Senior Governance, Risk, and Compliance (GRC) Analyst
Rainfocus
We are seeking a highly skilled and motivated Senior GRC Analyst to join our Security and Privacy team. In this role, you will own and grow RainFocus's governance, risk, and compliance program — maintaining our control framework, leading risk assessments, supporting audits, and driving the program's maturity forward rather than simply maintaining the status quo. You will report directly to the CISO and have significant ownership from day one.
Key Responsibilities:
- Lead RainFocus's GRC program across SOC 2 , ISO 27001 , PCI DSS , and other client/regulatory compliance frameworks, including audit prep, evidence collection, and auditor relationships.
- Manage and mature our control framework, mapping new regulations and conducting gap assessments.
- Own the annual security risk assessment process ( NIST SP 800-30 methodology ), including stakeholder interviews, risk scoring, and residual risk tracking.
- Maintain and update security policies, standards, and documentation to ensure compliance with industry best practices.
- Partner with Engineering and Security to mature vulnerability management and secrets-scanning practices, moving these from reactive to proactive, pre-deployment controls.
- Help build out and operationalize a Data Loss Prevention (DLP) program, including policy design and rollout across email, endpoint, and cloud storage.
- Grow and mature RainFocus's security awareness training program.
- Drive AI governance efforts — policy, tooling, and monitoring for approved vs. unapproved AI tool usage across the company.
- Identify and help close Shadow IT / unmanaged SaaS visibility gaps in partnership with IT.
- Collaborate with cross-functional teams to implement risk management practices and ensure compliance across the organization.
- Respond to security and privacy inquiries from clients, partners, and employees.
- Prepare and present reports on the organization's security and privacy compliance status, including program maturity and remediation progress.
- Stay abreast of emerging security threats, vulnerabilities, and compliance requirements.
Qualifications:
- Bachelor's degree in Technology , Cybersecurity , or a related field is highly desirable.
- 6+ years of proven experience in GRC, IT audit, information security compliance, or a related field.
- In-depth knowledge of relevant regulations, standards, and frameworks (e.g., SOC 2 , ISO 27001 , PCI DSS , NIST 800-series , GDPR , and others).
- Experience running or contributing heavily to formal risk assessments — not just tracking a compliance checklist.
- Professional certifications such as CISA , CRISC , CISSP , CIPP , or CIPM are highly desirable.
- Familiarity with modern security tooling such as Drata , OneTrust , Vanta , etc.
- Strong analytical and problem-solving skills, with keen attention to detail.
- Excellent communication and interpersonal skills to work effectively with technical and non-technical stakeholders.
- Ability to manage multiple projects and meet deadlines in a fast-paced environment.
- Experience with cloud security and compliance frameworks is a plus.
- Experience with OneTrust or related GRC technologies is a plus.
Personal Characteristics:
- Strong work ethic and commitment to excellence.
- Ability to work independently and as part of a team.
- Excellent problem-solving and analytical skills.
- Strong communication and interpersonal skills.
- Ability to adapt to change and learn quickly.
- Passion for security and privacy.
At RainFocus we delight millions of attendees at large-scale events by delivering better insights, experiences, and marketing. We were able to pivot our product and services offering in 2020 to continue growing and serving new clients and events.
As a member of the RainFocus team, you will have the opportunity to experience first-hand the impact of our platform at events around the world. Additionally, RainFocus offers competitive salaries, competitive benefits, 401k , generous PTO , and countless other team building activities.
$150k - $200k
...global economy. Join us! Overview We're hiring a GRC Senior Analyst to help build the compliance foundation powering the future of global crypto... ...recovery runbooks. Conduct vendor and third-party risk assessments as we expand our global network of partners...SeniorFull timeWork at officeRemote work2 days per week- Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential. With our award-winning Oura Ring and app, we help over 2.5 million people turn insights about sleep, activity, and...SeniorWork at officeLocal areaRemote workFlexible hours
- ...RoleAs a member of the Information Security team, the IS GRC Senior Analyst - Risk & Compliance will be responsible for understanding the firm’s... ...analysis and monitor controls.The Information Security Governance, Risk & Compliance Senior Analyst (Risk & Compliance) is...SeniorFull timeContract workWork experience placementH1bRemote workVisa sponsorshipRelocation packageMonday to Friday
- ...Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This... ...policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. What...SuggestedContract workWork at officeRemote workVisa sponsorshipRelocation packageFlexible hours
- ...GRC Analyst Join our team as a GRC Analyst and play a key role in regulatory compliance, IT risk management, security. You'll assess risks, support audits, and develop policies... ...team. • Assist in the maintenance, governance, and execution of Threat and Vulnerability...SuggestedCasual workWork at officeWork from homeHome officeNight shiftWeekend work
- ...Job Description Job Description Governance, Risk & Compliance (GRC) Analyst – State Agency – $40-46/hr W2 – Phoenix Hybrid – Contract-to-Hire SunSoftOnline is hiring a GRC / Information Security Analyst for an Arizona state agency's technology division, a 4-month...Permanent employmentFull timeContract workRemote workVisa sponsorshipMonday to Friday
- ...Governance, Risk & Compliance (GrC) Analyst We're partnering with the world's leading AI research labs to build smarter, more trustworthy AI — and we need practitioners who know how GRC actually works in the real world. Your expertise in security policies, compliance...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- Description The Senior IT GRC Analyst leads policy development and audit execution within CMG's IT Governance, Risk, and Compliance program, with particular emphasis on CMG's upcoming SOC 2 readiness effort. This role works closely with the GRC team and the broader IT...SeniorWork at officeRemote work
