Senior Security GRC Analyst
$96.3k - $145.2kSalesforce
To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts. Job Category Enterprise Technology & Infrastructure Job Details About Salesforce Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Ready to level‑up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce. The Experience The Security GRC (Governance, Risk, and Compliance) Analyst role is part of our Security and Compliance team, sitting at the intersection of internal operations and external audit relationships. We are looking for a detail‑oriented GRC Analyst to lead our Unified Audit program — keeping us compliant, audit‑ready, and continuously improving across multiple frameworks. As a key partner to control owners and external auditors alike, you will help ensure our compliance programs run smoothly and that our certifications stay strong. What You’ll Actually Be Doing Lead the end-to-end Unified Audit program across SOC 2 (Service Organization Control 2), HIPAA (Health Insurance Portability and Accountability Act), ISO (International Organization for Standardization) 27001, and GxP (Good Practice) frameworks, coordinating schedules and minimizing duplication across certifications. Manage internal evidence collection by assigning tasks to control owners, tracking deadlines, validating submissions, and conducting pre-audit gap reviews. Serve as the primary liaison with external auditors — scheduling walkthroughs, responding to information requests, and coordinating responses to findings. Maintain compliance dashboards, standard operating procedures, and documentation repositories to support continuous monitoring and audit readiness. You’re Our Person If... You have 2–4 years of experience in GRC, compliance, audit, or information security, with hands‑on experience supporting or managing compliance audits. You have working knowledge of at least two of the following: SOC 2, HIPAA, ISO 27001, or GxP frameworks. You are proficient with GRC tools, audit management platforms, and documentation systems (Microsoft Office Suite or Google Workspace). You communicate clearly with both technical and non‑technical stakeholders and thrive managing multiple concurrent deadlines. Even Better If... You hold one or more relevant certifications such as CISA (Certified Information Systems Auditor), CRISC (Certified in Risk and Information Systems Control), CISSP (Certified Information Systems Security Professional), or ISO 27001 Lead Auditor/Implementer. You have experience with unified or integrated audit programs, or a background in healthcare or life sciences. You have hands‑on experience with GRC platforms such as Drata, Vanta, OneTrust, or ServiceNow GRC. You have worked directly with external audit firms in a compliance or security capacity. Unleash Your Potential When you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and be your best, and our AI agents accelerate your impact so you can do your best. Together, we’ll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love. Accommodations If you need a reasonable accommodation during the application or the recruiting process, please submit a request via this Accommodations Request Form. Please note that Salesforce uses artificial intelligence (AI) tools to help our recruiters assess and evaluate candidates’ resumes and qualifications throughout the recruiting process. Humans will always make any candidate selection and hiring decisions. Please see our Candidate Privacy Statement for more information about how we use your personal data and your rights, including with regard to use of AI tools and opt out options. Posting Statement Salesforce is an equal opportunity employer and maintains a policy of non‑discrimination with all employees and applicants for employment. What does that mean exactly? It means that at Salesforce, we believe in equality for all. And we believe we can lead the path to equality in part by creating a workplace that’s inclusive, and free from discrimination. Know your rights: workplace discrimination is illegal. Any employee or potential employee will be assessed on the basis of merit, competence and qualifications – without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education. In the United States, compensation offered will be determined by factors such as location, job level, job‑related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Initiative for Hiring, Salesforce will consider for employment qualified applicants with arrest and conviction records. At Salesforce, we believe in equitable compensation practices that reflect the dynamic nature of labor markets across various regions. The typical base salary range for this position is $96,300 - $145,200 annually. In select cities within the San Francisco and New York City metropolitan area, the base salary range for this role is $116,000 - $159,500 annually. The range represents base salary only, and does not include company bonus, incentive for sales roles, equity or benefits, as applicable. #J-18808-Ljbffr Salesforce
$117.2k - $176.7k
...place! Agentforce is the future of AI, and you are the future of Salesforce.The ExperienceLocation: San Francisco, CAThe Senior Security GRC Analyst role is part of our Assurance team, sitting at the intersection of internal operations and external audit relationships....SeniorFull timeWork at office$96.3k - $145.2k
...and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Experience The Security GRC Analyst role is part of our Security and Compliance team, sitting at the intersection of internal operations and external audit relationships...SeniorWork at office- ...safety. Please be aware that all official communication will only be sent from @Rippling.com addresses.About the RoleJoin Rippling's Security Assurance team and help demonstrate the trust our customers place in us every day. You'll play a key role in delivering...SeniorWork at office3 days per week
$134.16k - $213.6k
...headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam.About the Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing...SeniorContract workWork experience placementWork at officeLocal area$117.2k - $176.7k
...in the right place! Agentforce is the future of AI, and you are the future of Salesforce.The ExperienceEnterprise Security is looking for a Senior Analyst to support our Business Information Security Officers (BISOs) in their day-to-day work with Enterprise business unit...SeniorFull time- Mercury is seeking an Information Security GRC Analyst to mature security, risk, and compliance programs and build guardrails for business continuity and resilience. You will lead risk assessments, partner with cross‑functional teams, and drive audit readiness across SOC...
$121.76k
A leading scientific institution in San Francisco is seeking a Senior Security Analyst to manage information security controls, focusing on cybersecurity and operational integration. The ideal candidate will have over 5 years of IT experience with extensive knowledge in...SeniorFull time- Discord is seeking a Security Analyst to lead and scale its Security GRC program. You will own the day-to-day workflows—from questionnaires to risk tracking—partnering with Security, Engineering, IT, and Legal to make compliance friction-free. The role emphasizes automation...
