Governance, Risk & Compliance (GRC) Analyst
$135k - $165kIcehouseventures
Ivo is an AI-powered contract review and legal technology company transforming how organizations review, negotiate, and manage contracts. Security, privacy, and trust are foundational to our platform and customer relationships. As we continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and risk management programs. Role Overview Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This role will play a key part in maintaining and enhancing Ivo's compliance programs, including SOC 2 Type II, ISO 27001, CSA STAR, and ISO/IEC 42001. The ideal candidate has experience supporting security audits, managing evidence collection, conducting risk assessments, maintaining policies and procedures, and partnering cross-functionally with engineering, IT, legal, HR, and business stakeholders. This is a fully onsite role based out of Ivo's San Francisco headquarters to support close cross-functional collaboration with Security, Engineering, IT, and Operations teams. Responsibilities Support and coordinate Ivo's compliance programs including SOC 2 Type II, ISO 27001, CSA STAR, and ISO/IEC 42001. Assist with annual audits, surveillance audits, and customer security assessments. Coordinate evidence collection and maintain audit readiness across teams. Support and maintain Ivo's Vanta GRC platform and associated compliance workflows. Monitor automated compliance evidence collection and control monitoring within Vanta. Perform vendor and third‑party risk assessments. Support enterprise risk management and risk register maintenance. Maintain and update security policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. Required Qualifications 3–5 years of experience in Governance, Risk & Compliance (GRC), Information Security, IT Audit, or related field. Hands‑on experience supporting SOC 2 Type II, ISO 27001, CSA STAR, and in-depth knowledge of ISO/IEC 42001. Experience administering or working extensively with Vanta or similar GRC/compliance automation platforms. Experience managing and maintaining a customer‑facing Trust Center, including security documentation, compliance artifacts, sub‑processor disclosures, and customer assurance materials. Strong understanding of information security principles and common security controls. Experience with audits, evidence management, and customer security reviews. Excellent written and verbal communication skills. Preferred Qualifications Experience working at a SaaS or AI company. Familiarity with GDPR, CCPA, privacy regulations, and third‑party risk management. Knowledge of cloud environments such as GCP, AWS, or Azure. Relevant certifications such as Security+, CISA, CRISC, CCSK, or ISO 27001 Lead Implementer/Auditor. What We're Looking For Strong attention to detail and accountability. Collaborative mindset with strong cross-functional communication skills. Ability to translate compliance requirements into practical operational processes. Interest in emerging AI governance and security frameworks. Self-starter mentality with a continuous improvement mindset. Compensation And Benefits Competitive salary ($135k - $165k) and equity package. Comprehensive health, dental, and vision coverage. Flexible PTO. Collaborative onsite work environment (5 days) at Ivo's San Francisco headquarters. Opportunity to help shape the security and compliance foundation of a rapidly growing AI company. Equal Opportunity Employer Ivo is an equal opportunity employer and values diversity at all levels of the organization. We celebrate diversity and are committed to creating an inclusive environment for all employees. #J-18808-Ljbffr
- ...Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This... ...policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. What...SuggestedContract workWork at officeRemote workVisa sponsorshipRelocation packageFlexible hours
- Perplexity is seeking a Governance, Risk & Compliance Analyst to shape and run our compliance and risk management program. You will lead the implementation of frameworks, oversee data privacy regulations, and build scalable audit systems in a fast‑growing startup environment...Suggested
$150k - $180k
...knowledge. The Role We're looking for a GRC Analyst to join our growing Security, IT, and Privacy... .... You'll be the backbone of all the compliance work at the intersection of Engineering,... ...right person translates security and risk into terms that the business and product...SuggestedFull timeImmediate startRemote workWork from homeFlexible hours- ...together through commerce. Role Whatnot's Security GRC team is dedicated to building trust with regulators,... ...action and high impact goes a long way here. As our Governance, Risk, & Compliance Analyst you should have a minimum of 8+ years of relevant experience...SuggestedLocal areaRemote workWork from homeHome officeFlexible hours
$153.4k - $191.8k
...often, they stem from gaps in governance, risk management, operational discipline... ..., and accountability. Strong GRC programs help prevent those... ...for an Information Security GRC Analyst to help mature Mercury’s security, risk, and compliance programs. This is not a...Suggested- Perplexity is seeking a highly experienced Governance, Risk & Compliance Analyst to join our world-class team. Responsibilities You will help shape our compliance and risk management program. Implement and lead frameworks such as SOC2, ISO 27001, and HIPAA, ensuring...
$140k - $178k
...truth-finding goals. As a GRCT Analyst, you will independently drive moderately complex trust, compliance, and risk workstreams that help... ...Support internal risk and governance processes such as security impact... ...experience with trust portals or GRC tooling. Experience using...Local areaFlexible hoursShift work$132.6k - $195k
...marketplace of consumers, merchants, and drivers.About the RoleThe Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced...Hourly payContract workWork at officeLocal areaRemote workFlexible hours$95k - $150k
...Your Role The Security & Compliance team at Zip is committed to... ...customer requirements. As a GRC Analyst at Zip, you'll be a key... ...internal audits, and vendor risk assessments Lead conversations... ...' security, compliance, and governance teams in due diligence and...Home officeFlexible hours$218k - $269k
...makes everything else feel small. Role Scope Run the day‑to‑day compliance program end to end across SOC 2 Type II, ISO 27001, NIST 800‑53... ...collection, control monitoring, and audit readiness held on GRC platforms (Vanta) and the tooling we build in‑house. Own the policy...Local area$135k - $165k
Icehouseventures is seeking a proactive GRC Analyst to join our team in San Francisco. This role will support compliance and risk management initiatives essential for maintaining high security standards. The ideal candidate will have 3-5 years of experience in GRC and relevant...Contract work- Ivo is looking for a detail-oriented Governance, Risk & Compliance (GRC) Analyst in San Francisco. The ideal candidate will support compliance programs such as SOC 2 Type II and ISO 27001 while managing audits and risk assessments. This onsite role offers a competitive...
