Security Governance Risk & Compliance (GRC) Analyst
$130k - $170kVirtru
About Virtru: While the rest of the security industry obsesses over locking data down to prevent it from being lost or stolen, we're doing something fundamentally different at Virtru. We're setting data free so that you can intentionally share it with others, but without sacrificing security, privacy, or control. We've created both a suite of powerful data protection applications and an open platform that's sparking an ecosystem of innovation. Through the Trusted Data Format (TDF) open standard, we're not just protecting data; we're creating a new paradigm where security enables sharing rather than preventing it. Think of us as the Android of data protection: a robust platform with an open core that developers and partners can build upon, coupled with our own best-in-class applications that showcase what's possible when you reimagine security from the ground up. Backed by Iconiq Capital, Bessemer Venture Partners, Foundry Capital, and Tiger Global, we're helping Fortune 500 companies and government agencies discover that true data security means having the freedom to share, collaborate, and innovate — without compromise. Compensation: $130,000-$170,000/year Team & Position Details: Here at Virtru you’ll help build a cutting edge security compliance program aligned with FedRAMP, SOC 2, PCI, HIPAA, GDPR, and just about any other security/privacy framework you can think of, whilst getting your hands on some of today’s most important tools and tech like Kubernetes, GCP, AWS, Terraform. We put a high value on input from everyone on our team. Your voice will have a significant impact. With a constantly growing customer base, there is no shortage of challenging and exciting scaling/optimization work to ensure that we can provide the most secure and performant service. As a GRC Analyst at Virtru, you will be the primary point of contact for compliance-related inquiries. You will lead and manage the organization's efforts to achieve and maintain CMMC compliance, by conducting gap analyses and developing a roadmap to address compliance requirements. You will also play a vital role in supporting our existing FedRAMP, SOC2, and PCI DSS compliance. Get in touch if you are excited to help us grow into a world-class security compliance program. As a Security Governance Risk & Compliance (GRC) Analyst, your responsibilities will include: Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure and Software as a Service (SaaS) services (GCP, AWS, GitHub, Okta, etc). Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services. Conduct risk assessments across business units and processes. Identify risk findings and recommend remediation and risk mitigation strategies. Participate in incident response (IR) activities, providing risk analysis and remediation support as needed. Assist or implement automated controls to support risk mitigation efforts across various business units with stakeholders. Incorporate CMMC certification into Virtru’s slate of compliance assessments and ongoing monitoring activities (FedRAMP, SOC 2, PCI). Facilitate the third-party vendor on-boarding and annual review process by evaluating the security of current and prospective partners. Enhance the team with your individualism, spirit, and love of learning. Skills that will help you thrive in this role: Minimum of 5+ years of information security, IT audit and/or IT Risk Management, or GRC Analyst/Engineer experience Deep understanding of at least few of the following: CMMC, NIST 800-53 & 800-171, FedRAMP, SOC 2, PCI, and/or other global privacy compliance frameworks Technical acumen. Strong understanding of modern cloud technologies (AWS, GCP, Azure, etc.) and familiarity with GRC tools (Hyperproof, Vanta, Drata, etc) and SIEM tools (Datadog, Splunk) You’re a relationship builder and have worked with both business and technical risk and understand how to translate risk to various levels of the organization Have experience training and coaching teams to become better security and privacy practitioners Like working on an autonomous agile team. At Virtru, you will have ownership of security, but you'll collaborate with everyone to make sure we produce and implement the right solutions Ability to resolve conflicts and drive issues to completion. Work independently with little or no supervision while maintaining a high level of efficiency. Virtruvian qualities that will set you up for success: Thinking outside of the box to respectfully challenge your teammates and managers in the pursuit of excellence Strong sense of urgency with an action-oriented mindset Able to collaborate and adapt to shifting priorities as business needs evolve Comfortable with asynchronous communication including slack, email, zoom, etc. Perks & Benefits: At Virtru, we believe people do their best work when their wellbeing is put first. This is why we make your wellbeing our priority with a thoughtful and holistic program that encompasses Occupational, Mental, Social, Physical, and Environmental Wellness by offering benefits such as… A Flexible PTO policy — we strongly encourage you to take time off (in addition to 14 holidays) to ensure that you are getting the proper time needed to unplug and recharge. A $1,500 annual Learning & Development Stipend focused on providing you the resources to continually learn and professionally grow. Frequent company-sponsored team celebrations that provide ample opportunities to connect with teammates and be social! Access to an Employee Assistance Program Access to Headspace, a mental health app tailored to your specific needs. A flat 3% contribution to your retirement account A high degree of flexibility — Have an appointment, errand, or family emergency to take care of? Hop to it! We give you the time and space to take care of you and your own first. In addition to wellbeing, Virtru places a strong emphasis on diversity, equity, inclusion, and belonging. Our DB&I Council is dedicated to fostering an inclusive workplace and making the psychological safety of each and every one of our teammates a top priority. Additional perks include: Competitive compensation Generous parental, medical, and bereavement policies Uncapped commissions for Sales roles 401K contribution and stock options Full medical, dental, and vision benefits New Hire Swag and IT Welcome boxes Structured semi-annual 360° performance reviews Virtru is committed to building an inclusive environment for people of all backgrounds and everyone is encouraged to apply. Virtru is an Equal Opportunity Employer and does not discriminate on the basis of race, color, gender, religion, disability, national origin, protected veteran status, age, or any other status protected by applicable national, federal, state, or local law.