- California Academy of Sciences in San Francisco is seeking a Senior Security Analyst to configure, maintain, and monitor internal security controls across the academy’s IT environment. You will integrate security tools into daily operations, mature security architecture...Senior
$75k - $100k
A leading medical technology firm in San Francisco is seeking a Senior Security Analyst to join their Information Security team. This role will focus on analyzing security events and implementing enhancements to detection capabilities, ensuring the safety of patient data...Senior- DoorDash is seeking a security-focused Third-Party Risk Management (TPRM) Sr. Analyst to mature our program and lead risk assessments across the vendor ecosystem. You will drive continuous security improvements, partner with security engineering, procurement, privacy, and...Senior
$121.76k
...Time San Francisco, CA Posted 5 months ago About The Opportunity Reporting to the Director of Information Technology, the Senior Security Analyst is responsible for configuring, maintaining, and monitoring internal security controls to prevent, detect, and respond to...SeniorFull time$75k - $100k
Senior Security Analyst - Heartflow Join to apply for the Senior Security Analyst - Heartflow role at ISC2 East Bay Chapter . Full Time San Francisco, CA Posted 1 day ago Heartflow is a medical technology company advancing the diagnosis and management of coronary artery...SeniorFull timeLocal areaWorldwideRelocation$121.76k
...natural world and empower them to protect it. About the Opportunity Reporting to the Director of Information Technology, the Senior Security Analyst is responsible for configuring, maintaining, and monitoring internal security controls to prevent, detect, and respond to...SeniorFull timeContract work- Salesforce, Inc. is seeking a Security GRC Analyst to lead the Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP. The role partners with control owners and external auditors to ensure continuous compliance and audit readiness. The ideal candidate has 2-4 years...
- Salesforce is seeking a Security GRC Analyst to own the Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP. You will coordinate internal evidence collection, manage control owners, and serve as the main liaison with external auditors to ensure audit readiness...
- University of California, Berkeley is seeking a seasoned IT Security Analyst to join the Security Engineering team within the Information Security Office. You will administer security systems, implement controls, and support broad-scale security initiatives across campus...SeniorWork at office
$130k - $134k
...quality of life. With over 23 programs, we offer multiple ways to aid seniors maintain their health, well-being, independence and participation in the community, fulfilling our mission. The Security Analyst is responsible for assessing information risk and facilitates...Full timeRelocation$183k - $205k
...the interview process. About the Role: Gusto is seeking a Security, Governance, Risk & Compliance professional to join our team managing... ...the company from foundational Governance, Risk & Compliance (GRC) maturity through to steady-state operations, leveraging AI to...SeniorFull timeWork at officeLocal area2 days per week3 days per week$118.68k - $175.8k
...company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam.Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing...Work experience placementWork at officeLocal area- ...etc., are currently subject to negotiation with the appropriate union. The Cybersecurity Awareness Analyst leads the design and execution of the organization’s security awareness and training programs in support of its healthcare and research mission. This role develops...Work experience placementWorldwide
- ...Security Analyst – Endpoint Security & InfrastructureLocation: Daly City, California, USAWork Mode: OnsiteEmployment Type: Full-TimeEligibility: Authorized to work in the US without sponsorshipExperience: 5+ YearsJob DescriptionWe are seeking an experienced Security Analyst...Immediate startShift work
$144k - $162k
...playing games. Discord's Legal team is growing its Security GRC function, and we're looking for a Security Analyst to help run and scale it. You'll own the day-to-... ...questions and escalating the ones that need senior judgment. Run GRC analyses that turn into decisions...Full timeWork at officeImmediate startRelocationRelocation package2 days per week$110k - $140k
...Security Compliance Analyst We are looking for a highly motivated individual with information security governance and compliance experience to be part of our team! As a Security Compliance Analyst at Hive, you will collaborate with engineers and auditors to meet security...$175k - $220k
...compliance posture. Work directly with Engineering to embed security and privacy controls into our products, including deletion pipelines... ...renewals. What you'll bring: ~5+ years in privacy, GRC, or security compliance, ideally with time at a Big 4 or advisory...Contract workWork at officeFlexible hours$128.1k - $272.3k
...250,000 people in more than 140 countries, all of whom rely on secure technology to be able to do their job every single day. Everything... ...of security controls. We are seeking an Active Defense Analyst with a strong information security background and a passion for...Full timeSummer holidayLocal areaRemote workFlexible hoursNight shiftWeekend work- ...Information Security Analyst Location: San Francisco, CA; Los Angeles, CA; Salt Lake City, Utah Duration: 12+ Months, 5 days onsite Must... ...Knowledge of Level 1 & 2 SOC operations Public speaking skills Seniority level: Mid-Senior level Employment type: Contract Job...Contract workWork at office
$90k - $100k
...what we do . What we are looking for: We’re looking for a Security Analyst to help keep Forage’s security and compliance programs running... .... Qualifications: ~1-4 years of experience in GRC, security compliance, IT audit or security operations. ~ Familiarity...Work at office- United States Digital Space LLC in San Francisco seeks a Governance, Risk & Compliance Analyst to mature our security program and manage regulatory obligations, shaping compliance and risk practices to build customer trust in a fast-growing startup transforming search...Senior
- A leading IT services company is seeking a mid-senior level Information Security Analyst based in San Francisco, CA. The role focuses on resolving security incidents and requires strong skills in SQL, SPL, and usage of Splunk. Candidates should have a Bachelor's degree...Contract workWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security GRC Analyst. Be the first to apply!
- senior information security analyst San Francisco, CA
- cloud security analyst San Francisco, CA
- entry level security analyst San Francisco, CA
- security analyst remote San Francisco, CA
- security analyst intern San Francisco, CA
- IT security analyst San Francisco, CA
- security analyst San Francisco, CA
- security operations analyst San Francisco, CA
- bond analyst San Francisco, CA
- junior security analyst San Francisco, CA


