Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Governance Risk & Compliance (GRC) Analyst

$130k - $170k
Full-time

Virtru

About Virtru: While the rest of the security industry obsesses over locking data down to prevent it from being lost or stolen, we're doing something fundamentally different at Virtru. We're setting data free so that you can intentionally share it with others, but without sacrificing security, privacy, or control. We've created both a suite of powerful data protection applications and an open platform that's sparking an ecosystem of innovation. Through the Trusted Data Format (TDF) open standard, we're not just protecting data; we're creating a new paradigm where security enables sharing rather than preventing it. Think of us as the Android of data protection: a robust platform with an open core that developers and partners can build upon, coupled with our own best-in-class applications that showcase what's possible when you reimagine security from the ground up. Backed by Iconiq Capital, Bessemer Venture Partners, Foundry Capital, and Tiger Global, we're helping Fortune 500 companies and government agencies discover that true data security means having the freedom to share, collaborate, and innovate — without compromise. Compensation: $130,000-$170,000/year Team & Position Details: Here at Virtru you’ll help build a cutting edge security compliance program aligned with FedRAMP, SOC 2, PCI, HIPAA, GDPR, and just about any other security/privacy framework you can think of, whilst getting your hands on some of today’s most important tools and tech like Kubernetes, GCP, AWS, Terraform. We put a high value on input from everyone on our team. Your voice will have a significant impact. With a constantly growing customer base, there is no shortage of challenging and exciting scaling/optimization work to ensure that we can provide the most secure and performant service. As a GRC Analyst at Virtru, you will be the primary point of contact for compliance-related inquiries. You will lead and manage the organization's efforts to achieve and maintain CMMC compliance, by conducting gap analyses and developing a roadmap to address compliance requirements. You will also play a vital role in supporting our existing FedRAMP, SOC2, and PCI DSS compliance. Get in touch if you are excited to help us grow into a world-class security compliance program. As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include: Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure and Software as a Service (SaaS) services (GCP, AWS, GitHub, Okta, etc). Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services. Conduct risk assessments across business units and processes. Identify risk findings and recommend remediation and risk mitigation strategies. Participate in incident response (IR) activities, providing risk analysis and remediation support as needed. Assist or implement automated controls to support risk mitigation efforts across various business units with stakeholders. Incorporate CMMC certification into Virtru’s slate of compliance assessments and ongoing monitoring activities (FedRAMP, SOC 2, PCI). Facilitate the third-party vendor on-boarding and annual review process by evaluating the security of current and prospective partners. Enhance the team with your individualism, spirit, and love of learning. Skills that will help you thrive in this role: Minimum of 5+ years of information security, IT audit and/or IT Risk Management, or GRC Analyst/Engineer experience Deep understanding of at least few of the following: CMMC, NIST 800-53 & 800-171, FedRAMP, SOC 2, PCI, and/or other global privacy compliance frameworks Technical acumen. Strong understanding of modern cloud technologies (AWS, GCP, Azure, etc.) and familiarity with GRC tools (Hyperproof, Vanta, Drata, etc) and SIEM tools (Datadog, Splunk) You’re a relationship builder and have worked with both business and technical risk and understand how to translate risk to various levels of the organization Have experience training and coaching teams to become better security and privacy practitioners Like working on an autonomous agile team. At Virtru, you will have ownership of security, but you'll collaborate with everyone to make sure we produce and implement the right solutions Ability to resolve conflicts and drive issues to completion. Work independently with little or no supervision while maintaining a high level of efficiency. Virtruvian qualities that will set you up for success: Thinking outside of the box to respectfully challenge your teammates and managers in the pursuit of excellence Strong sense of urgency with an action-oriented mindset Able to collaborate and adapt to shifting priorities as business needs evolve Comfortable with asynchronous communication including slack, email, zoom, etc. Perks & Benefits: At Virtru, we believe people do their best work when their wellbeing is put first. This is why we make your wellbeing our priority with a thoughtful and holistic program that encompasses Occupational, Mental, Social, Physical, and Environmental Wellness by offering benefits such as… A Flexible PTO policy — we strongly encourage you to take time off (in addition to 14 holidays) to ensure that you are getting the proper time needed to unplug and recharge. A $1,500 annual Learning & Development Stipend focused on providing you the resources to continually learn and professionally grow. Frequent company-sponsored team celebrations that provide ample opportunities to connect with teammates and be social! Access to an Employee Assistance Program Access to Headspace, a mental health app tailored to your specific needs. A flat 3% contribution to your retirement account A high degree of flexibility — Have an appointment, errand, or family emergency to take care of? Hop to it! We give you the time and space to take care of you and your own first. In addition to wellbeing, Virtru places a strong emphasis on diversity, equity, inclusion, and belonging. Our DB&I Council is dedicated to fostering an inclusive workplace and making the psychological safety of each and every one of our teammates a top priority. Additional perks include: Competitive compensation Generous parental, medical, and bereavement policies Uncapped commissions for Sales roles 401K contribution and stock options Full medical, dental, and vision benefits New Hire Swag and IT Welcome boxes Structured semi-annual 360° performance reviews Virtru is committed to building an inclusive environment for people of all backgrounds and everyone is encouraged to apply. Virtru is an Equal Opportunity Employer and does not discriminate on the basis of race, color, gender, religion, disability, national origin, protected veteran status, age, or any other status protected by applicable national, federal, state, or local law.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Security Governance Risk & Compliance (GRC) Analyst in New York, NY vacancy
  •  ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're looking for experienced GRC professionals to help evaluate and improve AI systems being trained on real-world security, compliance, and risk scenarios. Your practitioner knowledge... 
    Suggested
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    New York, NY
    4 days ago
  •  ...Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience... 
    Suggested
    Remote work
    Flexible hours

