Governance, Risk & Compliance (GRC) Analyst
IVO Inc
Why Join Ivo?
Every civilization runs on the same infrastructure: agreements between people who don't fully trust each other. Sumerians pressed them into clay. Romans carved them into stone. We bury them in 80-page PDFs.
The way those agreements are reviewed hasn't changed in four thousand years - a human reads the whole thing and tries not to miss anything. We're building the AI that finally changes that. Ivo is the contract intelligence platform of choice for companies like Uber, Meta, Canva, IBM, and Shopify. We recently raised our Series B and have grown 800% over the last 12 months.
The Opportunity
Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This role will play a key part in maintaining and enhancing Ivo's compliance programs, including SOC 2 Type II, ISO 27001, CSA STAR, and ISO/IEC 42001.
The ideal candidate has experience supporting security audits, managing evidence collection, conducting risk assessments, maintaining policies and procedures, and partnering cross-functionally with engineering, IT, legal, HR, and business stakeholders.
This is a fully onsite role based out of Ivo's San Francisco headquarters to support close cross-functional collaboration with Security, Engineering, IT, and Operations teams.
What You'll Do
- Support and coordinate Ivo's compliance programs including SOC 2 Type II, ISO 27001, CSA STAR, and ISO/IEC 42001.
- Assist with annual audits, surveillance audits, and customer security assessments.
- Coordinate evidence collection and maintain audit readiness across teams.
- Support and maintain Ivo's Vanta GRC platform and associated compliance workflows.
- Monitor automated compliance evidence collection and control monitoring within Vanta.
- Perform vendor and third-party risk assessments.
- Support enterprise risk management and risk register maintenance.
- Maintain and update security policies, standards, and procedures.
- Support AI governance and responsible AI compliance initiatives.
What We're Looking
- 3–5 years of experience in Governance, Risk & Compliance (GRC), Information Security, IT Audit, or related field.
- Hands-on experience supporting SOC 2 Type II, ISO 27001, CSA STAR, and in-depth knowledge of ISO/IEC 42001.
- Experience administering or working extensively with Vanta or similar GRC/compliance automation platforms.
- Experience managing and maintaining a customer-facing Trust Center, including security documentation, compliance artifacts, sub-processor disclosures, and customer assurance materials.
- Strong understanding of information security principles and common security controls.
- Experience with audits, evidence management, and customer security reviews.
- Excellent written and verbal communication skills.
Nice to Haves
- Experience working at a SaaS or AI company.
- Familiarity with GDPR, CCPA, privacy regulations, and third-party risk management.
- Knowledge of cloud environments such as GCP, AWS, or Azure.
- Relevant certifications such as Security+, CISA, CRISC, CCSK, or ISO 27001 Lead Implementer/Auditor.
Ivo Might Be a Good Fit for You If You:
- Would describe yourself as being relentlessly resourceful.
- You have a strong internal sense of urgency. You have a bias towards doing things today, rather than tomorrow.
- Experience working in a startup environment is preferred but not required.
- Are excited about the adventure of building a company!
What We Offer
- Competitive Compensation: Final offer details are determined based on experience, expertise, and overall fit.
- Equity: Meaningful ownership in a company that's scaling fast
- Relocation and Visa Support: We also offer relocation assistance for successful applicants moving to SF, as well as support for visa and green card applications where applicable.
- Health & Wellness: Comprehensive medical, dental, and vision plans to suit the needs of you and your family.
- Flexible Spending & Insurance: Access to HSA and FSA accounts, plus life insurance coverage.
- 401(k) Program: Save for the future with our 401(k) program.
- Commuter Benefits: We help make getting to and from the office easier and more convenient.
- Unlimited PTO: So you can take the time you need to recharge, stay healthy, and bring your best self to work.
- Office Perks: Enjoy a vibrant Downtown San Francisco office with catered lunch five days a week, premium snacks and coffee, an in-building gym, and a dog-friendly environment.
FAQ
- What stage of growth is Ivo at?: We launched in early access in 2023. Since then, we've had an incredible response from the market and are growing rapidly. We 6x'd in ARR in the last 12 months. Our clients include companies like Uber, Reddit, IBM, Canva, Pinterest, WordPress, and more. We're happy to share more details with candidates who go through our interview process.
- Is this a chill gig?: Startups are very hard, especially if they're growing fast. You'll have a ton of responsibility, and there's always an enormous amount of stuff to do. It's hard work but the payoff is uncapped.
