Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Compliance Analyst

Go To Services

Compliance Analyst

Security at GoTo

Everyone deserves to work in a safe and secure environment. That's why we're passionate about delivering secure, remote workforce products and services that prioritize the protection of business assets, customer data, and employee information. We're committed to creating products that are not only secure but also user-friendly and accessible to all. We thoughtfully infuse AI into our tools, leveraging it as a powerful resource to deliver genuine, practical value and address real security challenges. Join us and help create a future where security meets simplicity and AI-powered innovation.

Your Day to Day

The Compliance Analyst sits within the Security Governance, Risk, and Compliance (GRC) team, reporting to the Director of GRC in the CISO org. You'll own audit coordination, control testing, and risk assessment work while actively pushing how assurance gets done through technology and automation.

As a GRC Compliance Analyst, you would be working on:

  • Coordinating audits across ISO 27001, SOC 2, PCI-DSS, HIPAA, NIS2, SOX, and C5, including managing auditor relationships, driving evidence collection, and tracking remediation activities to completion.
  • Performing control assessments and testing across technical and administrative domains, partnering with engineering and security teams to evaluate control design and effectiveness.
  • Partnering with Engineering, Security, IT, and Product stakeholders to understand technical architectures and translate them into audit-ready control narratives.
  • Leveraging AI tools, automation, and emerging technologies to streamline evidence collection, control testing, and reporting activities.
  • Administering and enhancing GRC platforms while developing metrics and dashboards that provide visibility into compliance posture and control effectiveness.

What We're Looking For

As a GRC Compliance Analyst, your background will look like:

  • 3+ years of experience in information security compliance, audit, or risk management within a technology environment.
  • Strong understanding of cloud architecture, IAM, infrastructure, and SDLC controls, enabling effective collaboration and communication with technical teams.
  • Experience working with one or more compliance frameworks, such as ISO 27001, SOC 2, PCI-DSS, HIPAA, NIST 800-53, and NIS2.
  • Strong audit communication skills: you know how to manage auditors, push back when evidence requests are out of scope, and defend a control position when you're right.
  • Interest in leveraging technology and AI tools to improve productivity and streamline compliance activities.

Bonus Qualifications

  • Experience with compliance automation, continuous monitoring initiatives, or GRC platform development.
  • Experience with platforms such as Thoropass, AuditBoard, or Drata.
  • Experience building AI-driven workflows or automations that reduce compliance toil.
  • Experience integrating GRC tooling with engineering, cloud, identity, or monitoring platforms.
  • Experience implementing continuous assurance capabilities.

What We Offer

At GoTo, we care about helping our people succeed at work and feel supported in life. Our employee benefits and programs are designed to support your well-being, growth, and sense of belonging. Here's what you can expect as part of our team:

  • Comprehensive health benefits
  • Generous paid time off, including paid holidays, volunteer days, quarterly self-care days, and company-designated no-meeting days
  • Tuition reimbursement and access to instructor-led and on-demand learning and development programs
  • The Thrive Global Wellness Program, a confidential Employee Assistance Program (EAP), a wellness app and one-on-one wellness coaching
  • Employee-led communities and programs, including Employee Resource Groups (ERGs), GoTo Gives, and charitable matching

We work hard to create an environment where everyone feels welcome, respected, and able to contribute. Building a culture of belonging isn't just something we talk about - it's part of how we work every day.

Specific benefits and offerings may vary by country in line with local regulations and market practices.

At GoTo, you'll find the flexibility, resources, and support you need to thrive—at work, at home, and everywhere in between. You'll work towards a shared goal with an open-minded, cohesive team that's greater than the sum of its parts. We're committed to creating an inclusive space for everyone, because we know unique perspectives make us a stronger company and community. Join us and be part of a company that invests in your future, where together we'll Be Real, Think Big, Move Fast, Keep Growing, and stay Customer Obsessed. Learn more.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the GRC Compliance Analyst in United States vacancy
  • $130k - $170k

     ...: Here at Virtru you’ll help build a cutting edge security compliance program aligned with FedRAMP, SOC 2, PCI, HIPAA, GDPR, and just...  ...we can provide the most secure and performant service. As a GRC Analyst at Virtru, you will be the primary point of contact for... 
    Suggested
    Full time
    Local area
    Flexible hours
    Shift work