    Itlearn360

    New York, NY
    20 hours ago
  • Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential...  ..., Risk and Compliance (GRC) Analyst to join our Security Team. This role will serve as a subject matter expert... 
    Suggested
    Work at office
    Local area
    Remote work
    Flexible hours

    Itlearn360

    New York, NY
    20 hours ago
  • $100k - $125k

    ## Risk and Compliance AnalystApplyremote type: Hybridlocations: New...  ...The Risk and Compliance Analyst will play a key role in...  ...and executing the Firm’s governance, risk and compliance (GRC) program. Reporting to the...  ...27001, client-facing security assessments, and enterprise... 
    Suggested

    Davis Polk

    New York, NY
    4 days ago
  •  ...Computer Science, Information Systems, Cybersecurity, or a related field Experience in technology audit, governance, risk, and compliance, information security, or related field is preferred, and willingness to learn is required Experience working in a cloud... 
    Suggested
    Work at office

    Saxon Global

    New York, NY
    1 day ago
  •  ...VOIS is looking for a Compliance Analyst to support Vodafone's Global Roles, Governance & Compliance function. This role involves ensuring effective...  ...will have a strong understanding of SAP GRC controls, SOX compliance, and risk management, with responsibilities including... 
    Remote work

    V O I S

    New York, NY
    4 days ago
  • Summary Prestige Staffing is seeking a highly motivated GRC Analyst to support governance, risk, and compliance activities within a Microsoft-centric environment....  ...play a pivotal role in maintaining NIST-aligned security frameworks, controls documentation, and audit... 
    Hourly pay
    Contract work
    3 days per week

    Prestige Staffing

    New York, NY
    4 days ago
  •  ...real estate, infrastructure, security and technology. The O&T group...  ...fragmented media landscape. Compliance Operations Manager This full‑...  ...a focus on data compliance & governance. The role will be responsible...  ...practices. Document project risks and issues; providing solutions... 
    Full time
    Temporary work
    Work at office