- Can I work remotely?: We require candidates to work with us in-person 5 days a week in our San Francisco office.
Ivo is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
$161.6k - $202k
...that responsibility demands a security and compliance program that scales with the business. We're building out our dedicated GRC team to improve and mature our program! You... ..., SOC 2, PCI-DSS, HIPAA), third-party risk management, security awareness training, and...SuggestedWork from homeFlexible hours$135k - $165k
...foundational to our platform and customer relationships. As we continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and risk management programs. Role Overview Ivo is seeking a...SuggestedContract workFlexible hours$150k - $180k
...knowledge. The Role We're looking for a GRC Analyst to join our growing Security, IT, and Privacy... .... You'll be the backbone of all the compliance work at the intersection of Engineering,... ...right person translates security and risk into terms that the business and product...SuggestedFull timeImmediate startRemote workWork from homeFlexible hours$132.6k - $195k
...marketplace of consumers, merchants, and drivers.About the RoleThe Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced...SuggestedHourly payContract workWork at officeLocal areaRemote workFlexible hours$134k - $202k
...our community, or shaping our story, you’ll help define what comes next. About the role: We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance with security and...SuggestedWork at officeRemote workWorldwideMonday to Friday- ...everything else feel small. Role Scope Run the day-to-day compliance program end to end across SOC 2 Type II, ISO 27001, NIST 800-53... ...collection, control monitoring, and audit readiness held on GRC platforms (Vanta) and the tooling we build in-house. Own the...Local area
$95k - $150k
...Startups. Your Role The Security & Compliance team at Zip is committed to... ...customer requirements. As a GRC Analyst at Zip, you’ll be a key... ...internal audits, and vendor risk assessments Lead... ...’ security, compliance, and governance teams in due diligence and security...Home officeFlexible hours$159k
...Yuba City Department Overview: The Electric Risk & Compliance organization provides governance, oversight, and strategic direction on risk and compliance... ..., training, guidance, and instruction to regulatory analysts in a work environment that fosters teamwork,...Contract workWork experience placementWork at officeFlexible hours2 days per week3 days per week$96.3k - $145.2k
...the right place! Agentforce is the future of AI, and you are the future of Salesforce.The ExperienceThe Security GRC (Governance, Risk, and Compliance) Analyst role is part of our Security and Compliance team, sitting at the intersection of internal operations and...Full timeWork at office$145k - $160k
...About the Role: As a Senior Risk and Compliance Analyst at Mytra, you will join the Security... ...operational foundation for scalable security governance, SOC 2 and ISO 27001 readiness,... ...co-admin / co-owner of Mytra's Vanta GRC platform, helping maintain system organization...Work at office$105k
Requisition ID# 172624 Job Category: Compliance / Risk / Quality Assurance Job Level: Individual Contributor Business Unit: Strategy &... ...Overview The Electric Risk & Compliance organization provides governance, oversight, and strategic direction on risk and compliance...Flexible hours2 days per week3 days per week$77k - $202k
...ApplicableSpecialismCybersecurity & PrivacyManagement LevelSenior AssociateJob Description & SummaryThe OpportunityAs a Security Risk & Engineering - Tech and Cyber Risk & Compliance - Senior Associate, you will focus on maintaining regulatory compliance and managing risks for clients,...Full timeH1b- ...eligible for performance-based cash incentive awards.Salary Range$85,600.00 - $141,200.00Target Openings1What Is the Opportunity?The Risk Control Property Specialist team consists of individuals with deep risk engineering expertise. By sharing their specialized...Full timeLocal areaLong distanceNight shift
- ...role:The Technology AI Transformation & Governance team is seeking an AI Lead Business Execution... ...frameworks, operational processes, risk management activities, and cross-functional... ....Partner with Technology, Risk, Legal, Compliance, and Business teams to facilitate...Full timeWork experience placement
- ...quo” and transform the finance industry together.The Liquidity Risk Management group within Treasury manages liquidity planning across... ...the design of company liquidity management policies, ensuring compliance at all times, and escalating to senior management as necessary....Full timeWork experience placement
$200k - $300k
....About the TeamThe Financial Crime Compliance (FCC) team at Airwallex is a strategically... .../CTF program, sanctions framework, risk assessment methodology, and governance infrastructure across all global... ...the Governance and Risk Committee (GRC).Provide strategic regulatory...Temporary workLocal areaWorldwideShift work$110k - $140k
