Senior GRC Analyst
Workato
About Workato Workato delivers enterprise infrastructure for the agentic era, redefining iPaaS and helping enterprises unify data, applications, processes, and AI into a single, governed platform. A leader in Enterprise MCP and trusted by 50% of the Fortune 500, Workato's cloud-native architecture connects every application, data source, and process to power real-time orchestration at scale. With enterprise-grade security and continuous innovation at its core, Workato provides the trusted foundation for organizations to automate with confidence and operationalize AI across the business. To learn more, visit
Why join us? Ultimately, Workato believes in fostering a flexible, trust-oriented culture that empowers everyone to take full ownership of their roles . We are driven by innovation and looking for team players who want to actively build our company.
But, we also believe in balancing productivity with self-care . That's why we offer all of our employees a vibrant and dynamic work environment along with a multitude of benefits they can enjoy inside and outside of their work lives.
If this sounds right up your alley, please submit an application. We look forward to getting to know you! Also, feel free to check out why:
Qualifications / Experience / Technical Skills
Why join us? Ultimately, Workato believes in fostering a flexible, trust-oriented culture that empowers everyone to take full ownership of their roles . We are driven by innovation and looking for team players who want to actively build our company.
But, we also believe in balancing productivity with self-care . That's why we offer all of our employees a vibrant and dynamic work environment along with a multitude of benefits they can enjoy inside and outside of their work lives.
If this sounds right up your alley, please submit an application. We look forward to getting to know you! Also, feel free to check out why:
- Business Insider named us an "enterprise startup to bet your career on"
- Forbes' Cloud 100 recognized us as one of the top 100 private cloud companies in the world
- Deloitte Tech Fast 500 ranked us as the 17th fastest growing tech company in the Bay Area, and 96th in North America
- Quartz ranked us the #1 best company for remote workers
- Leading FedRAMP authorization efforts - including System Security Plan (SSP) development, Security Assessment Report (SAR) review, Plan of Action & Milestones (POA&M) management, and preparation for Third Party Assessment Organization (3PAO) engagements
- Owning continuous monitoring (ConMon) activities in accordance with FedRAMP requirements, including monthly vulnerability scanning, incident reporting, and annual assessments
- Maintain and update FedRAMP authorization documentation, including SSP, CIS, CRM, and associated artifacts
- Lead internal and external audits for frameworks including FedRAMP (NIST 800-53), ISO 27001/27701, PCI-DSS, NIST 800-171, and IRAP
- Coordinate with process owners, control owners, 3PAOs, and federal agency stakeholders to ensure findings are tracked and remediated
- Conduct risk assessments, security audits, and third-party/vendor risk reviews with a focus on FedRAMP boundary and supply chain risk
- Review contracts to ensure security and compliance requirements - including FedRAMP flow-down clauses - are met
- Identify control gaps and recommend improvements to enhance the organization's federal security posture
- Communicate FedRAMP requirements, risks, and compliance status clearly to both technical and non-technical stakeholders, including federal agency customers
- Perform regular user access reviews aligned to least-privilege and FedRAMP AC control requirements
- Develop and track remediation plans for identified risks and POA&M items
- Maintain and update the risk register with federal risk considerations
- Oversee vendor and subservice provider security assurance processes relevant to the FedRAMP authorization boundary
- Collaborate with engineering, infrastructure, and product teams to design and implement controls aligned with NIST 800-53 baselines
- Support federal-facing sales and customer success discussions with compliance expertise
- Explore and leverage AI/automation tools to enhance, streamline, or scale GRC and ConMon workflows
- Build strong working relationships across departments and with federal agency AOs (Authorizing Officials)
- Take on additional responsibilities as needed
Qualifications / Experience / Technical Skills
- 8+ years of experience in cybersecurity, audits, risk management, compliance, or remediation
- Hands-on FedRAMP experience required - including direct involvement in FedRAMP authorization (Moderate or High baseline preferred), SSP authoring, POA&M management, or 3PAO coordination
- Deep familiarity with NIST 800-53 Rev 5 control families and FedRAMP-specific overlays, guidance, and templates
- Experience working with cloud platforms such as AWS GovCloud, Azure Government, or Google Cloud (government regions)
- Proven ability to negotiate and prioritize risk remediation with internal and federal stakeholders
- Bachelor's degree in Information Systems, Computer Science, Information Security, or a related field
- Strong understanding of security controls in cloud environments, including boundary definition, encryption, access control, and vulnerability management
- Familiarity with NIST 800-171 and CMMC as complementary federal frameworks
- Experience auditing frameworks such as PCI-DSS, SOC 2, and ISO 27001/27701
- Relevant certifications strongly preferred: CISSP, CISA, FedRAMP-specific training (e.g., FedRAMP PMO courses) , or similar
- Ability to manage multiple priorities independently with minimal supervision
- Strong communication skills with the ability to translate federal compliance requirements into technical actions and executive-level summaries
- High energy and adaptability in a fast-paced, high-stakes compliance environment
- Strong collaboration and knowledge-sharing mindset across engineering, legal, and customer-facing teams
- Excellent time management and organizational skills - particularly for managing concurrent ConMon and audit cycles
- High attention to detail, integrity, and ethical standards consistent with handling federal data and programs
- Willingness to learn and take on new challenges as Workato's federal footprint grows
- This position requires overlap with U.S. Pacific Time (PST) working hours.