    PVH (Tommy Hilfiger/Calvin Klein)

    New York, NY
    2 days ago
  • $200k - $275k

     ...access to quality healthcare, yet both are often harder to secure than they should be. By integrating AI agents...  .... About The Role We are seeking a Director of Governance, Risk, and Compliance (GRC) to scale our risk and compliance programs. This role will... 
    Work at office
    Local area
    Relocation

    eliseai

    New York, NY
    14 hours ago
  •  ...SENIOR TECHNOLOGY CONTROLS AND COMPLIANCE ANALYST- REMOTE Job Summary Compass Group North America...  ...opportunity in the Technology Risk & Governance team as a Controls & Compliance Sr Analyst...  ...reviews and updates to information security policies, coordinating with IT, Legal... 
    Local area
    Remote work
    Flexible hours

    Compass Group

    New York, NY
    3 days ago
  • $98.8k - $146.4k

    Security & Privacy Awareness and Training Analyst - USDS About the Team The USDS Security - Risk & Compliance team is responsible for managing USDS compliance in accordance...  ...providing industry-leading governance, risk, and compliance (GRC) services. Our core services include... 
    Full time
    Temporary work
    Local area
    Shift work

    Tik Tok

    New York, NY
    3 days ago
  • $140k - $190k

     ...Security, Risk and Compliance Consultant New York, New York, United States WHO WE LOOK FOR An SEI-er is...  ...Familiarity or direct experience with GRC/Cybersecurity solutions, tools and technologies...  ...or projects with military or federal government agencies in Risk, Compliance or... 
    Permanent employment

    SEI

    New York, NY
    1 day ago
  •  ...Administer and manage the third-party risk management (TPRM) platform,...  ...program, including vendor profile governance, ongoing monitoring activities, offboarding...  ...functional stakeholders, including Compliance, Legal, Information Security, and Procurement, facilitating... 

    Atlas Search

    New York, NY
    20 hours ago
  •  ...LeoForce seeks a talented governance professional to enhance its AI governance program based in New York, NY. You will manage AI compliance and risk assessments while collaborating with various teams to ensure the responsible usage of AI capabilities. The ideal candidate... 

    Leoforce

    New York, NY
    20 hours ago
  • $95k - $115k

     ...York - 225 Liberty Street, 8th Floor Overview Brookfield’s Data Governance Program has been created to build a high‑quality, trusted...  ...properties, underwriting metrics, and capital pools. The Senior Analyst will play a key role in supporting this program by ensuring data... 

    Brookfield Asset Management

    New York, NY
    2 days ago
  • $200k - $270k

     ...intensity to push the frontier forward. The Security Team Examples of key problems the team is...  ...small. Role Scope Run the day-to-day compliance program end to end across SOC 2 Type II,...  ...monitoring, and audit readiness held on GRC platforms (Vanta) and the tooling we build... 
    Local area

    FluidStack

    New York, NY
    3 days ago
  •  ...cybersecurity firm is looking for a detail-oriented Entry-Level GRC Analyst to join their remote team. In this role, you'll work closely with senior members to strengthen client cybersecurity and compliance programs. You'll be involved in assessing controls, developing... 
    Remote work

    Hotman Group, LLC

    New York, NY
    4 days ago
  •  ...Responsibilities Manage and support our compliance certifications, including SOC 2,...  ...and assessors Manage Garner’s Security and Privacy trust center Maintain the risk register and drive risk...  ...posture to senior leadership Scale our GRC function with AI and automation,... 

