Senior Governance, Risk, and Compliance (GRC) Analyst
Rainfocus
We are seeking a highly skilled and motivated Senior GRC Analyst to join our Security and Privacy team. In this role, you will own and grow RainFocus's governance, risk, and compliance program — maintaining our control framework, leading risk assessments, supporting audits, and driving the program's maturity forward rather than simply maintaining the status quo. You will report directly to the CISO and have significant ownership from day one.
Key Responsibilities:
- Lead RainFocus's GRC program across SOC 2 , ISO 27001 , PCI DSS , and other client/regulatory compliance frameworks, including audit prep, evidence collection, and auditor relationships.
- Manage and mature our control framework, mapping new regulations and conducting gap assessments.
- Own the annual security risk assessment process ( NIST SP 800-30 methodology ), including stakeholder interviews, risk scoring, and residual risk tracking.
- Maintain and update security policies, standards, and documentation to ensure compliance with industry best practices.
- Partner with Engineering and Security to mature vulnerability management and secrets-scanning practices, moving these from reactive to proactive, pre-deployment controls.
- Help build out and operationalize a Data Loss Prevention (DLP) program, including policy design and rollout across email, endpoint, and cloud storage.
- Grow and mature RainFocus's security awareness training program.
- Drive AI governance efforts — policy, tooling, and monitoring for approved vs. unapproved AI tool usage across the company.
- Identify and help close Shadow IT / unmanaged SaaS visibility gaps in partnership with IT.
- Collaborate with cross-functional teams to implement risk management practices and ensure compliance across the organization.
- Respond to security and privacy inquiries from clients, partners, and employees.
- Prepare and present reports on the organization's security and privacy compliance status, including program maturity and remediation progress.
- Stay abreast of emerging security threats, vulnerabilities, and compliance requirements.
Qualifications:
- Bachelor's degree in Technology , Cybersecurity , or a related field is highly desirable.
- 6+ years of proven experience in GRC, IT audit, information security compliance, or a related field.
- In-depth knowledge of relevant regulations, standards, and frameworks (e.g., SOC 2 , ISO 27001 , PCI DSS , NIST 800-series , GDPR , and others).
- Experience running or contributing heavily to formal risk assessments — not just tracking a compliance checklist.
- Professional certifications such as CISA , CRISC , CISSP , CIPP , or CIPM are highly desirable.
- Familiarity with modern security tooling such as Drata , OneTrust , Vanta , etc.
- Strong analytical and problem-solving skills, with keen attention to detail.
- Excellent communication and interpersonal skills to work effectively with technical and non-technical stakeholders.
- Ability to manage multiple projects and meet deadlines in a fast-paced environment.
- Experience with cloud security and compliance frameworks is a plus.
- Experience with OneTrust or related GRC technologies is a plus.
Personal Characteristics:
- Strong work ethic and commitment to excellence.
- Ability to work independently and as part of a team.
- Excellent problem-solving and analytical skills.
- Strong communication and interpersonal skills.
- Ability to adapt to change and learn quickly.
- Passion for security and privacy.
At RainFocus we delight millions of attendees at large-scale events by delivering better insights, experiences, and marketing. We were able to pivot our product and services offering in 2020 to continue growing and serving new clients and events.
As a member of the RainFocus team, you will have the opportunity to experience first-hand the impact of our platform at events around the world. Additionally, RainFocus offers competitive salaries, competitive benefits, 401k , generous PTO , and countless other team building activities.