- Youcom is seeking a GRC Analyst to support the compliance function within our Security, IT, and Privacy team. This role focuses on managing compliance... ...candidate will coordinate audit activities, conduct vendor risk assessments, and ensure compliance policies are...Flexible hours
- Salesforce.com, inc. is seeking a detail-oriented Security GRC Analyst to join their Security and Compliance team. In this role, you will lead the Unified Audit program ensuring compliance across various frameworks like SOC 2 and HIPAA, while managing evidence collection...
$134k - $202k
...our community, or shaping our story, you’ll help define what comes next. About the role: We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance with security and...Work at officeRemote workWorldwideMonday to Friday- Anthropic is seeking a Senior Third Party Risk Manager to lead the top tier of vendor risk, including mission-critical compute, data center, and data-pipeline partners. You will shape risk assessments, escalation, and remediation across security, privacy, and operations...Work at officeVisa sponsorship
- Zip is hiring a GRC Analyst to drive compliance programs across SOC 1, SOC 2, ISO 27001, and expanding into the EU and regulated industries. You’ll... ...development. In this fast-growing environment, you’ll lead risk assessments, support due diligence questionnaires, and translate...
- Baker Tilly Public Sector Internal Audit & Risk Senior Consultant in the San Francisco region offers a dynamic, client‑facing role... ...advisory firm. You will assess risks, strengthen controls and support governance improvements for government and public sector clients. The role...Remote job
- Early Warning is seeking a Sr. Risk Analyst to support the Enterprise Risk Management program. You... ...senior management in Product Development, Legal/Compliance, IT, and Finance. A strong background in risk, analytics, and governance is essential. You will contribute to risk...
$92.82k - $109.2k
...Job Title Business Risk Professional Job Description The organization's risk... ...structure is designed to promote effective governance and risk management that is systematic,... ...projects and/or activities that ensure compliance with applicable federal, state and local...Temporary workWork experience placementWork at officeLocal areaRemote workFlexible hours3 days per week$117.2k - $176.7k
...Francisco, CAThe Senior Security GRC Analyst role is part of our... ...alike, you will help ensure compliance programs run smoothly and certifications... ...program status and risk areas to leadership.Manage internal... ...years of experience in GRC (Governance, Risk, and Compliance),...Full timeWork at office$92.82k - $109.2k
...Job TitleBusiness Risk ProfessionalJob DescriptionThe organization's risk management... ...structure is designed to promote effective governance and risk management that is systematic,... ...projects and/or activities that ensure compliance with applicable federal, state and local...Work at officeLocal areaRemote workFlexible hours3 days per week- Runway is seeking a senior GRC professional to design and manage governance, risk, and compliance programs across our US operations, with remote flexibility. You will lead external audits, maintain certifications (SOC 2, ISO 27001/27701/42001, FedRAMP), oversee GDPR/CCPA...Remote work
$89.02k - $202.27k
...as passionate about your future as we are, join our team.KPMG is currently seeking a Manager, Ethics & Compliance Governance & Monitoring to join our LRMC(Legal Risk Management & Compliance) - E&C (Ethics & Compliance) organization.Responsibilities:Drive execution of Ethics...H1bLocal area$118.68k - $175.8k
...is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam.Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information...Work experience placementWork at officeLocal area- SmithRx is seeking a Compliance Analyst to help implement a robust compliance program in a dynamic PBM regulatory landscape. You will remediate non-compliance and support policy and procedure adherence across the organization. You will work with the Corporate Compliance...Remote jobFull timeHome office
- You.com is looking for a GRC Analyst to join our Security, IT, and Privacy function in San Francisco... ...be crucial in building and maintaining compliance programs and ensuring trust with our... ...frameworks and conducting vendor risk assessments. The ideal candidate has 3-5...
- Baker Tilly is seeking an IT Audit, Cybersecurity & Risk Senior Consultant with a SOC focus to join its Risk Advisory practice in a... ...environment in San Francisco. You will assess technology risks, support governance and internal controls, and help clients improve risk management...
- ...Reflection is seeking a senior leader to design, operate, and mature enterprise risk governance across the organization. The role sits at the intersection of risk, compliance, technology, and AI safety to shape how the company understands and responds to regulatory and...
$265k - $285k
...redefinewhat'spossible. Title : Sr. Director, Corporate Compliance Reports to : Chief Legal and Compliance Officer... ...commercial stage. This role establishes the vision, strategy, governance, and operations of a scalable, risk-based compliance program that supports responsible...Work at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!
- risk consultant San Francisco, CA
- risk analyst San Francisco, CA
- senior quantitative risk analyst San Francisco, CA
- operational risk consultant San Francisco, CA
- it risk analyst San Francisco, CA
- risk officer San Francisco, CA
- third party risk analyst San Francisco, CA
- operational risk specialist San Francisco, CA
- regulatory affairs specialist San Francisco, CA
- medicare compliance specialist San Francisco, CA