...Security Compliance Analyst We are looking for a highly motivated individual with information security governance and compliance experience to be part of our team! As a Security Compliance... ...be able to assist in running the risk management program that is managed by the...$133k
...trust begins, and where bad actors try to slip in. As an L4 Risk Analyst on the New Account Risk team, you will help protect Chime’s enrollment... ...You’ll work closely with Product, Engineering, Data Science, Compliance, and Operations, digging into data to spot emerging fraud...Full timeWork at officeLocal areaRemote work$84k - $105k
...sponsorship. Overall Purpose The Sr. Risk Analyst will support the Senior Director of... ...of risk assessments, including RCSAs and GRC application updates. Create and... ...organization, including Product Development, Legal/Compliance, Operations, IT, and Accounting/Finance....Hourly payWork at officeImmediate startVisa sponsorshipWork visaFlexible hours- QUALIFICATIONSUndergraduate degree1+ years’ experience in risk management in any industry sector and/or experience in a consultancy... ...focus) and/or comparable experience in banking, risk regulation & compliance, capital markets, market risk, treasury & balance sheet...ApprenticeshipWork at officeLocal areaImmediate startEasy work
- ...gas customers receive safe and reliable service. Analyze utility risk mitigation performance, including cost, cost effectiveness, and... ...or Los Angeles, with flexibility for telework as permitted by government code and operational needs and subject to meeting telework...Work at officeRemote work
- ...Senior Vendor Risk Analyst Financial Services - Commercial Banking Job Description Senior Vendor Risk Analyst San Francisco... ...information to identify information security weaknesses or non-compliance with industry standards Produce detailed documentation of...Remote workFlexible hours
$7.98k - $9.99k
...and reliable service. Analyze utility risk mitigation performance, including cost, cost... ...flexibility for telework as permitted by government code and operational needs and subject to... .... ~ PUBLIC UTILITIES REGULATORY ANALYST III Additional Documents Job...Permanent employmentFull timeTemporary workWork at officeRemote workMonday to Friday2 days per week$90k - $125k
...CDD Risk Analyst, Reviews Adyen provides payments, data, and financial products in a single solution for customers like Meta, Uber,... ...with a wide range of teams within Adyen, including commercial, compliance, and product to ensure that our customers and understanding...Work at officeLocal area$132k - $178k
...Enterprise Risk Analyst Denver, CO or Long Beach, CA or Washington... ...engineering, security, legal, compliance, and operations teams to... ...Jira, Confluence, enterprise GRC platforms, and MS Project.... ...assessor interactions, and government partner reviews. Qualifications...Permanent employmentContract workWork at office$137.34k - $207.81k
...recognized on Forbes Cloud 100 2025 List and is a Y Combinator 2024 Breakthrough Company. Position Location Checkr, Inc. seeks Senior Risk Analyst in San Francisco, CA. Parttime telecommuting is an option. Hybrid work from Checkr office in San Francisco, CA. Job Duties...Part timeWork at officeLocal areaRemote workRelocationMonday to FridayFlexible hours3 days per week- ...Compliance Officer This position is within the Administrative Services Group Compliance Function and is responsible for taking a lead... ...Corporate Compliance Monitors major and critical compliance risks issues Oversees the implementation of training programs Disseminates...
$185k - $237.5k
...Support the day-to-day management and operation of Circle’s Product Risk Management function. The goal of this function is to partner... ...reporting on risks inherent to business activities, including compliance, legal, security, finance and 3rd parties. Self-identify,...Flexible hours$166.6k - $208.3k
...founders and companies we’re here to serve.The BSA/AML & Sanctions compliance team serves as the oversight function for Mercury's overall AML... ...subject-matter expertise, and will collaborate closely with risk strategy, engineering, and compliance teams.*Mercury is a...$122k - $140k
San Francisco, CAFinance - Credit Risk Management /Full-Time Employee /HybridYour role in our missionAs... ...analytics tools to develop strategies that govern automated decisions in Prosper’s online marketplace. A Credit Risk Analyst at Prosper has the opportunity to utilize...Full timeLocal areaRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!
- risk analyst San Francisco, CA
- risk officer San Francisco, CA
- it risk analyst San Francisco, CA
- senior quantitative risk analyst San Francisco, CA
- third party risk analyst San Francisco, CA
- operational risk specialist San Francisco, CA
- risk consultant San Francisco, CA
- operational risk consultant San Francisco, CA
- compliance analyst San Francisco, CA
- regulatory compliance analyst San Francisco, CA

