Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Governance Risk & Compliance Analyst

$49.73k - $84.1k

BigCommerce

Welcome to the Agentic Commerce Era At Commerce, our mission is to empower businesses to innovate, grow, and thrive with our open, AI-driven commerce ecosystem. As the parent company of BigCommerce, Feedonomics, and Makeswift, we connect the tools and systems that power growth, enabling businesses to unlock the full potential of their data, deliver seamless and personalized experiences across every channel, and adapt swiftly to an ever-changing market. We believe in harnessing AI responsibly to unlock new possibilities, and we're looking for individuals who use it intentionally to solve problems, accelerate outcomes, and expand what's possible in their role. Our purpose is to help businesses confidently solve complex commerce challenges so they can build smarter, adapt faster, and grow on their own terms. If you want to be part of a team of bold builders, sharp thinkers, and technical trailblazers who shape the future of commerce, this is the place for you. We're looking for a Senior Security Governance Risk and Compliance Analyst to help support our compliance programs and work with our teams to implement risk improvement processes and projects. Commerce is committed to being a leader in Information Security in the e-commerce space. Your skills and your passion for protecting data and ensuring compliance will be a large factor in Commerce's future success. This role will report into our GRC function and work cross-functionally with Product Security, Legal, Partnerships, Privacy, and Engineering teams. What you'll do: * Function as a frontline representative of Information Security leading by example, being diplomatic yet firm, fair, flexible and consistent in deploying industry standard information security best practices and applicable laws, regulations, and policies. * Using a risk-based framework, manage third party risk assessments-from onboarding due diligence to continuous monitoring-leveraging platforms like OneTrust, SafeBase, or similar * Partner with fraud operations and data science to model and detect threats such as account takeovers, payment abuse, promo fraud, and affiliate misbehavior; understand fraud detection platforms, e.g., e-Hawk, Recorded Future, etc. * Maintain metrics and reporting that tie fraud risk to potential loss or customer impact in real terms. * Demonstrate understanding of BC GRC Office strategic vision, be a self-starter, and responsible for actions promoting this strategic vision. * Provides support and guidance regarding best practice, regulatory, and legal compliance, including PCI, GDPR, ISO 27001, NIST, and SOX. * Assistance in evaluating the design and operating effectiveness of the BC Integrated Secure Controls Framework (BC SCF) built from Industry Standards such as NIST, ISO 27001, PCI DSS around technology controls, including, but not limited to Software Development Lifecycle (SDLC), Logical Security, Data interfaces, availability/redundancy, and Cyber / Info security. * Preparing supporting evidence, documenting test plans which clearly describes the audit procedures performed, results of testing and conclusions reached for various processes. * Creating technology diagrams detailing the systems and their dependencies during the audit process * Assisting with the Department's data collection and analytics efforts and Internal Audit report preparation. * Assisting in the development and tracking of control recommendations for corrective action/improvement. * Work with Internal Audit leadership to identify and continuously improve departmental practices. * Monitor and demonstrate compliance with organizational policies and practices, as evidenced by strong quality assurance results, and strong performance within standards and related metrics. * Stay abreast of current issues and obtain continuing education and training. * Participate in special projects and perform other duties as requested. * Interact with all levels of management to provide effective risk and control advice, maintaining active communication to enhance risk and control awareness and manage expectations. * Provide data analysis support for ongoing compliance monitoring * Maintain up-to-date knowledge about audit controls and techniques * Utilize innovative ideas and tools to enhance operational effectiveness * Evaluate and recommend improvements to business practices, processes, and controls Who You Are: * 5-6 years of relevant experience in a technology environment. * Experience with translating business requirements into project implementation plans and validation, including user acceptance testing. * Knowledge of network-based services, client/server applications, cloud-based and virtualized environments, mobile applications, enterprise systems and infrastructure, network architecture, and security infrastructure. * Passion about process improvement and removing friction from systems * Direct experience with audit and compliance frameworks, e.g., ISO 27001, 2007:2017, PCI, etc. * Background in IT hardware/software concepts and processes used within the business, covering * Core security concepts * Cloud-based services * Windows and Linux operating systems * Open-source ecosystem (databases, applications, etc.) * Experience with auditors and the evidence collection process * Experience with the design and testing of IT security controls in a managed hosting and/or Software-as-a-Service environment * Experience in building relationships across business functions, locations, and technical stakeholders. * Self-direction, attention to detail with a passion to solve practical problems while dealing with a number of variables. * Ability to present ideas/solutions and communicate clearly, concisely, and accurately with others at all levels of the organization. * Experience in reading the culture of a company, adjusting your style and adapting as needed. * Collaborative, upbeat work ethic where you both take ownership and have fun. * Able to meet deliverables and drive your work to completion within specified timelines. * Great verbal and written communication skills. This is a Hybrid role - Beginning March 1, 2026, employees who live within commuting distance of a Dedicated Office will be expected to be in the office three days per week. #LI-KE1 #LIHYBRID (Pay Transparency Range: $49,729.00 - $84,100.00) Compensation Transparency The national base salary range for this role is posted above in this job post. Final compensation will be determined based on factors such as relevant experience, skills, qualifications and geographic location. We also consider internal equity to help ensure fair and consistent pay practices across our teams. Where applicable, this role may also be eligible for variable compensation (such as bonus or commission), equity, and benefits in accordance with local policies. Details will be shared during the hiring process. We are committed to equitable and transparent pay practices that align to market data, internal equity, and individual contribution. Inclusion and Belonging At Commerce, we believe that celebrating the unique histories, perspectives and abilities of every employee makes a difference for our company, our customers and our community. We are an equal opportunity employer and the inclusive atmosphere we build together will make room for every person to contribute, grow and thrive. We are committed to creating an inclusive and accessible hiring experience for all candidates. If you require accommodations or adjustments at any stage of the recruitment process, please let us know and we will work with you to meet your needs. Learn more about the Commerce team, culture and benefits at Protect Yourself Against Hiring Scams: Our Corporate Disclaimer Commerce, along with many other employers, has become the subject of fraudulent job offers to hopeful prospective job seekers. Be advised: Commerce does not offer jobs to individuals who do not go through our formal hiring process. Commerce will never: * require payment of recruitment fees from candidates; * request personally identifiable information through unsanctioned websites or applications; * attempt to solicit money from you as part of the hiring process or as part of an employment offer; * solicit money to complete visa requirements as part of a job offer. If you receive unsolicited offers of employment from Commerce, we urge you to be extremely cautious and avoid engaging or responding.

