GRC Analyst
Jobgether
GRC Analyst
This role sits at the heart of governance, risk, and compliance operations within a fast-scaling, payments-focused environment. You will take ownership of day-to-day GRC execution, ensuring the organization maintains a strong and continuous compliance posture across multiple regulatory frameworks. Acting as a key partner to engineering, security, legal, and leadership teams, you will help translate complex compliance requirements into structured, operational processes. The role involves managing audits, external trust requests, and ongoing control monitoring in a highly dynamic, remote-first setting. You will also contribute to strengthening policy governance, risk management practices, and security assurance programs. This is a hands-on position where precision, ownership, and cross-functional collaboration directly support trust, regulatory readiness, and business growth.
Accountabilities:
- Own and manage audit readiness activities, including maintaining continuous evidence collection, control monitoring, and coordination with external auditors for frameworks such as SOC 2, PCI DSS, and ISO 270001.
- Handle external security and compliance requests, including vendor assessments, security questionnaires, and RFP responses, ensuring accuracy, consistency, and timely delivery.
- Support and coordinate enterprise risk and compliance programs aligned with regulations such as GDPR, DORA, NIS2, and the EU AI Act.
- Maintain and govern the policy lifecycle, including policy updates, exception handling, violation tracking, and remediation follow-ups.
- Contribute to certification efforts and support expansion into new compliance frameworks as business and regulatory needs evolve.
- Collaborate with engineering and security teams to operationalize controls, strengthen vulnerability management processes, and support security awareness initiatives.
- Ensure ongoing compliance visibility by maintaining structured documentation and reinforcing a continuous compliance approach rather than point-in-time audits.
Requirements:
- 3–5 years of experience in GRC, compliance, information security governance, or a related field.
- Hands-on experience supporting external audits such as SOC 2, PCI DSS, ISO 27001, or equivalent frameworks.
- Familiarity with regulatory requirements including GDPR, DORA, NIS2, and ideally emerging EU compliance standards.
- Experience managing vendor risk assessments, third-party due diligence, and external security reviews.
- Strong understanding of continuous control monitoring and evidence management practices.
- Proficiency with GRC and compliance platforms such as Vanta, Drata, OneTrust, or similar tools.
- Excellent organizational skills with the ability to manage multiple compliance workflows in parallel.
- Strong communication skills, with the ability to work effectively across technical, legal, and business stakeholders.
- Detail-oriented mindset with a proactive approach to identifying and resolving compliance gaps.
- Ability to work independently in a remote-first, fast-moving, and ambiguity-rich environment.
- Nice to have: familiarity with IAM processes and access reviews, certifications such as CISA, CRISC, or ISO 27001 Lead Implementer, and experience in fintech or payments environments with PCI DSS exposure.
Benefits:
- Fully remote and globally distributed work environment.
- Competitive compensation and equity/share options (where applicable).
- Flexible time off with generous minimum holiday allowance.
- Home office setup support and access to co-working spaces.
- Private medical insurance and health-related benefits (depending on location).
- Learning and development budget to support continuous growth.
- Annual company retreats, workations, and global team gatherings.
- High-quality equipment provided for your role.
- Additional region-specific perks and benefits.
- ...Hotman Group is seeking an Entry Level GRC Analyst to work remotely in the USA. The role involves assessing client security, developing risk frameworks, and translating technical requirements into actionable steps. Candidates should possess a relevant degree and 1-2 years...SuggestedRemote work
$161.6k - $202k
...- and that responsibility demands a security and compliance program that scales with the business. We're building out our dedicated GRC team to improve and mature our program! You'll join the Security team and work across four pillars: security certifications (HITRUST...SuggestedWork from homeFlexible hours- ...Governance, Risk, and Compliance (GRC) Analyst We operate at the intersection of technology and law, in an industry that demands agility and innovation. Our team is dedicated to developing advanced solutions for legal professionals. Our daily work involves tackling...SuggestedFull timeFlexible hours
- ...Location : Remote Reports to : GRC Manager Time commitment : minimum 20 hours weekly Headcount: 2 people Summary: The GRC analyst with a legal background is a critical hire for our rapid team. You will be responsible for building and maintaining the...SuggestedRemote work
$130k - $160k
...Alumni Ventures is seeking a Senior GRC Analyst to operate and mature governance, risk, compliance, and audit readiness programs. This role involves collaboration across departments to ensure effective compliance practices. Ideal candidates have 5+ years in GRC and experience...SuggestedRemote workFlexible hours- ...ISACA Audit Standards. ? Promotes compliance with regulatory requirements (e.g. PCI DSS) and IT best practices. GRC Risk Analyst Skills & Requirements: ? 7-10 years of IT Audit experience (CISA certified preferred) ? 3 years of IT Risk...Work experience placement
$120k - $140k
...A progressive tech company in New York is seeking a Governance, Risk & Compliance (GRC) Analyst to lead certification programs and audits. The ideal candidate has 5–7+ years in GRC or audit with experience in ISO 27001 and SOC 2. This role emphasizes managing enterprise...Remote workFlexible hours- ...A dynamic cybersecurity firm is looking for a detail-oriented Entry-Level GRC Analyst to join their remote team. In this role, you'll work closely with senior members to strengthen client cybersecurity and compliance programs. You'll be involved in assessing controls,...Remote work
- ...Title: GRC Analyst Location MassDOT, 10 Park Plaza, Boston, MA 02116 Duration: 1 year W/possible extensions Skill Set - disaster recovery, IT, Hours / Shift: Monday -Friday 9:00 to 5:00 40 hour work week Notes: . 37.5...For contractorsWork at officeRemote workMonday to FridayFlexible hoursShift work
$77.2k - $96.5k
...Behind WWT's Resilient Future Step into a dynamic role as an Information Security (InfoSec) Governance, Risk, and Compliance (GRC) Analyst within Audit and Compliance, where you will be at the forefront of driving operational excellence within the Audit and...Permanent employmentFull timeH1bVisa sponsorshipShift work$94k - $123.9k
...secure, compliant, and scalable SAP environment. Perform security and compliance assessments and support the ongoing evolution of the SAP GRC (Governance Risk Compliance) environment, ensuring risks are accurately identified, assessed, and mitigated. Ruleset Governance...Temporary work$60k - $135k
...GRC Analyst Location: San Jose, CA We are looking for candidates with strong cyber security background along with PCI DSS& PCI 3DS audit experience. Experience in IT Compliance managing external audits such as PCI DSS, SOC 2, ISO 27001 to name a few. Experience in...Minimum wageLocal area- ...GRC Analyst The GRC Analyst is responsible for helping to provide compliance and oversight of all our Corporation's Authorization and Accreditation (A&A) requirements as it relates to our government business including but not limited to DIA, DoD, DCSA, etc. Additionally...
