Governance, Risk & Compliance (GRC) Senior Analyst
$150k - $200kMesh Security
About Mesh At Mesh, our mission is to enable consumers to pay and be paid with any asset. Today, trillions of dollars in tokenized assets exist but remain largely unusable for everyday commerce. Mesh is bridging this gap by making crypto payments reliable, useful, and ubiquitous. We combine a powerful orchestration engine with a seamless consumer app to unlock liquidity for the world. Backed by leading investors like PayPal Ventures, Paradigm, and Galaxy Ventures, we are building the infrastructure for the next era of the global economy. Join us! Overview We're hiring a GRC Senior Analyst to help build the compliance foundation powering the future of global crypto payments. At Mesh, we're connecting hundreds of exchanges, wallets, and financial platforms into a single open network, and this role will be instrumental in ensuring we scale securely, responsibly, and with trust at the center of everything we do. As we continue to grow, you'll play a key role in shaping and maturing our GRC program across initiatives including SOC 2, MiCA licensing, and Money Transmitter Licenses throughout the U.S. This is a hands‑on role with meaningful ownership—from managing day‑to‑day controls and strengthening core compliance processes to partnering closely with our Head of Security and GRC lead to navigate an increasingly complex regulatory landscape. We're looking for someone who enjoys rolling up their sleeves, building programs that scale, and contributing to the infrastructure powering the next generation of global payments. What You’ll Do Own and strengthen our controls environment, ensuring compliance requirements are effectively implemented and maintained. Support and mature our GRC program, including SOC 2 operations and alignment with broader security frameworks such as NIST. Build and maintain our Business Continuity and Disaster Recovery program, including BIAs, continuity plans, and recovery runbooks. Conduct vendor and third‑party risk assessments as we expand our global network of partners. Support MiCA licensing and U.S. Money Transmitter License applications through due diligence, regulatory responses, and compliance reporting. Manage the security issue lifecycle, driving remediation efforts and partnering with teams to reduce risk. Help standardize policies, controls, and compliance processes that can scale across jurisdictions and regulatory frameworks. Who You Are 5+ years of hands‑on GRC experience in an operating environment, with a track record of building and managing compliance programs—not just auditing them. Deep familiarity with one or more major frameworks, such as SOC 2, NIST, PCI, MiCA, NYDFS, or CCPA. Experience building or maturing Business Continuity and Disaster Recovery programs, with a strong understanding of how business impact assessments inform recovery strategies. Comfortable supporting the full risk lifecycle, including risk assessments, control testing, issue management, and remediation. A hands‑on builder who enjoys improving processes, operationalizing controls, and turning requirements into scalable programs. Regularly uses AI tools to increase efficiency and improve outcomes across areas such as policy development, process monitoring, or program management. Experience in fintech, crypto, payments, or other regulated industries is a plus, as is familiarity with GRC platforms such as Vanta, Drata, or Archer. Pay Range $150,000—$200,000 USD Why You’ll Love It Here At Mesh, you're not stepping into a typical role—you're joining a rocket ship in mid‑liftoff. You'll tackle complex, meaningful problems that actually move an industry forward, working alongside a sharp, motivated team that moves quickly, collaborates deeply, and expects everyone to operate with ownership. This is the kind of place where you'll see your work ship fast, make real impact, and be able to point to something and say, "I built that." You'll grow fast, level up your skills, and get a front‑row seat to how a high‑growth company scales from the inside, with competitive comp, solid benefits, and room to stretch your craft all coming standard. If you're energized by building, learning, and shaping something big—this is where you'll want to be. In‑Office Expectations Employees based in our San Francisco, New York, and Bangalore hubs are expected to work from the office at least 40% of the time (approximately two days per week). This expectation may vary slightly depending on role, team, and business needs. Certain roles that require closer cross‑functional collaboration or operational support may have additional in‑office requirements, which will be discussed during the interview process. Our hybrid approach is designed to balance meaningful in‑person collaboration, team building, and real‑time decision‑making with the flexibility to work remotely. We believe this structure supports strong execution while preserving autonomy and focus time. How We Care For Our Team We believe