Governance Risk & Compliance Analyst
Whatnot
Join the Future of Commerce with Whatnot!Whatnot is the largest live shopping platform in North America and Europe to buy, sell, and discover the things you love. Whether it's trading cards, fashion, electronics, or live plants, our sellers are building real businesses across hundreds of categories. We're building live commerce at a scale that's never been done in the West, and there's no playbook to copy. The people here are shaping how an entirely new industry develops.As a remote co-located team, we're inspired by our values and anchored in hubs across the US, UK, Ireland, Poland, Germany, and Australia. We move fast, stay close to our users, and focus on the work that drives the most impact.We're one of the fastest growing marketplaces and were recently named the #1 Best Startup Employer in America by Forbes. Check out the latest Whatnot updates on our news and engineering blogs and join us as we enable anyone to turn their passion into a business and bring people together through commerce.RoleWhatnot's Security GRC team is dedicated to building trust with regulators, customers, employees, and investors by demonstrating commitment to industry standards and continuous improvement. We defend and protect our users' data and information as if it were our own. As part of the Security GRC team, you can expect to be responsible for:Reviewing and implementing secure configurations across various tools like Okta, Terraform, AWS, Lumos, Cloudflare, and Github.Developing security requirements for partner teams and driving progress towards the execution of those requirements.Preparing for and running our external security audits.Shaping the strategic direction of the Security GRC team.Team members in this role are required to be within commuting distance of our Los Angeles, CA, San Francisco, CA, Seattle, WA or New York, NY hubs.YouCurious about who thrives at Whatnot? We've found that low ego, a growth mindset, and leaning into action and high impact goes a long way here.As our Governance, Risk, & Compliance Analyst you should have a minimum of 8+ years of relevant experience in security governance, risk, and compliance, preferably in a tech startup environment, plus:A Bachelor's degree in Computer Science, Information Security, or a related field.The successful candidate will have a deep knowledge of security best practices and industry standards, such as ISO 27001, SOC2, PCI, and GDPR/ CCPA.Experience at a Big 4 firm or similar reputable audit firm.Experience in supporting complex third party audit projects in a cloud centric environment, with a strong aptitude to understand emerging technologies to ensure regulatory and compliance requirements are met.Excellent written communication skills with the ability to document, communicate, and report security assessments as well as the status of the implementation and effectiveness of cybersecurity controls with product and business leaders.BenefitsFlexible Time off Policy and Company-wide Holidays (including a spring and winter break)Health Insurance options including Medical, Dental, VisionWork From Home Support Home office setup allowanceMonthly allowance for cell phone and internetCare benefits Monthly allowance for wellnessAnnual allowance towards ChildcareLifetime benefit for family planning, such as adoption or fertility expensesRetirement; 401k offering for Traditional and Roth accounts in the US (employer match up to 4% of base salary) and Pension plans internationallyMonthly allowance to dogfood the app All Whatnauts are expected to develop a deep understanding of our product. We're passionate about building the best user experience, and all employees are expected to use Whatnot as both a buyer and a seller as part of their job (our dogfooding budget makes this fun and easy!).Parental Leave 16 weeks of paid parental leave + one month gradual return to work *company leave allowances run concurrently with country leave requirements which take precedence.EOEWhatnot is proud to be an Equal Opportunity Employer. We value diversity, and we do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, parental status, disability status, or any other status protected by local law. We believe that our work is better and our company culture is improved when we encourage, support, and respect the different skills and experiences represented within our workforce.
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're looking for experienced GRC professionals to help evaluate and improve AI systems being trained on real-world security, compliance, and risk scenarios. Your practitioner knowledge will...SuggestedHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- Polsinelli is seeking a Governance Risk & Compliance Engineer to join our information security and data governance team. The role offers a remote work option, with a preference for the position to be based in Kansas City. You will participate in governance programs, review...SuggestedRemote job
$153.4k - $191.8k
...technical mistake. More often, they stem from gaps in governance, risk management, operational discipline, and... ...We are looking for an Information Security GRC Analyst to help mature Mercury’s security, risk, and compliance programs. This is not a traditional compliance...Suggested- Davis Polk & Wardwell LLP in New York seeks a Risk and Compliance Analyst to support the firm's governance, risk and compliance program, including ISMS maintenance, vendor risk assessments, client security questionnaires, and policy governance. The role offers hybrid work...Suggested
- A leading consulting firm is seeking a Compliance Analyst to join their team in New York. The role offers a hybrid schedule with four days in the office. You will support regulatory gap assessments, assist with project management in the derivatives market, evaluate internal...SuggestedWork at office
- ...the center of that effort. The Senior Risk Analyst will help to shape the risk management... ...product, legal, and operations to stand up governance infrastructure that actually works in a... ...of experience in risk management, compliance, or audit within financial services, specifically...
$100k - $125k
## Risk and Compliance AnalystApplyremote type: Hybridlocations: New Yorktime type: Full timeposted on:... ...Position Summary**The Risk and Compliance Analyst will play a key role in supporting and executing the Firm’s governance, risk and compliance (GRC) program. Reporting...$82k - $100k
...industry experience and culture at weaver.com. Position Profile Weaver is seeking a Senior Associate to join our Governance, Risk, and Compliance (GRC) practice with a primary focus on IT controls and technology assurance. This role will support a balanced...Full timeFlexible hours- Plan and conduct risk assessment activities across frameworks including NIST, HITRUST, PCI, HIPAA, SOC, MAR, CMS, and JCAHO Prepare... ...with Information Security, Privacy, Procurement, Audit, Compliance, Legal, technical staff, project teams, and third parties Communicate...