$80k - $158k
...Job Title: GRC Analyst City: Oregon State/Province: Ohio Posting Start Date: 5/21/26 Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions...Minimum wageFull timeLocal area$85k - $121.8k
...work in the United States on a full-time basis. Reporting to the Manager or Sr.Manager, IT Risk and Compliance, the Senior GRC analyst will be responsible for supporting the day to day IT compliance, data governance, and IT risk management functions.The role will...Full timeWork at officeFlexible hours$74.58k - $120k
...GRC Analyst Apply Online Tyler Technologies is seeking a Governance, Risk, and Compliance (GRC) Analyst to support our Data & Insights (D&I) solutions within the Security team. This role offers a meaningful opportunity to own and evolve the compliance posture...Local areaRemote workShift work- ...Sr. GRC Analyst, Third-Party & Human Risk Management (TPHRM) Clayco is a full-service, turnkey real estate development, master planning, architecture, engineering, and construction firm that safely delivers clients across North America the highest quality solutions...For contractorsImmediate startFlexible hours
$120k - $140k
..., collaboration, and solving real problems for our customers and teammates. We are looking for a Governance, Risk & Compliance (GRC) Analyst to lead our certification and assurance programs—owning SOC 2 end‑to‑end and driving ISO 27001, ISO 27701, and ISO 42001 audit preparation...Contract workImmediate startRemote workFlexible hours- ...Senior GRC Analyst This is a remote position; however, candidates must work on the Pacific Time Zone. You're sharp, resourceful, and calm under pressure—the one people count on when technology misbehaves. You love solving problems, restoring order, and creating moments...Remote workShift work
- ...their AI assets. Organizations worldwide rely on DataRobot for AI that makes sense for their business — today and in the future. The GRC Analyst will collaborate with process owners, auditors, and other stakeholders to support the DataRobot Information Security Team in...Local areaRemote workWorldwideFlexible hours
- ...About the Role: As aGRC Analyst II on our Governance Team, you’ll play a critical role in helping our customers establish and implement robust security governance programs. You’ll work directly with clients to support customer onboarding, policy development, gap reviews...
- ...Senior GRC Analyst We're thrilled that you are interested in joining us here at the Amynta Group! The Senior GRC Analyst is an experienced individual contributor within the IT Security function responsible for advancing Amynta's governance, risk management, and compliance...Work at office
- ...Job Description The GRC Analyst will support and help drive the company’s governance, risk, and compliance initiatives by ensuring security and compliance projects stay organized, on track, and aligned with business goals. This role will coordinate and manage initiatives...
$130k - $150k
...part of a high-performing team that believes in each other, come build with us at Crusoe. About This Role We're seeking a GRC Analyst to support the day-to-day execution of our Governance, Risk, and Compliance program. Reporting to the Head of GRC, this role focuses...Temporary work$95k - $110k
...work has earned consistent recognition from customers and industry analysts alike. WHY BLACK KITE We’re a fast-moving, high-impact... ...— you’re in the right place. THE OPPORTUNITY The Senior GRC Analyst reports to the Director of Information Security and owns...WorldwideFlexible hours- ...GRC Analyst HYDAC is a family-owned and operated business with a vibrant and rewarding working environment for our employees across the country. Our goal is to provide quality products, components and services that meet our customer expectations while being committed...Temporary workWork at officeLocal areaWorldwideRelocation
- ...Title: GRC Analyst Location: San Jose, CA Duration: Full Time We are looking for candidates with strong cyber security background along with PCI DSS& PCI 3DS audit experience. Experience in IT Compliance managing external audits such as PCI...Full time
$60k - $90k
...GRC Analyst, Operations & Risk As a GRC Analyst, Operations & Risk, you will support the WHOOP Governance, Risk, and Compliance program by helping manage GRC intake, coordinate third-party risk activities, strengthen operational workflows, and improve visibility across...Full timeWork at officeRelocation- ...GRC Analyst United States Zone & Company Software Consulting LLC ("Zone") is the ERP-native AI platform for financial operations, purpose-built for organizations running on Oracle NetSuite. We are redefining how finance teams operate by delivering an AI-powered system...Permanent employmentContract workFixed term contractRemote workWorldwide
- ...is looking for driven, detail-obsessed team members to join our rapidly growing boutique firm as a full-time, remote Entry-Level GRC Analyst. This is a contract-to-hire position with top performers moving to permanent roles within 6 months — and trust us, we want you to...Permanent employmentFull timeContract workRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!

