Senior Security GRC Analyst
$96.3k - $145.2ksalesforce.com, inc.
Job Category Enterprise Technology & Infrastructure About Salesforce Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn't a buzzword – it's a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Experience The Security GRC Analyst role is part of our Security and Compliance team, sitting at the intersection of internal operations and external audit relationships. We are looking for a detail-oriented GRC Analyst to lead our Unified Audit program – keeping us compliant, audit-ready, and continuously improving across multiple frameworks. What You’ll Actually Be Doing Lead end-to-end Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP frameworks, coordinating schedules and minimizing duplication. Manage internal evidence collection by assigning tasks to control owners, tracking deadlines, validating submissions, and conducting pre-audit gap reviews. Serve as primary liaison with external auditors – scheduling walkthroughs, responding to information requests, and coordinating responses to findings. Maintain compliance dashboards, standard operating procedures, and documentation repositories to support continuous monitoring and audit readiness. You're Our Person If... 2–4 years of experience in GRC, compliance, audit, or information security, with hands‑on experience supporting or managing compliance audits. Working knowledge of at least two of the following frameworks: SOC 2, HIPAA, ISO 27001, or GxP. Proficiency with GRC tools, audit management platforms, and documentation systems (Microsoft Office Suite or Google Workspace). Clear communication with both technical and non‑technical stakeholders and the ability to manage multiple concurrent deadlines. Even Better If... Relevant certifications such as CISA, CRISC, CISSP, or ISO 27001 Lead Auditor/Implementer. Experience with unified or integrated audit programs, or a background in healthcare or life sciences. Hands‑on experience with GRC platforms such as Drata, Vanta, OneTrust, or ServiceNow GRC. Direct work with external audit firms in a compliance or security capacity. Accommodations If you need a reasonable accommodation during the application or the recruiting process, please submit a request via the Accommodations Request Form. Posting Statement Salesforce is an equal opportunity employer and maintains a policy of non‑discrimination with all employees and applicants for employment. Any employee or potential employee will be assessed on the basis of merit, competence, and qualifications – without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to recruiting, hiring, and promotion decisions at Salesforce. Compensation & Benefits In the United States, compensation offered will be determined by factors such as location, job level, job‑related knowledge, skills, and experience. The typical base salary range for this position is $96,300 – $145,200 annually. In select cities within the San Francisco and New York City metropolitan area, the base salary range for this role is $116,000 – $159,500 annually. The range represents base salary only and does not include company bonus, incentive, equity, or other benefits. Salesforce offers a variety of benefits to help you live well, including time‑off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock‑purchasing program. Pursuant to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Initiative for Hiring, Salesforce will consider qualified applicants with arrest and conviction records. Salesforce believes in equitable compensation practices that reflect the dynamic nature of labor markets across regions. #J-18808-Ljbffr salesforce.com, inc.
$117.2k - $176.7k
...place! Agentforce is the future of AI, and you are the future of Salesforce.The ExperienceLocation: San Francisco, CAThe Senior Security GRC Analyst role is part of our Assurance team, sitting at the intersection of internal operations and external audit relationships....SeniorFull timeWork at office- ...safety. Please be aware that all official communication will only be sent from @Rippling.com addresses.About the RoleJoin Rippling's Security Assurance team and help demonstrate the trust our customers place in us every day. You'll play a key role in delivering...SeniorWork at office3 days per week
$134.16k - $213.6k
...headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam.About the Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing...SeniorContract workWork experience placementWork at officeLocal area- California Academy of Sciences in San Francisco is seeking a Senior Security Analyst to configure, maintain, and monitor internal security controls across the academy’s IT environment. You will integrate security tools into daily operations, mature security architecture...Senior
$121.76k
A leading scientific institution in San Francisco is seeking a Senior Security Analyst to manage information security controls, focusing on cybersecurity and operational integration. The ideal candidate will have over 5 years of IT experience with extensive knowledge in...SeniorFull time$75k - $100k
A leading medical technology firm in San Francisco is seeking a Senior Security Analyst to join their Information Security team. This role will focus on analyzing security events and implementing enhancements to detection capabilities, ensuring the safety of patient data...Senior- Discord is seeking a Security Analyst to lead and scale its Security GRC program. You will own the day-to-day workflows—from questionnaires to risk tracking—partnering with Security, Engineering, IT, and Legal to make compliance friction-free. The role emphasizes automation...
- Discord is seeking a Security Compliance professional to drive the customer questionnaire program end-to-end, building a reusable answer... ...workflows, triaging issues and escalating as needed. You will analyze GRC posture, align standards to policies, and automate evidence...
- Mercury is seeking an Information Security GRC Analyst to mature security, risk, and compliance programs and build guardrails for business continuity and resilience. You will lead risk assessments, partner with cross‑functional teams, and drive audit readiness across SOC...
- DoorDash is seeking a security-focused Third-Party Risk Management (TPRM) Sr. Analyst to mature our program and lead risk assessments across the vendor ecosystem. You will drive continuous security improvements, partner with security engineering, procurement, privacy, and...Senior
- Discord Inc. is growing its Security GRC function and seeks a Security Analyst to own the day-to-day program, including questionnaires, risk tracking, analyses, tooling, and documentation. You will work with Security, Engineering, IT, and Legal to make compliance friction...