    Virtru

    United States
    2 days ago
  •  ...Overview The IT GRC Analyst operates within the enterprise Cybersecurity Operations function and supports the Information Technology,...  ...Information Officer. This role executes governance, risk, and compliance activities aligned with regulatory frameworks and internal policies... 
    Suggested
    Work at office
    Remote work

    Trustmark

    Ridgeland, MS
    10 hours ago
  •  ...Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the complex landscape of cybersecurity compliance and risk management. You will work directly with clients to assess their... 
    Suggested
    Full time
    Remote work

    Districttechgroup

    Washington DC
    4 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter, safer AI - and we need practitioners who know how GRC actually works in the real world. If you've spent time... 
    Suggested
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    10 hours per week
    Flexible hours

    Alignerr

    Denver, CO
    3 days ago
  • $161.6k - $202k

     ...sensitive health data for millions of patients — and that responsibility demands a security and compliance program that scales with the business. We're building out our dedicated GRC team to improve and mature our program! You'll join the Security team and work across... 
    Suggested
    Work from home
    Flexible hours

    Headway - Design & Development

    Seattle, WA
    3 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter, safer AI - and we need practitioners who know how compliance and risk management actually work inside real organizations... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Worldwide
    Flexible hours

    Alignerr

    Seattle, WA
    3 days ago
  • $60k - $75k

     ...Are you someone who enjoys solving problems, managing compliance, and helping keep cybersecurity and government contract requirements on track? Qualified Staffing is seeking a GRC Analyst for our client in Macon, GA. This position will support cybersecurity compliance,... 
    Contract work
    Relocation
    Relocation package
    Monday to Thursday

    Qualified Staffing

    Macon, GA
    2 days ago
  •  ...Governance, Risk, and Compliance (GRC) Analyst About Fulcrum We operate at the intersection of technology and law, in an industry that demands agility and innovation. Our team is dedicated to developing advanced solutions for legal professionals. Our daily work involves... 
    Full time

    Fulcrum Global Technologies

    Schaumburg, IL
    21 hours ago
  •  ...VOIS is looking for a Compliance Analyst to support Vodafone's Global Roles, Governance & Compliance function. This role involves ensuring effective...  ...The ideal candidate will have a strong understanding of SAP GRC controls, SOX compliance, and risk management, with... 
    Remote work

    V O I S

    New York, NY
    3 days ago
  •  ...Governance, Risk & Compliance (GRC) Analyst Client is seeking a GRC Analyst to lead our governance, risk, and compliance initiatives. This role will be instrumental in strengthening their cybersecurity posture, ensuring regulatory compliance, and supporting strategic... 

    Group Nine LLC

    Middleton, WI
    9 hours ago
  •  ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We partner with the world's leading AI research labs to build smarter, safer AI systems - and we need practitioners who know how compliance and risk management actually work in the real... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Worldwide
    Flexible hours

    Alignerr

    Chicago, IL
    3 days ago
  •  ...Maintain risk registers and track remediation efforts. Compliance Ensure compliance with regulatory requirements (e.g., GDPR...  ...Required Skills & Qualifications: Strong experience in GRC, IT audit, or cybersecurity. Strong understanding of regulatory... 

    Yochana

    Austin, TX
    2 days ago
  • $135k - $165k

     ...our platform and customer relationships. As we continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and risk management programs. Why Ivo Every civilization runs on the same... 
    Contract work
    Flexible hours

    Ivo

    San Francisco, CA
    2 days ago
  • Governance, Risk & Compliance (GRC) Analyst Job Category: Information Technology Requisition Number: GOVER001449 Posted : July 1, 2026 Full-Time Hybrid Locations Showing 1 location Join our team as a GRC Analyst and play a key role in regulatory compliance, IT risk... 
    Full time
    Casual work
    Work at office
    Work from home
    Home office
    Night shift
    Weekend work

    Delta Dental of Missouri

    Kansas City, MO
    1 day ago
  • Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential. With our award-winning Oura Ring and app, we help over 2.5 million people turn insights about sleep, activity, and... 
    Work at office
    Local area
    Remote work
    Flexible hours

    Itlearn360

    New York, NY
    4 days ago
  • $130k - $170k

    Security Governance Risk & Compliance (GRC) Analyst Washington, DC - Remote About Virtru: While the rest of the security industry obsesses over locking data down to prevent it from being lost or stolen, we’re doing something fundamentally different at Virtru. We’re setting... 
    Local area
    Remote work
    Flexible hours
    Shift work

    Virtru

    Washington DC
    4 days ago
  •  ...Job Description Job Description Job Summary: As a Senior Governance Risk and Compliance (GRC) Analyst at C2 Labs you will lead a team of security analysts and engineers to implement regulatory frameworks such as the Federal Information Security Modernization... 