great work happens when people feel valued and supported. That starts with competitive salary and equity that grows as you and the company grow, plus comprehensive health coverage for you and your family. We offer unlimited PTO—and we mean it. Take the time you need to recharge and show up at your best. We're invested in your growth with a dedicated budget for courses, conferences, and certifications. Work from wherever you're most productive with our remote‑friendly approach, and count on having the top‑tier tools and equipment you need to do exceptional work. Mesh Pay is committed to equal employment opportunities regardless of race, color, genetic information, creed, religion, sex, sexual orientation, gender identity, lawful alien status, national origin, age, marital status, and non‑job related physical or mental disability, or protected veteran status. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. #J-18808-Ljbffr Mesh Security
- Perplexity is seeking a Governance, Risk & Compliance Analyst to shape and run our compliance and risk management program. You will lead the implementation of frameworks, oversee data privacy regulations, and build scalable audit systems in a fast‑growing startup environment...Senior
- ...Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This... ...policies, standards, and procedures. Support AI governance and responsible AI compliance initiatives. What...SuggestedContract workWork at officeRemote workVisa sponsorshipRelocation packageFlexible hours
$135k - $165k
...foundational to our platform and customer relationships. As we continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and risk management programs. Role Overview Ivo is seeking a...SuggestedContract workFlexible hours$132.6k - $195k
...marketplace of consumers, merchants, and drivers.About the RoleThe Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced...SeniorHourly payContract workWork at officeLocal areaRemote workFlexible hours$117.2k - $176.7k
...ExperienceLocation: San Francisco, CAThe Senior Security GRC Analyst role is part of our... ..., you will help ensure compliance programs run smoothly and... ...program status and risk areas to leadership.Manage... ...years of experience in GRC (Governance, Risk, and Compliance), compliance...SeniorFull timeWork at office- Baker Tilly Public Sector Internal Audit & Risk Senior Consultant in the San Francisco region offers a dynamic, client‑facing role within... ...firm. You will assess risks, strengthen controls and support governance improvements for government and public sector clients. The...SeniorRemote job
- Early Warning is seeking a Sr. Risk Analyst to support the Enterprise Risk... ...of defense, collaborating with senior management in Product Development, Legal/Compliance, IT, and Finance. A strong background in risk, analytics, and governance is essential. You will contribute...Senior
- Mercury is seeking an Information Security GRC Analyst to mature security, risk, and compliance programs and build guardrails for business continuity and resilience... ..., CIS, and ISO 27001. The role emphasizes scalable governance and practical controls to enable fast, secure...
$96.3k - $145.2k
...driving innovation, and keeping Salesforce's core values at the heart of it all. Experience The Security GRC Analyst role is part of our Security and Compliance team, sitting at the intersection of internal operations and external audit relationships. We are looking for...SeniorWork at office- A leading technology company is seeking a GRC Manager to build and scale their governance, risk, and compliance programs. This role will focus on developing a comprehensive GRC framework, ensuring compliance with regulations, and enabling business growth. The ideal candidate...Senior
$105k
...Requisition ID # 174003 Job Category: Compliance / Risk / Quality Assurance Job Level:... ...Department Overview The Enterprise Governance and Shared Compliance (EG&SC) group within... ...The Compliance and Risk Consultant, Senior role serves as a recognized subject‑matter...SeniorRemote workFlexible hours- ...together through commerce. Role Whatnot's Security GRC team is dedicated to building trust with regulators,... ...action and high impact goes a long way here. As our Governance, Risk, & Compliance Analyst you should have a minimum of 8+ years of relevant experience...Full timeLocal areaRemote workWork from homeHome officeFlexible hours
$95k - $150k
...Your Role The Security & Compliance team at Zip is committed to... ...customer requirements. As a GRC Analyst at Zip, you'll be a key... ...internal audits, and vendor risk assessments Lead conversations... ...' security, compliance, and governance teams in due diligence and...Home officeFlexible hours- Perplexity is seeking a highly experienced Governance, Risk & Compliance Analyst to join our world-class team. Responsibilities You will help shape our compliance and risk management program. Implement and lead frameworks such as SOC2, ISO 27001, and HIPAA, ensuring...