- ...IT Governance Risk & Compliance (GRC) Analyst Location US-MS-Ridgeland | US-Within Trustmark's Geographic Footprint Job ID 2026-19605 Category Information Security Type Regular Full-Time Job Grade 11 FLSA Status...Full timeWork at officeRemote work
- ...Owning and advancing the governance, risk, and compliance program, the full-time Senior GRC Analyst will manage compliance frameworks, conduct risk assessments, and collaborate with cross-functional teams in a remote capacity. Key Responsibilities: Lead the GRC program...SeniorFull timeRemote work
- Wiz is seeking a Remote Senior Governance, Risk, and Compliance Analyst - Governance to join our team. You will report to the Manager, Governance, Risk, & Compliance and collaborate with a cross-disciplinary Wizards group to align governance with business needs and enhance...SeniorRemote job
- Bloomin' Brands, Inc. is seeking a Sr. GRC Analyst in Tampa, FL to support governance, risk, and compliance efforts across the organization. The role combines onsite and remote work in a hybrid schedule at the Tampa Restaurant Support Center. You will develop policies,...SeniorRemote work
- Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the complex landscape of cybersecurity compliance and risk management. You will work directly with clients to assess their...Full timeRemote work
- ...who can contribute to the excellence of our academic community. Description JOB DESCRIPTION: The Senior IT GRC (Governance, Risk, and Compliance) Analyst oversees technical design, implementation, maintenance, and responsibilities for multiple information security...SeniorWork experience placementRemote workWork from homeFlexible hours
- ...Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This... ...policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. What...Contract workWork at officeRemote workVisa sponsorshipRelocation packageFlexible hours
- Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience in...SeniorRemote workFlexible hours
- United States Digital Space LLC is seeking a Senior InfoSec GRC Analyst for a fully remote, international role. You will own governance, risk, and compliance across the ISMS, drive ISO 27001 and SOC 2 audits, and review customer security requirements to enable safe production...SeniorRemote job
- ...security environment supporting enterprise governance, policy, compliance, and audit readiness across a complex... ...closely with Information Security, Risk, Compliance, Legal, Audit, IT,... ...improvement, and effective use of ServiceNow GRC/IRM and ITSM capabilities. What's In...Contract workRemote work
$58k - $222k
...partner company, who manages all applications and next steps. Our partner is looking for a Senior Governance, Risk, & Compliance Analyst based in the United States. This is a senior GRC role focused on strengthening security, privacy, risk management, and compliance...SeniorFull timeRemote workFlexible hours$100k - $135k
...Salary: USD100000 - USD135000 per annum SENIOR COMPLIANCE ANALYST $100-135k | REMOTE Global non-profit organization is looking to expand their Governance, Risk & Compliance team by hiring a Senior Compliance Analyst. This person will be the 2nd hire to a new team...SeniorWork experience placementRemote work- ...Controls & Compliance Sr Analyst Compass Group North America has an exciting opportunity in the Technology Risk & Governance team as a Controls & Compliance Sr Analyst, whose role will assist in the support of a strong regulatory compliance program and improve the...SeniorRemote workFlexible hours
$105k
...Requisition ID # 174003 Job Category: Compliance / Risk / Quality Assurance Job Level:... ...Department Overview The Enterprise Governance and Shared Compliance (EG&SC) group within... ...The Compliance and Risk Consultant, Senior role serves as a recognized subject‑matter...SeniorFull timeRemote workFlexible hours$117k - $151k
...Sr. Cyber Governance, Risk & Compliance Analyst The Senior Cyber Governance, Risk & Compliance Analyst is a senior level security professional whose primary... ...operations, cyber governance, risk and compliance (GRC), and security operations. This role is ideal for a practitioner...SeniorContract workRemote workFlexible hours$80.05k - $165k
About the Role:Responsible for leading Cybersecurity and IT governance, risk, and compliance efforts, including the establishment and maintenance of IT... ..., assignment, remediation tracking, and closure of GRC-related issues in ServiceNow, ensuring timely resolution,...SeniorFull timeWork at office- ...Description Zywave's security and regulatory excellence depends on strong governance, risk, and compliance practices and this role sits at the center of that work. As a GRC Analyst, you will manage compliance frameworks, assess organizational risk, and help Zywave...Remote work
- ...GRC Analyst Today's financial infrastructure is archaic, expensive, inefficient and risky — supporting a system that leaves... ...institutions, like Mastercard, Visa, Robinhood, and PayPal. The Governance, Risk & Compliance (GRC) Team is responsible for establishing and...Remote work
$99k - $225k
Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System... ...XactaAbility to engage and influence senior and executive leadershipAbility to use...Full timeContract workPart timeWork at officeLocal areaRemote work$108k - $130k
...beyond symptoms that increase a person’s risk of heart attacks. At Cleerly, we... ...manages risks, ensuring ongoing compliance throughout the entire software lifecycle... ...we have an immediate opening for a GRC and IT Compliance Analyst to help support and execute Cleerly’...Full timeImmediate startRemote work- ...boutique cybersecurity and GRC consulting firm doing meaningful... ...As an Experienced or Senior GRC Analyst at Hotman Group you will work... ...sustain their cybersecurity and compliance programs. This is active... ...compliance programs Develop risk registers, conduct risk...SeniorPermanent employmentFull timeContract workRemote work
- ...organization's cybersecurity and risk requirements.... ...multiple disciplines including Governance, Risk, and Compliance required Skills and... ...personnel, audit personnel, senior management, and the board of... ...Governance, Risk, and Compliance (GRC) Support: Leads process...SeniorWork experience placementWork at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Governance, Risk, and Compliance (GRC) Analyst. Be the first to apply!