Vacancy posted 12 hours ago
Similar jobs that could be interesting for youBased on the Security Governance Risk & Compliance Analyst in Austin, TX vacancy
  •  ...Description • Identify, assess, and prioritize risks that could impact SARC's objectives,...  ...to minimize risk exposure. • Monitor compliance with applicable laws, regulations, and...  ...• Bachelor's degree in business, law, security or a related field • 5+ years of experience... 
    Suggested

    ACL Digital

    Austin, TX
    13 days ago
  • Job Description The Sr. Cybersecurity Governance, Risk, and Compliance (GRC) Associate plays a critical role in supporting the organization's GRC program, with a specialized focus on security framework compliance and information security risk management. Reporting to the... 
    Suggested
    Permanent employment
    Temporary work
    Work at office
    Flexible hours

    Corient

    Austin, TX
    2 days ago
  •  ...electric vehicle manufacturer is hiring a GRC Senior System Analyst in Austin, Texas. This role focuses on integrating AI solutions into governance and compliance frameworks to enhance efficiency and security. Applicants should have extensive experience in software applications... 
    Suggested

    Tesla Motors, Inc.

    Austin, TX
    2 days ago
  • $80k - $130k

    A global IT solutions provider is seeking a Senior Risk Analyst to analyze data and assess risks while implementing risk management policies...  ...departments and includes responsibilities such as conducting governance reviews, training, and improving efficiency. Candidates... 
    Suggested

    SHI

    Austin, TX
    4 days ago
  •  ...A leading security solutions provider in Austin, TX is seeking an Intel Analyst responsible for supporting proactive risk management through intelligence analysis. Key tasks include monitoring threats, developing reports, and collaborating across teams to ensure effective... 
    Suggested
    Remote work

    Securitas Group

    Austin, TX
    5 days ago
  •  ...Analog Devices Inc. is looking for an AI Governance Analyst to enhance the safety and ethics of AI...  ...This role involves policy development, risk assessment, and cross-functional collaboration with teams in technology and compliance. The ideal candidate holds a Bachelor's... 

