governance team. In this role, you will strengthen security and regulatory programs by supporting risk management, audit readiness, policy administration, control monitoring... 

    Curana Health

    Brooklyn, NY
    1 day ago
  • Join JPMorgan Chase’s Risk Management and Compliance team, where your expertise will drive the re-engineering of how model risk is managed across the firm. As part of the Model Risk Governance and Review (MRGR) AI Center of Excellence (AI COE) team, your work will be instrumental... 

    JP Morgan Chase

    Jersey City, NJ
    1 day ago
  • BBVA USA in Houston seeks a Credit Risk Oversight Senior Associate to analyze proposals for the Credit Risk Committee and support governance and reporting for risk management. The role blends financial analysis, risk monitoring, and process automation using Google Apps... 
    Local area

    Bbva Sa

    Brooklyn, NY
    1 day ago
  •  ...spirit of a startup, we’re hiring. SageSure, a leader in catastrophe-exposed property insurance, is seeking a Senior Catastrophe Risk Analyst. In this role, you’ll play a critical part in advancing the scientific, statistical, and model-based understanding of... 
    Live in

    SageSure

    Jersey City, NJ
    2 days ago
  •  ...Quant Model Risk AssociateBring your expertise to JPMorganChase. As part of Risk Management and Compliance, you play a crucial role in maintaining JPMorganChase's strength and...  ...Quant Model Risk Associate in the Model Risk Governance and Review team, you will be responsible... 

    Chase

    Jersey City, NJ
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance Risk & Compliance Analyst. Be the first to apply!