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter... ...time inside compliance programs, risk assessments, or security audits, your expertise is exactly what's needed to...SuggestedHourly payOngoing contractContract workFreelanceRemote work10 hours per weekFlexible hours
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We're partnering with the world's leading AI research labs to build smarter... ...will directly shape how AI systems understand security policies, evaluate risk, and reason through compliance...SuggestedHourly payOngoing contractContract workFreelanceRemote workWorldwideFlexible hours
- ...Governance, Risk & Compliance (GRC) Analyst (AI Training) About the Role We partner with the world's leading AI research labs to build smarter... ...world. As a GRC Analyst, your hands-on expertise with security policies, audit frameworks, and risk controls will...SuggestedHourly payOngoing contractContract workFreelanceRemote workWorldwideFlexible hours
$135k - $165k
...organizations review, negotiate, and manage contracts. Security, privacy, and trust are foundational to our platform... ...continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and...SuggestedContract workFlexible hours$130k - $170k
Security Governance Risk & Compliance (GRC) Analyst Washington, DC - Remote About Virtru: While the rest of the security industry obsesses over locking data down to prevent it from being lost or stolen, we’re doing something fundamentally different at Virtru. We’re setting...SuggestedLocal areaRemote workFlexible hoursShift work- ...Job Description Job Description Job Summary: As a Senior Governance Risk and Compliance (GRC) Analyst at C2 Labs you will lead a team of security analysts and engineers to implement regulatory frameworks such as the Federal Information Security Modernization Act...
$189k - $225k
About the Role: The GRC Analyst, Federal & Customer Programs is responsible for the hands-on analysis, documentation, and operational execution of the company's security governance, risk, and compliance obligations. This role sits at the intersection of customer contracts...Ongoing contractContract workFor contractorsFor subcontractorWork at office3 days per week- Brief Description Zywave's security and regulatory excellence depends on strong governance, risk, and compliance practices and this role sits at the center of that work. As a GRC Analyst, you will manage compliance frameworks, assess organizational risk, and help Zywave...
- ...Overview The IT GRC Analyst operates within the enterprise Cybersecurity Operations... ...Information Officer. This role executes governance, risk, and compliance activities aligned with regulatory... ...Engineering, Legal, HR) to address security risks. Advise IT and IS leadership on...Work at officeRemote work
$95k - $105k
...Job Description Sr. GRC Analyst About Subsplash Subsplash... ...as ensuring proper security across all IT systems.... ...advance security and risk operations. In this role... ...building an AI-first compliance function, and this... ...cadence. 2. Access Governance & Identity Management...Temporary workCurrently hiringRemote workRelocation$161.6k - $202k
...patients — and that responsibility demands a security and compliance program that scales with the business. We're building out our dedicated GRC team to improve and mature our program!... ..., SOC 2, PCI-DSS, HIPAA), third-party risk management, security awareness training,...Work from homeFlexible hours- ...Governance, Risk, & Compliance (GRC) Analyst Washington, DC Remote Full-Time About This Role As a GRC Analyst, you will help organizations navigate the... .... You will work directly with clients to assess their security posture, develop policies, and guide them through compliance...Full timeRemote work
$60k - $75k
...enjoys solving problems, managing compliance, and helping keep cybersecurity and government contract requirements on track? Qualified Staffing is seeking a GRC Analyst for our client in Macon, GA.... ...support cybersecurity compliance, risk management, audit readiness, and...Contract workRelocationRelocation packageMonday to Thursday- ...Governance, Risk, and Compliance (GRC) Analyst About Fulcrum We operate at the intersection of technology and law, in an industry that demands agility and... ...Education Bachelor's degree in Information Security, Computer Science, Business Administration, Risk Management...Full time
- ...Governance, Risk & Compliance (GRC) Analyst Client is seeking a GRC Analyst to lead our governance, risk, and compliance initiatives. This role will... ...Qualifications: ~ Bachelor's degree in information security, Computer Science, or related field ~3+ years in GRC...