- ...RainFocus, one of the most innovative software companies, is in search of an exceptional Senior Governance, Risk, and Compliance (GRC) Analyst. About RainFocus RainFocus cares about its employees, customers, and the world in which we live. Our rapidly growing team serves...SeniorFull timeRemote work
- ...Governance, Risk & Compliance (GrC) Analyst We're partnering with the world's leading AI research labs to build smarter, more trustworthy AI — and we need practitioners who know how GRC actually works in the real world. Your expertise in security policies, compliance...SuggestedHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...Owning and advancing the governance, risk, and compliance program, the full-time Senior GRC Analyst will manage compliance frameworks, conduct risk assessments, and collaborate with cross-functional teams in a remote capacity. Key Responsibilities: Lead the GRC program...SeniorFull timeRemote work
- ...IT Governance Risk & Compliance (GRC) Analyst Location US-MS-Ridgeland | US-Within Trustmark's Geographic Footprint Job ID 2026-19605 Category Information Security Type Regular Full-Time Job Grade 11 FLSA Status...SuggestedFull timeWork at officeRemote work
- ...Governance, Risk & Compliance (GRC) Analyst Job Category: Information Technology Requisition Number: GOVER001449 Posted : July 1, 2026 Full-Time Hybrid Locations Showing 1 location Join our team as a GRC Analyst and play a key role in regulatory compliance, IT risk management...SuggestedFull timeCasual workWork at officeWork from homeHome officeNight shiftWeekend work
- ...Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the complex landscape of cybersecurity compliance and risk management. You will work directly with clients to assess their...Full timeRemote work
- ...SunSoftOnline is hiring aGRC / Information Security Analyst for an Arizona state agency's technology... ...-to-hire role The work: performing risk assessments and audit reviews; generating findings reports, POA&Ms, and non-compliance documentation; reviewing and managing...Permanent employmentFull timeContract workRemote workVisa sponsorshipMonday to Friday
- Description The Senior IT GRC Analyst leads policy development and audit execution within CMG's IT Governance, Risk, and Compliance program, with particular emphasis on CMG's upcoming SOC 2 readiness effort. This role works closely with the GRC team and the broader IT...SeniorWork at officeRemote work
- ...who can contribute to the excellence of our academic community. Description JOB DESCRIPTION: The Senior IT GRC (Governance, Risk, and Compliance) Analyst oversees technical design, implementation, maintenance, and responsibilities for multiple information security...SeniorWork experience placementRemote workWork from homeFlexible hours
$100k - $135k
...Salary: USD100000 - USD135000 per annum SENIOR COMPLIANCE ANALYST $100-135k | REMOTE Global non-profit organization is looking to expand their Governance, Risk & Compliance team by hiring a Senior Compliance Analyst. This person will be the 2nd hire to a new team...SeniorWork experience placementRemote work- ...Description: On-site in either King of Prussia, PA or Denver, PA Our client is seeking a Senior Cybersecurity Governance, Risk & Compliance (GRC) Analyst to support cybersecurity governance, regulatory compliance, and risk management initiatives within a critical...SeniorHourly payPermanent employmentFull timeLocal areaRemote work
- ...SAP Governance Risk and Compliance Senior Consultant Location: Mechanicsburg, PA Work Arrangement: 100% Remote - Mechanicsburg, PA Schedule: 8 hours... ...Role Overview The role is responsible for driving GRC Access Control activities on an S4HANA and BRIM project....SeniorContract workRemote work
- ...is offering an exciting internship opportunity for a Governance, Risk, and Compliance (GRC) Analyst. This role is perfect for students or recent graduates... ...compliance with regulatory standards. Collaborate with senior team members on GRC initiatives and assist in preparing...Full timeInternshipRemote work
- ...Group, LLC has multiple openings for the position of Senior Cybersecurity Governance, Risk & Compliance Specialist in New York, NY. The position duties are... ...responsible experience as a cybersecurity GRC analyst, or similar occupation at a financial services or technology...SeniorPart timeRemote work
- ...Trustmark in Ridgeland, MS is seeking an IT GRC Analyst to oversee governance, risk, and compliance activities. The role includes coordinating compliance efforts, executing IT assessments, and developing policies. The ideal candidate will hold a Bachelor's in information...Remote work
$80.05k - $165k