- Strong hands-on experience with FedRAMP, NIST 800-53, ISO 27001, NIST 800-171, PCI-DSS, SOC 2, and potentially IRAP is required.
- May involve some international travel.
- Must be eligible to work on U.S. federal government-related programs; ability to obtain or support federal security clearance processes is a plus.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Senior GRC Analyst in Palo Alto, CA vacancy
- ...Principal IAM GRC Analyst The Principal IAM GRC Analyst provides technical guidance, implementation, and enforcement of governance, risk and compliance for IAM-related functions. Additionally, the Principal Analyst utilizes existing systems to govern and manage user...Suggested
- ...infrastructure. Our culture is open, positive, collaborative, and results-driven. Come join us! Position Overview DataVisor is seeking a Senior Risk Consultant to join our Professional Services team. In this role, you will lead a variety of technical and strategic client...SeniorRemote workFlexible hours
$163.2k - $220.8k
...entrepreneurial spirit allow exceptional opportunities for professional achievement and career growth. Wilson Sonsini is looking for a Senior AI Risk Advisor to join the Risk Operations team. The Senior AI Risk Advisor, under the direction of the Manager of Risk Operations...SeniorWork experience placementWorldwideShift work$280k - $385k
A leading data and AI company seeks senior leaders to define the strategy for its security platform, focusing on Authentication. Candidates should have extensive experience in Data Security, leadership skills, and a strong communication background. The role offers a competitive...SeniorRemote work- ...Senior Staff Analyst We are seeking a Senior Staff Analyst to join the QuickBooks Risk Management team as a strategic analytics partner supporting our Payments, Payroll, Bill Pay, and Capital product lines. This role leverages advanced analytical capabilities and modern...Senior
- DataVisor in Mountain View, California, is seeking a Senior Risk Consultant with a strong background in fraud detection and AML strategy. The successful candidate will lead client engagements, conduct fraud pattern analysis, and develop risk detection strategies. This...SeniorRemote jobFlexible hours
$159k
...Job Category: Business Operations / Strategy Job Level: Senior Manager Business Unit: Strategy & Growth Work Type: Hybrid... ...Provides direction, training, guidance, and instruction to regulatory analysts in a work environment that fosters teamwork, information and...SeniorContract workWork experience placementWork at officeFlexible hours2 days per week3 days per week$162k - $186k
...Senior Manager, Regulatory Affairs Guilford, Connecticut or Palo Alto, CA - Hybrid Hyperfine, Inc. is the groundbreaking health technology company that has redefined brain imaging with the Swoop® system—the first FDA-cleared, portable, ultra-low-field, magnetic...SeniorWork at officeWork visaShift workNight shiftWeekend work3 days per week$159k
.../ Risk / Quality Assurance Job Level: Senior Manager Business Unit: Strategy & Growth... ...tools, and analytics platforms (e.g., GRC, SAP, Power BI) to support insight-driven... ...guidance, and instruction to regulatory analysts in a work environment that fosters teamwork...SeniorWork experience placementWork at officeFlexible hours- Overview Come join Intuit as a Senior SOX Risk Advisor within the SOX Risk and Compliance Organization (SRCO). SRCO is a newly established function, in the Controllership, Assurance and Operations organization, focused on enabling a modern, sustainable, and effective SOX...SeniorWork experience placement
$278.2k - $339.25k
A leading AI and data platform company in Mountain View is seeking a Senior Data Security leader to enhance the security of its infrastructure. Ideal candidates will have over 10 years of experience in Data Security and considerable expertise in cryptography and systems...Senior$330k
...Job Description Summary: We are seeking a mid-to-senior level fintech regulatory associate. The ideal candidate will have at least five (5) years of payments or banking law experience, including working on bank chartering or money transmission licensing. This position...SeniorFlexible hours$100k - $120k
A leading law firm in Palo Alto seeks an Assistant Managing Clerk to assist the Managing Attorney with procedural guidance for litigation. The ideal candidate will have a Bachelor's degree and at least 6 years of experience in civil procedure. Responsibilities include reviewing...Senior- ...Job Title: GRC Analyst Location: Santa Clara, CA / Hybrid (Only Locals) Required Skills: Excellent understanding and practical application of industry security frameworks including SANS Critical Security Controls, CIS Controls, ISO 27001, NIST...Local area
- ATX Venture Partners seeks a Principal Engineer to drive technology initiatives and create scalable solutions. You'll develop systems in a highly collaborative environment, utilizing both front-end and back-end technologies, particularly in AI domains. The ideal candidate...Senior