- ...Compliance Analyst Security at GoTo Everyone deserves to work in a safe and secure environment. That's why we're passionate... ...The Compliance Analyst sits within the Security Governance, Risk, and Compliance (GRC) team, reporting to the Director of GRC in the CISO...Local areaRemote workWork from home
- ...IT Security Manager Key Responsibilities: Governance Develop, maintain, and enforce IT security... ...programs. Risk Management Identify... ...remediation efforts. Compliance Ensure compliance... ...Strong experience in GRC, IT audit, or cybersecurity...
- ...Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience...Remote workFlexible hours
- Ruleset Security is offering an exciting internship opportunity for a Governance, Risk, and Compliance (GRC) Analyst. This role is perfect for students or recent graduates looking to gain hands‑on experience in cybersecurity, compliance, and risk management. The internship...Remote jobFull timeInternship
$110k - $135k
Ease is hiring a GRC Analyst to support our governance, risk, and compliance program as we mature our security posture and expand into new compliance frameworks. This is a hands‑on role at the intersection of security, engineering, and the business — you'll be the operational...Permanent employmentWork at office- Job Description A Security Governance, Risk, and Compliance (GRC) Analyst will support and mature our security and compliance programs across a large construction organization. This role focuses on maintaining security policies, strengthening vendor risk management, supporting...For contractors
$65k - $80k
...to causes that matter. Financial Security 401(k) plan with company contributions... ...Financial Services. Job Title: GRC Analyst Division: Infrastructure/ IT... ...play a key role in advancing our governance, risk management, and compliance initiatives. This position works closely...Full timeRemote workFlexible hours- Governance, Risk & Compliance (GRC) Analyst Job Category: Information Technology Requisition Number: GOVER001449 Posted : July 1, 2026 Full-Time Hybrid... ...role in regulatory compliance, IT risk management, security. You'll assess risks, support audits, and develop policies...Full timeCasual workWork at officeWork from homeHome officeNight shiftWeekend work
- Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential... ..., Risk and Compliance (GRC) Analyst to join our Security Team. This role will serve as a subject matter expert...Work at officeLocal areaRemote workFlexible hours
- ...Job Title: Governance Risk & Compliance Analyst Location: Lakewood, CO Work Model: Hybrid – onsite and remote Overview System One is seeking a GRC Analyst for an opportunity in Lakewood, CO. The GRC... ...within the Global Information Security Office and supports the implementation...Work at officeLocal areaRemote work
$100k - $125k
## Risk and Compliance AnalystApplyremote type: Hybridlocations: New... ...The Risk and Compliance Analyst will play a key role in... ...and executing the Firm’s governance, risk and compliance (GRC) program. Reporting to the... ...27001, client-facing security assessments, and enterprise...- ...Job Description The Information Security Governance, Risk & Compliance Analyst II will ensure information technology processes meet defined security controls and perform vulnerability analyses and risk assessments against the adequacy of those security controls....Full timeLive in
- ...Tire Rack is seeking a Senior Information Security GRC Analyst to support and advance our Information Security Governance, Risk, and Compliance (GRC) program. In this role, you will assess and strengthen IT and security controls across the organization while ensuring alignment...Monday to Friday
- Overview Information Security Governance, Risk and Compliance (GRC) Analyst - Risk and Policy focus. Responsibilities Assist in the execution of the organization’s security risk management program and support the policy governance lifecycle. Lead the execution of security...Contract work
- ...Join to apply for the Junior GRC Risk Analyst role at Jobright.ai . Jobright is an AI-powered career platform... ...real-time cloud-based endpoint management and security solutions. The GRC Risk Analyst will conduct compliance assessments, develop policies, and manage risks...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Governance Risk & Compliance (GRC) Analyst. Be the first to apply!
- market risk analyst United States
- risk consultant United States
- third party risk analyst United States
- transaction risk analyst United States
- risk compliance officer United States
- senior quantitative risk analyst United States
- quantitative risk analyst United States
- operational risk consultant United States
- it risk analyst United States
- operational risk specialist United States