$121.76k
...natural world and empower them to protect it. About the Opportunity Reporting to the Director of Information Technology, the Senior Security Analyst is responsible for configuring, maintaining, and monitoring internal security controls to prevent, detect, and respond to...SeniorFull timeContract work$75k - $100k
Senior Security Analyst - Heartflow Join to apply for the Senior Security Analyst - Heartflow role at ISC2 East Bay Chapter . Full Time San Francisco, CA Posted 1 day ago Heartflow is a medical technology company advancing the diagnosis and management of coronary artery...SeniorFull timeLocal areaWorldwideRelocation- Salesforce, Inc. is seeking a Security GRC Analyst to lead the Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP. The role partners with control owners and external auditors to ensure continuous compliance and audit readiness. The ideal candidate has 2-4 years...
- Salesforce is seeking a Security GRC Analyst to own the Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP. You will coordinate internal evidence collection, manage control owners, and serve as the main liaison with external auditors to ensure audit readiness...
- University of California, Berkeley is seeking a seasoned IT Security Analyst to join the Security Engineering team within the Information Security Office. You will administer security systems, implement controls, and support broad-scale security initiatives across campus...SeniorWork at office
$118.68k - $175.8k
...company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam.Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing...Work experience placementWork at officeLocal area$193.8k - $228k
Senior GRC Analyst II job at Carta. San Francisco, CA. The Problems You'll Solve As a Senior GRC Analyst II , you’ll work to assess regulatory... ...governance and risk frameworks. You will build and run security compliance programs to measure and reduce risk, report compliance...SeniorFull time$144k - $162k
...after playing games. What you'll be doing Run the customer security questionnaire program end-to-end, from intake through... ...resolving routine questions and escalating the ones that need senior judgment. Run GRC analyses that turn into decisions: how standards,...Full timeWork at officeRelocationRelocation package2 days per week- VRC (Valuation Research Corporation) is seeking an analyst for its complex securities valuation practice in San Francisco. You will value derivatives and other illiquid securities for financial reporting, tax, and regulatory needs, using rigorous modeling and client data...
$1,750 - $2,150 per month
...leading AI labs to engage experienced cybersecurity professionals — security analysts, penetration testers, incident responders, threat intelligence... .../GCP), or zero‑trust design Governance, risk, and compliance (GRC) — NIST, ISO 27001, SOC 2, FedRAMP Professional...Remote jobHourly pay- Upwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing... ...meaningful impact on our growth. We are looking for a Security Analyst to join our MDR team. In this role, you will be part of our security...
- Job43 - EITS Security Risk Analyst B (Engagement) Location: 100% Remote Max Submissions: 5 Proposed Start Date: ASAP Proposed End Date: 06/3... ...document internal risk reviews, assessments, and exceptions using a GRC tool . Governance & Compliance Document and maintain risk...Remote jobImmediate startFlexible hours
- Perplexity is seeking a Governance, Risk & Compliance Analyst to shape and run our compliance and risk management program. You will lead... .../compliance, automation using AI, and collaboration across IT, Security, GTM, and Engineering. You will help drive customer trust by...Senior
$175k - $220k
...LinkedIn, Monday.com, Nvidia, and Bridgewater. About the Team The Security team at LangChain treats compliance as a business enabler, not a... ...and renewals. What you’ll bring 5+ years in privacy, GRC, or security compliance, ideally with time at a Big 4 or advisory...Contract workWork at officeFlexible hours- DELTASOFT SOLUTIONS LLC seeks a remote EITS Security Risk Analyst B to bridge CISO initiatives and IT teams. The role involves developing risk metrics... ..., and have a strong understanding of EMR systems and GRC tools. Preferred qualifications include a Bachelor's degree in...Remote jobImmediate start
- Information Security Analyst Location: San Francisco, CA; Los Angeles, CA; Salt Lake City, Utah Duration: 12+ Months, 5 days onsite Must... ...of Level 1 & 2 SOC operations Public speaking skills Seniority level: Mid-Senior level Employment type: Contract Job function...Contract workWork at office
$130k - $155k
Cox Worldwide Funds plc is looking for a Trade Operations & Data Analyst to join the Investment Operations department in San Francisco. This role is pivotal for maintaining the integrity of security reference data and overall asset data quality. Successful candidates will...Work at officeWorldwide- ...Position: IAM Remediation & Identity Security Analyst Location: Remote (working PST hours) Contract: 6+Months Overview We are seeking an experienced Identity & Access Management (IAM) professional to support remediation efforts following a recent...Contract workRemote work
- Upwind Security is seeking a Security Analyst to join our MDR team, focusing on proactive reviews and advanced guidance for customers. You will work closely with analysts, researchers, and engineers to strengthen cloud posture and detections. The role emphasizes improving...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security GRC Analyst. Be the first to apply!
- application security analyst San Francisco, CA
- entry level information security analyst San Francisco, CA
- entry level security analyst San Francisco, CA
- information security analyst San Francisco, CA
- senior security analyst San Francisco, CA
- rate analyst San Francisco, CA
- IT security analyst San Francisco, CA
- work from home security analyst San Francisco, CA
- bond analyst San Francisco, CA
- information security compliance analyst San Francisco, CA