    C2 Labs, Inc.

    Knoxville, TN
    20 days ago
  • $95k - $105k

     ...Job Description Job Description Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven...  ...and threat landscapes. We are building an AI-first compliance function, and this role is expected to lead from the front in... 
    Temporary work
    Currently hiring
    Remote work
    Relocation

    Subsplash

    Kansas City, MO
    14 days ago
  •  ...Join to apply for the Junior GRC Risk Analyst role at Jobright.ai . Jobright is an AI-powered career platform that helps job seekers discover...  ...and security solutions. The GRC Risk Analyst will conduct compliance assessments, develop policies, and manage risks, ensuring... 
    Full time

    jobright.com

    Durham, NC
    4 days ago
  •  ...Trustmark in Ridgeland, MS is seeking an IT GRC Analyst to oversee governance, risk, and compliance activities. The role includes coordinating compliance efforts, executing IT assessments, and developing policies. The ideal candidate will hold a Bachelor's in information... 
    Remote work

    Trustmark

    Ridgeland, MS
    1 day ago
  • $62k - $87k

     ...The GRC Analyst is responsible for ensuring that Busey Bank implements, manages, and enforces information security and cybersecurity controls to effectively align to industry standards. This position will monitor the performance of key Information Security and Information... 
    Temporary work
    For contractors
    Work experience placement
    Work at office
    Local area
    Remote work
    Flexible hours

    Busey

    Leawood, KS
    2 days ago
  •  ...Responsible for leading the implementation and administration of a GRC platform (e.g., Vanta), including configuring controls,...  ...supporting policy development, and defining metrics to measure compliance and control effectiveness. We are a company committed to creating... 

    Insight Global

    Raleigh, NC
    2 days ago
  •  ...Glocomms is partnered with a leading IT and Cloud Computing firm seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support and enhance the organization's security governance, risk management, and compliance programs. This individual will play... 
    Remote work
    Flexible hours

    Glocomms

    Dallas, TX
    2 days ago
  • $134k - $202k

     ...community, or shaping our story, you’ll help define what comes next. About the role: We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance with security and... 
    Work at office
    Remote work
    Work from home
    Worldwide
    Monday to Friday
    Flexible hours

    Vercel Corp

    San Francisco, CA
    4 days ago
  • ## GRC AnalystApplylocations: Clemmons, NCtime type: Full timeposted on: Posted Yesterdayjob requisition id: R26...  ...Spain, France, Australia, and China. **Governance, Risk, and Compliance (GRC) Analyst – SOX & Data Security Focus**Location: Clemmons, NC Job... 
    Full time

    Hayward Holdings, Inc.

    Clemmons, NC
    10 hours ago
  •  ...Sr. GRC Analyst, Risk Management Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management...  ...Provides leadership with comprehensive reports of compliance-focused activities and outcomes, as requested. Requirements... 
    For contractors
    Immediate start
    Flexible hours

    CRG

    Phoenix, AZ
    5 days ago
  • $76k - $134k

    26-May-2026 Senior GRC Engineering Analyst US (Remote) 10880BR Company Summary Built on 40 years of industry expertise...  ...environments and information systems meet security and compliance obligations by testing technical controls, supporting audits... 
    Contract work
    Temporary work
    For contractors
    Remote work

    Deltek

    Herndon, VA
    3 days ago
  •  ...For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) is a risk-...  ...process to gather details on the security practices and compliance levels for each third party being considered or contracted... 
    Immediate start
    Flexible hours

    Gilder Search Group

    Phoenix, AZ
    10 hours ago
  •  ...Role Overview Join the Information Security team as a GRC Analyst, responsible for the processes, documentation, and cross-functional coordination that keep our compliance posture current and our risk exposure understood. This role is the operational engine of NMC2's security... 
    Temporary work
    Flexible hours

    NMS Consulting Inc.

    Dallas, TX
    1 day ago
  •  ...GRC (3rd Party Risk) Analyst Duration: 12 – 24 Month Project Engagement The GRC Analyst is responsible for managing Client's governance, risk, and compliance functions, with a specific focus on third-party risk management. This role ensures Client operates in a compliant... 

    Datamtx LLC

    Peachtree City, GA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Compliance Analyst. Be the first to apply!