- Cloud Software Group is seeking a Senior Principal Legal Counsel specializing in debt and equity capital markets to join their in‑house legal team. This role will involve providing strategic legal advice, managing complex transactions, and ensuring compliance with securities...SeniorRemote job
- A leading financial institution is seeking a Senior Principal Software Engineer to provide engineering expertise within the Commercial & Investment Bank. This role involves developing strategies for Model serving solutions, implementing MLOps practices, and optimizing...Senior
- Commure is seeking an HR Compliance professional to build and manage the employee data compliance and audit program. This full-time position is based in Mountain View, CA and emphasizes regulatory compliance while enhancing the employee experience. The ideal candidate will...SeniorFull time
$83.7k - $147.3k
Genesys empowers organizations of all sizes to improve loyalty and business outcomes by creating the best experiences for their customers and employees. Through Genesys Cloud, the AI-powered Experience Orchestration platform, organizations can accelerate growth by delivering...SeniorLocal areaWork from homeWorldwideFlexible hours$160k - $175k
Ascendis Pharma is a dynamic, fast-growing global biopharmaceutical company with locations in Denmark, Europe, and the United States. Today, we're advancing programs in Endocrinology Rare Disease and Oncology. Here at Ascendis, we pride ourselves on exceptional science...SeniorTemporary workWork at officeFlexible hours$40 - $45 per hour
...Itlearn360 is seeking a Remote GRC Analyst to join their cybersecurity team in Sunnyvale, California. The ideal candidate has 8+ years of experience with a focus on risk management and compliance frameworks. Key responsibilities include conducting risk assessments and...Hourly payRemote work$145k - $167k
...globally through transformational, accessible, clinically relevant diagnostic imaging. Learn More About The Role Job Title : Senior Regulatory Affairs Specialist Location: Palo Alto, CA or Guilford, CT (Hybrid, 3 days/week) The Senior Regulatory Affairs...SeniorWork experience placementWork at officeWorldwideWork visaNight shiftWeekend work3 days per week- DW Simpson Global Actuarial & Analytics Recruitment is seeking a detail-oriented actuary to join their pricing team in Palo Alto, California. The candidate will lead the analysis and execution of state-level rate changes and manage new program launches. The ideal candidate...Senior
$55 - $82.5 per hour
A health organization is looking for a Senior Compensation Analyst to lead the design and improvement of compensation programs in their Mountain View location. This role demands a strong HR background with at least 5 years of experience in compensation analysis. The ideal...SeniorHourly pay$29.15 - $43.73 per hour
Latitude AI LLC is seeking a Mission Analyst in Palo Alto, California. This senior role requires executing vehicle evaluation missions, managing software states, and troubleshooting system failures independently. Candidates should have a minimum of 3 years in vehicle testing...SeniorHourly pay- Stanford Children's Health | Lucile Packard Children's Hospital Stanford seeks a Senior Payroll Systems Analyst to optimize payroll performance, ensure compliance, and act as a liaison across departments. Key responsibilities include conducting audits, leading system testing...Senior
- ...Job Title - Supplier Cybersecurity GRC Analyst Location - Cupertino, CA Contract Job Description We are seeking an experienced Supplier Cybersecurity Risk Remote Assessment Coordinator/Manager with a strong cybersecurity and third-party risk management...Contract workRemote work
$165.6k - $296.4k
...Overview We are hiring for a Senior Principal Product Manager with a proven track record of building AI-driven, scalable advertising products that deliver measurable ROI for advertisers while ensuring the right level of targeting and controls to meet advertiser...SeniorOngoing contractWork at officeLocal area- ...parts or as assemblies globally - information about each part number is the key to customs compliance and paying duties. The PLM analyst will also work with Buyer/Planner and PLM roles at different manufacturing vendors, to source materials and to manage Bill of...Senior
- A leading consulting firm in Palo Alto is seeking a Senior Associate specializing in SAP. This role entails designing and assessing security measures for SAP Global Trade Services, mentoring junior staff, and enhancing client relationships. Candidates should have a Bachelor...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior GRC Analyst. Be the first to apply!
Related searches
- senior game producer Palo Alto, CA
- senior manager process engineering Palo Alto, CA
- senior manufacturing engineer Palo Alto, CA
- senior manager clinical operations Palo Alto, CA
- senior lead project manager Palo Alto, CA
- senior manager quality engineering Palo Alto, CA
- senior device engineer Palo Alto, CA
- senior full stack developer Palo Alto, CA
- senior hvac project manager Palo Alto, CA
- senior strategy analyst Palo Alto, CA