About the Role:Responsible for leading Cybersecurity and IT governance, risk, and compliance efforts, including the establishment and maintenance of IT... ..., assignment, remediation tracking, and closure of GRC-related issues in ServiceNow, ensuring timely resolution,...SeniorFull timeWork at office- ...GRC Analyst Today's financial infrastructure is archaic, expensive, inefficient and risky — supporting a system that leaves... ...institutions, like Mastercard, Visa, Robinhood, and PayPal. The Governance, Risk & Compliance (GRC) Team is responsible for establishing and...Remote work
- ...organization's cybersecurity and risk requirements.... ...multiple disciplines including Governance, Risk, and Compliance required Skills And Abilities... ...personnel, audit personnel, senior management, and the board of... ...Governance, Risk, and Compliance (GRC) Support Leads process...SeniorWork experience placementWork at officeLocal areaRemote workRelocation
$99k - $225k
Enterprise Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System... ...XactaAbility to engage and influence senior and executive leadershipAbility to use...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Senior GRC Analyst | Deltek, Inc As the recognized global standard for... ...provider of ERP solutions for Government contractors of all sizes.... ...driven decisions, mitigate risks, & deliver projects on time... ...readiness, cloud security compliance, risk management, & security...SeniorContract workFor contractorsRemote work
- ...Junior-Level GRC Analysts Department: Governance, Risk & Compliance (GRC) Reports To: Compliance Manager Location: Remote Working Hours: U.S. Eastern Time (ET) business hours Employment Type: Full-Time Level: Entry / Early Career About Jun Cyber...Full timeWork at officeRemote work
- ...C2 Labs is hiring a Senior FedRAMP Consultant (GRC Analyst III equivalent) to act as a lead technical writer... ...• 5+ years experience in GRC/compliance, security documentation, or audit support... ...awareness of bias, accuracy, and risk considerations when leveraging AI tools...SeniorFor contractorsRemote work
- YipitData is seeking a GRC Analyst to own governance, risk, and compliance across the organization. This remote-friendly role collaborates with Security, IT, Legal, and Finance to test controls, run risk assessments, and manage audits. You’ll translate complex requirements...Remote job
- Merci Technologies is seeking a GRC Analyst to support governance, risk, and compliance for an enterprise client. The role sits at the intersection of security, audit, and business operations, translating complex regulatory requirements into practical controls that teams...Remote jobFull timeContract work
- ...Company data and information technology assets by supporting governance, risk, and compliance activities, including security policy and standards... ...and information security products and technologies such as GRC platforms, central logging systems, file integrity monitoring...Full timeWork at officeLocal areaRemote workMonday to Friday
- Ellenco Estágios e Treinamentos is seeking a Senior Information Security GRC Analyst to manage security audits and compliance efforts. The role requires over 10 years of experience in information security and a strong understanding of NIST standards. This position allows...SeniorRemote job
- ...boutique cybersecurity and GRC consulting firm doing meaningful... ...As an Experienced or Senior GRC Analyst at Hotman Group you will work... ...sustain their cybersecurity and compliance programs. This is active... ...compliance programs Develop risk registers, conduct risk...SeniorPermanent employmentFull timeContract workTemporary workRemote work
$95k - $105k
...Senior Risk and Compliance Analyst Connected Logistics is seeking a senior Risk and Compliance Analyst to support cybersecurity governance, enterprise risk management, compliance oversight, audit readiness, and continuous monitoring activities supporting the VA COSE...Remote work$123.6k - $206k
...day per week.Overview: Leads risk assessments and control... ..., helping ensure effective governance, controls, compliance, and resiliency across Technology... ...actions.Collaborate with senior leaders across Technology,... ...guidance and mentorship to analysts and risk professionals,...SeniorFull timeWork experience placementWork from home1 day per week- Senior GRC Analyst job at Quantexa. New York, NY. What we’re all about. We find,... ...demonstrable experience in both US Government and non-government security and compliance, applying deep knowledge... ...the maturity of our Governance, Risk, and Compliance (GRC) function....SeniorContract workTemporary workWork experience placementImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Governance, Risk, and Compliance (GRC) Analyst. Be the first to apply!