    Jobtailor

    New York, NY
    2 days ago
  •  ...Senior GRC Analyst job at Quantexa. New York, NY. What we’re all about. We find...  ...experience in both US Government and non-government security and compliance, applying deep knowledge acquired...  ...the maturity of our Governance, Risk, and Compliance (GRC) function. This... 
    Contract work
    Temporary work
    Work experience placement
    Immediate start

    Quantexa

    New York, NY
    3 days ago
  • $78.9k - $123.3k

     ...oriented cybersecurity compliance professional to support...  ...responsible for managing the security authorization lifecycle...  ...with Federal Risk Management Framework (RMF...  ...Substitutions are subject to government customer review and...  ...risk, and compliance (GRC) platforms. Knowledge of... 
    Permanent employment
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Noblis

    New York, NY
    2 days ago
  •  ...Wall Street's first true AI analyst. Our mission is to empower finance...  ...The Role Rogo is hiring a GRC Analyst to support our customer trust, security assurance, and compliance programs as we scale globally...  ...to ensure Rogo’s controls, risk posture, and security practices... 

    Rogo

    New York, NY
    4 days ago
  •  ...client, is looking for a GRC Analyst to join their team!...  ...will support technology risk and controls...  ...leadership to ensure compliance requirements are appropriately...  ...issue management, and governance activities within a regulated...  ...information security and technology risk initiatives... 

    Optomi

    New York, NY
    3 days ago
  • $85k - $110k

     ...AI And Technology Risk Governance Specialist Execute day-to-day operations...  ...across AI Systems, Cyber Security, Data Privacy (IT lens), and...  ...teams Risk and Compliance teams Qualifications:...  ...~ Experience with TPRM and GRC tools (like Archer, ServiceNow... 
    Temporary work
    Work at office
    Remote work
    Home office
    Flexible hours

    The Mutual Group

    New York, NY
    2 days ago
  •  ...seeking a highly motivated and detail-oriented Sr. GRC Analyst to support the organization’s Governance, Risk & Compliance program and ensure alignment with regulatory...  ...audit readiness and compliance across the IT and Information Security environment. #J-18808-Ljbffr

    Union Depot

    New York, NY
    4 days ago
  •  ...Supported the firm's compliance framework, ensuring adherence to insurance regulations and internal governance requirements. Monitored regulatory developments and implemented...  ...Conducted compliance monitoring reviews and risk assessments, identifying regulatory risks and... 

    Blacklock Group

    New York, NY
    3 days ago
  • $150k - $165k

     ...About the Role The Compliance and Privacy Director is a key member of...  ...compliance program requirements, data governance, and compliance with federal...  ...closely with Information Security, Technology, Legal,...  ...documents Lead and participate in risk assessments, gap analyses, corrective... 
    Contract work
    Temporary work
    Flexible hours
    Shift work

    LifeMD

    New York, NY
    1 day ago
  • $180k - $280k

     ...this is the first dedicated compliance hire at Qualitate. The Role...  ...authority on the rules that govern expert engagement, and the controls...  ...Qualitate Trust Portal, our security certifications and audits (e....  ...think about compliance risk and due diligence, and you know... 
    Full time
    Contract work
    Flexible hours

    Qualitate

    New York, NY
    3 days ago
  • $80k - $90k

     ...A fast-growing fintech company is seeking a Compliance Management System (CMS) Analyst to enhance its compliance program amidst evolving financial products. This remote role involves conducting compliance risk assessments and collaboration with product teams. Ideal candidates... 
    Remote work

    Earnin

    New York, NY
    4 days ago
  •  ...leading utility provider in Pennsylvania seeks a GRC Cybersecurity Senior Analyst to ensure compliance with regulatory obligations. This role involves collaboration...  ...with various departments to implement governance and risk management processes. The ideal candidate has a... 

    UGI Utilities, Inc.

    New York, NY
    4 days ago
  • $80k - $150k

     ...KeyCorp is looking for an Operational Risk Analyst V specializing in Third Party Management in Brooklyn, Ohio. The ideal candidate should...  ...management experience and be skilled in regulatory guidance compliance. The role involves providing oversight on third-party risk... 

    Dormont Manufacturing Company

    New York, NY
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Governance Risk & Compliance (GRC) Analyst. Be the first to apply!