$75k - $85k
Governance, Risk, and Compliance Associate - IT Job Category : Advisory Requisition Number : GOVER003147 Posted : August 11, 2026 Full-Time Locations Showing 1 location Little Falls, NJ Little Falls, NJ 150 Clove Rd 5th Floor Little Falls, NJ 07424, USA Little Falls...Full timeInternshipWork at officeFlexible hours1 day per week- Bringing together careers across GRC, third-party risk, compliance, security, privacy, audit, and resilience for the people building... ..., actionable requirements for product teams.. Senior Governance and Compliance Analyst You'll play a distinctive role at the intersection of...Full timeContract workWork at office
- Polar is seeking a Risk & Compliance Specialist to protect the integrity of our billing and payments platform. You will review merchants, identify risks, and ensure policy and partner requirements are met as we scale. You’ll collaborate with Merchant Support, Product, and...
- Trinity Church NYC in New York, NY seeks an IT Risk & Compliance Analyst to safeguard its technology environment by managing cybersecurity risk, regulatory compliance and business continuity programs. The role supports security policy development, conducts risk assessments...
- ...demand and are committed to providing excellent client service, supported by leading technology and talent. ROLE PURPOSE The Risk & Compliance Analyst - Registered Funds supports the Head of US Registered Fund Compliance/Fund CCO (“Fund CCO”) to establish, maintain and...Temporary workImmediate startFlexible hours
$122.85k - $163.81k
Governance, Risk and Compliance (GRC) Specialist, North America About the Role: We have a current opening for a Governance, Risk & Compliance (GRC) Specialist, North America and are actively reviewing applications. As the Governance, Risk & Compliance (GRC) Specialist,...Work experience placement- Our client, a major communications firm is seeking an AI Risk and Compliance Analyst to join their team. W2 Candidates only - no C2C candidates... ..., and decision records. Support alignment with AI governance standards and regulatory expectations, and sectorspecific...
- A commercial bank in New York is hiring an Enterprise Risk Analyst to support its Enterprise Risk Management function. The role involves aiding in ERM processes, analyzing risk data, and collaborating with various departments. Candidates should have over 3 years of experience...
- BECU is seeking an Enterprise Risk Analyst - AI Risk to help shape how we assess and manage AI-related risks across the organization. You... ...stakeholders to identify, evaluate, and monitor AI risks, governance, and controls while supporting regulatory readiness and data...
- ManpowerGroup Global, Inc. is seeking an AI Risk and Compliance Analyst in New York. This role involves improving AI compliance processes and conducting reviews to align with governance standards. With 5+ years of experience in risk and compliance, candidates will manage...Remote work
- Goldman Sachs Group, Inc. in New York, NY, is seeking a Risk Division Analyst to support governance, reporting, and program delivery in the Divisional Risk Management group. You will help prepare materials for the Board and senior leadership, coordinate across risk domains...
- Goldman Sachs Internal Audit is seeking a Sr. Analyst in New York to independently assess governance processes, risk management and control frameworks, and to contribute to the firm’s control environment. The role requires 3+ years of internal audit or risk management...
- American Express is seeking a seasoned Governance/PM professional to support the GFCC Client Risk Management Office. You will drive enhancements to CDD processes... ...in governance and 2+ years in financial crimes compliance, with strong communication skills and MS Office proficiency...
$90k - $110k
..., and global footprint to offer commercial insurance solutions that address your business’s unique risks. Position Summary: The Risk Governance and ERM Data Analyst supports the enterprise risk management (ERM) function by providing data-driven insights, maintaining...Full timeWork experience placementLocal area- Goldman Sachs in New York is seeking an energetic Divisional Risk Management coordinator to support governance, reporting, and risk oversight across the firm. The role emphasizes attention to detail, strong communication, and the ability to balance multiple deadlines in...
$103.45k - $169.96k
The AI & Data Risk Analyst position is a crucial role on the Model, AI & Data Risk Management... ...team oversees the mitigation and governance practices of said spaces across the enterprise... ...the Enterprise Governance, Risk, and Compliance System (in ServiceNow). You are A...Work at officeWork from homeVisa sponsorshipWork visa- The Trade Desk in New York, NY seeks a Technology Governance & Risk Senior Analyst to lead global governance, risk, and compliance initiatives across SOX, SOC, CCPA, and PADFAA. You will partner with engineering, legal, and business teams to assess risk, design and test...Worldwide
$132.6k - $195k
...marketplace of consumers, merchants, and drivers.About the RoleThe Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced...Hourly payContract workWork at officeLocal areaRemote workFlexible hours$176k - $183.5k
...specialist with a deep understanding of security risk management and the evolving threat... ...to supporting our audit readiness and compliance initiatives.What You Bring to the Table... ...practices, Wonder participates in the federal government's E-Verify program to confirm employment...Full timeTemporary workFlexible hours- ...This is a professional individual contributor role within the first-line-of-defense (1LoD) that supports the execution of model risk governance activities across the model lifecycle. This role is responsible for the day-to-day operational tasks that underpin the...Work at office
- Madison-Davis, LLC in New York seeks a Partner Banking Analyst to help develop and execute the risk and oversight framework for fintech and third-party... ...monitoring, and reporting partner risk across financial, compliance, and regulatory dimensions. Collaborate across...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance Risk & Compliance Analyst. Be the first to apply!
- information risk analyst New York, NY
- market risk analyst New York, NY
- third party risk analyst New York, NY
- senior quantitative risk analyst New York, NY
- risk compliance officer New York, NY
- it risk analyst New York, NY
- quantitative risk analyst New York, NY
- operational risk consultant New York, NY
- governance risk & compliance analyst New York, NY
- risk analyst intern New York, NY