    1010 Analog Devices Inc.

    Austin, TX
    3 days ago
  •  ...Principal IAM GRC Analyst The Principal IAM GRC Analyst provides technical guidance...  ...implementation, and enforcement of governance, risk and compliance for IAM-related functions....  ...especially as it relates to written security and access controls. ~2-4 years of... 

    Professional Recruiters

    Austin, TX
    5 days ago
  • $125k

    The University of Texas at Austin is seeking a Cybersecurity GRC Analyst to support governance, risk, and compliance for its Controlled Research Program. The role involves maintaining security programs, conducting assessments, and collaborating with IT and research stakeholders... 
    Remote job

    University of Texas

    Austin, TX
    3 days ago
  •  ...complex challenges in science, security and sustainability. Our...  ...continents. The SCA and DBA Compliance Analyst will support the company's...  ...integrity, mitigate risks, and ensure adherence to Code...  ...Required experience in Federal Government Contracting. Experience with... 
    Hourly pay
    Contract work
    Work experience placement
    For subcontractor
    Work at office
    Local area
    Remote work

    Amentum

    Austin, TX
    4 days ago
  • $125k

    Overview Job Posting Title: Cybersecurity GRC Analyst Department: Information Security Office Location: AUSTIN, TX (This position can be a...  ...on the development, maintenance, and execution of governance, risk, and compliance activities that support the university’s Controlled... 
    Work at office
    Remote work

    University of Texas

    Austin, TX
    3 days ago
  • A leading automotive company is seeking a Senior Analyst for Cybersecurity Compliance in Austin, Texas. This role involves designing and operating control...  ...oversee compliance program implementation and conduct risk assessments while collaborating cross-functionally to enhance... 

    General Motors

    Austin, TX
    10 hours ago
  • A housing authority organization in Austin seeks a Compliance Analyst to ensure adherence to HUD and other regulations in low-income housing programs. Responsibilities include conducting file audits, generating audit reports, and providing training to staff. Candidates... 

    Housing Authority of the City of Austin

    Austin, TX
    1 day ago
  • $88k - $128k

    Affirm is seeking a Compliance Analyst II to join their remote-first team in Austin, Texas. In this role, you will actively support compliance governance and oversight programs, challenge operations teams on compliance with regulations, and analyze consumer complaints.... 
    Remote job
    Flexible hours

    Affirm

    Austin, TX
    1 day ago
  • $76k - $100k

     ...over 50 percent of Fortune 100 companies. Learn more at bonterratech.com. About the Role The Bonterra Information Security Risk and Compliance department is looking to hire a Compliance Specialist to our team. If you enjoy problem solving, are enthusiastic... 
    Full time
    Local area

    Social Solutions Global

    Austin, TX
    4 days ago
  •  ...Skills/Experience 3 - Experience in a GRC, cybersecurity, or compliance role. 3 - Hands-on experience with GRC platforms (Diligent...  ...Preferred Years | Skills/Experience - Familiarity with risk management methodologies. - Certifications such as CISA,... 

    Saxon Global

    Austin, TX
    3 days ago
  • $88.95k - $150.43k

     ...Senior Security GRC Analyst and Internal Security Assessor (ISA) At Commerce, our mission is...  ...evolution of this program, ensuring that compliance is integrated into our "business as...  ...a specific focus on managing Targeted Risk Analyses (TRAs) and the customized approach... 
    Work at office
    Local area
    3 days per week

    BigCommerce

    Austin, TX
    2 days ago
  •  ...to Expect Tesla is looking for a GRC Senior System Analyst to join our Governance Risk and Compliance team. In this role, you will help with the integration...  ...governance practices, ensuring Tesla's operations remain secure, compliant, and scalable. If you excel at leveraging... 
    Hourly pay
    Full time
    Temporary work
    Flexible hours

    Tesla

    Austin, TX
    3 days ago
  •  ...Administration/Configuration), Preferred 10+ Years (Enterprise/Government GRC Environments) Job Description: Seeking an experienced RSA Archer GRC Security Analyst to support enterprise governance, risk, and compliance initiatives through the administration, configuration... 