$140k - $178k
...truth-finding goals. As a GRCT Analyst, you will independently drive moderately complex trust, compliance, and risk workstreams that help... ...Support internal risk and governance processes such as security impact... ...experience with trust portals or GRC tooling. Experience using...Local areaFlexible hoursShift work$153.4k - $191.8k
...often, they stem from gaps in governance, risk management, operational discipline... ..., and accountability. Strong GRC programs help prevent those... ...for an Information Security GRC Analyst to help mature Mercury’s security, risk, and compliance programs. This is not a...$150k - $180k
...knowledge. The Role We’re looking for a GRC Analyst to join our growing Security, IT, and... ...function. You’ll be the backbone of all the compliance work at the intersection of Engineering,... ...right person translates security and risk into terms that the business and product...Full timeImmediate startRemote workWork from homeFlexible hours- Perplexity is seeking a Governance, Risk & Compliance Analyst to shape our compliance and risk management program. You will lead efforts across SOC2, ISO... ...audit processes to support growth. You will also build a GRC platform and drive cross-functional collaboration with IT...Senior
- Postman is seeking a Senior GRC Engineer to design and operate automation for governance, risk, and compliance across our security program. You will partner with Security, Engineering, IT, Legal, and Sales to drive continuous controls and scalable solutions. The role focuses...Senior
- Perplexity is seeking a governance, risk, and compliance analyst to shape and lead our program. You will drive frameworks like SOC2, ISO 27001 and HIPAA, ensuring regulatory alignment and scalable audit processes. Join a fast-growing startup focused on trustworthy search...Senior
$218k - $269k
...makes everything else feel small. Role Scope Run the day‑to‑day compliance program end to end across SOC 2 Type II, ISO 27001, NIST 800‑53... ...collection, control monitoring, and audit readiness held on GRC platforms (Vanta) and the tooling we build in‑house. Own the policy...Local area$135k - $165k
Icehouseventures is seeking a proactive GRC Analyst to join our team in San Francisco. This role will support compliance and risk management initiatives essential for maintaining high security standards. The ideal candidate will have 3-5 years of experience in GRC and relevant...Contract work- Anthropic is seeking a Senior Third Party Risk Manager to lead the top tier of vendor risk, including mission-critical compute, data center, and data-pipeline partners. You will shape risk assessments, escalation, and remediation across security, privacy, and operations...Work at officeVisa sponsorship
$134k - $202k
...community, or shaping our story, you’ll help define what comes next. About the role: We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance with security and privacy...Work at officeRemote workWork from homeWorldwideMonday to FridayFlexible hours- Vercel in San Francisco is seeking a GRC Analyst to join our Governance, Risk & Compliance team. You will manage and maintain ongoing compliance with security and privacy frameworks, policies, and audits including ISO 27001, SOC 2, HIPAA, and PCI DSS. You will collaborate...Remote jobWork at office
- Ivo is looking for a detail-oriented Governance, Risk & Compliance (GRC) Analyst in San Francisco. The ideal candidate will support compliance programs such as SOC 2 Type II and ISO 27001 while managing audits and risk assessments. This onsite role offers a competitive...
- Zip is hiring a GRC Analyst to drive compliance programs across SOC 1, SOC 2, ISO 27001, and expanding into the EU and regulated industries. You’ll... ...development. In this fast-growing environment, you’ll lead risk assessments, support due diligence questionnaires, and translate...
- Youcom is seeking a GRC Analyst to support the compliance function within our Security, IT, and Privacy team. This role focuses on managing compliance... ...candidate will coordinate audit activities, conduct vendor risk assessments, and ensure compliance policies are...Flexible hours
- Fluidstack is seeking a Security Compliance Lead in San Francisco to own end-to-end controls across SOC 2 Type II, ISO 27001, NIST 800-53, and FedRAMP, building a scalable program for global sites. You will collaborate with engineering and operations to gather evidence...
- Salesforce.com, inc. is seeking a detail-oriented Security GRC Analyst to join their Security and Compliance team. In this role, you will lead the Unified Audit program ensuring compliance across various frameworks like SOC 2 and HIPAA, while managing evidence collection...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Senior Analyst. Be the first to apply!
- information risk analyst San Francisco, CA
- third party risk analyst San Francisco, CA
- senior quantitative risk analyst San Francisco, CA
- risk compliance officer San Francisco, CA
- it risk analyst San Francisco, CA
- operational risk consultant San Francisco, CA
- governance risk & compliance analyst San Francisco, CA
- risk officer San Francisco, CA
- risk analyst San Francisco, CA
- operational risk specialist San Francisco, CA