    Siritech Solutions Corp

    Austin, TX
    4 days ago
  •  ...Job Description Job Description GRC Archer Network Security Analyst II (RSA Archer Specialist) Mode of Work: Onsite...  ...Archer Network Security Analyst II to support enterprise Governance, Risk, and Compliance (GRC) initiatives through the planning, design, implementation... 

    Siritech Solutions Corp

    Austin, TX
    4 days ago
  • EZCORP in Austin, Texas is seeking a Cyber & AI Risk Specialist to enhance the secure adoption of AI across the organization. This role involves developing AI security policies, assessing compliance risks, and collaborating with various teams to ensure industry standards... 

    EZCORP

    Austin, TX
    1 day ago
  • $193k - $236k

    IMEG Corporation seeks a Physical Security Consultant / Systems Designer in Austin, TX. The role involves conducting vulnerability assessments, assisting with building and landscape design, and providing mitigation recommendations. Candidates should have a BS degree and... 

    IMEG Corporation

    Austin, TX
    4 days ago
  •  ...Risk Officer Bluespring Wealth Partners (Bluespring) is part of Kestra Holdings, an...  ...enabling advisors to offer comprehensive securities and investment advisory solutions to their...  .... This role will report to the Chief Compliance Officer and work closely with the Chief... 
    Work experience placement

    Kestra Holdings

    Austin, TX
    4 days ago
  • $165k - $239k

    Compliance Senior Specialist, Privacy and Security Policy, RCI Google Austin, TX, USA; Chicago, IL, USA; +1 more Benefits...  ...in compliance, policy, risk management, investigation, auditing...  ...compliance, assurance, risk, and governance functions across Google to help the... 
    Full time
    Temporary work

    Google Inc.

    Austin, TX
    10 hours ago
  • $164.9k - $223.1k

    Arm Limited is seeking a GRC Risk Manager in Austin, Texas, to oversee security risk management and lead supply-chain cyber risk assurance. The ideal candidate will have deep expertise in technical risk frameworks like ISO 27001 or NIST and possess strong analytical and... 

    Arm Limited

    Austin, TX
    10 hours ago
  • The Healthcare Compliance Audit Specialist II collaborates with operational...  ...teams to assess compliance risks, evaluate internal controls,...  ...team members in supporting governance and compliance matters....  ...by all applicable privacy and security standards. Employees are expected... 
    Full time
    Local area

    Direct Jobs

    Austin, TX
    1 day ago
  • $80k - $130k

     ...offices or yours. Job Summary A Senior Risk Analyst (SRA) analyzes data and documentation...  ...control programs.? Conduct internal governance reviews, support audits, and partner...  ...organizational ethics, integrity, and compliance standards. Capable of thriving in fast... 
    Work experience placement
    Work at office
    Worldwide
    Flexible hours
    Shift work
    Afternoon shift

    SHI GmbH

    Austin, TX
    1 day ago
  • $34.55 - $55.19 per hour

     ...RISK ANALYST USMB WHAT IS THE OPPORTUNITY? This role will primarily be responsible for...  ...preparation of documents and responses for compliance testing, internal and external audits...  ...such as Risk Management / Compliance Governance Programs, Human Resources, Finance, Legal... 
    Hourly pay
    Remote work

    City National Bank

    Austin, TX
    4 days ago
  •  ...Director of Cybersecurity and Privacy Risk Advisor About the Company Prestigious...  ...the advancement of its Information Security Governance and Risk functions. The successful...  ...controls, and leading the team to ensure compliance and continuous control monitoring. The... 
    Work experience placement

    Confidential

    Austin, TX
    2 days ago
  • Tyler Junior College is seeking a Security Analyst II to manage and improve its information security program. The role involves performing risk analysis, coordinating incidents, and ensuring compliance with security standards. Ideal candidates will have a Bachelor's degree... 

    Tyler Junior College

    Austin, TX
    1 day ago
  •  ...Sr. Business Risk Analyst - Modern Technologies The Sr. Business Risk Analyst - Modern Technologies...  ...This position will be responsible for the governance and operations of enterprise platforms with established security, compliance, risk and governance requirements of the... 
    Work experience placement

    Professional Recruiters

    Austin, TX
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Governance Risk & Compliance Analyst. Be the first to apply!