Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Analyst - Public Sector

$95k - $115k

Socure

Location Remote - USA Employment Type Full time Location Type Remote Department Commercial Compensation

$95K – $115K

Offers Equity Offers Bonus This is a base salary range for this job based on the job requirements. Base pay is only one component of Socure's compensation and our total rewards package includes equity, benefits, and an annual bonus or a commission plan. Why Socure? At Socure, we’re on a mission—to verify 100% of good identities in real time and eliminate identity fraud from the internet. Using predictive analytics and advanced machine learning trained on billions of signals to power RiskOS™, Socure has created the most accurate identity verification and fraud prevention platform in the world. Trusted by thousands of leading organizations—from top banks and fintechs to government agencies—we solve real, high-impact problems at scale. Come join us! About the role Socure is seeking an Analyst, GRC – Public Sector to execute and enhance the company’s governance, risk, and compliance operations for its public sector business. Reporting to the Director of GRC – Public Sector, this role drives measurable improvements in compliance efficiency and audit readiness by managing vulnerability remediation, continuous monitoring, access oversight, and evidence preparation that allow Socure to meet the rigorous standards of FedRAMP, GovRAMP, and related frameworks. The Analyst collaborates across Security, Engineering, IT, DevOps, Product, Legal, and other teams to operationalize regulatory requirements, automate workflows, and offers the opportunity to shape the GRC strategy for Socure’s fast-growing public sector business. What you'll do Compliance & Certification Management Day-to-day coordination and execution of external Third Party Assessment Organization (3PAO) assessments and responding to auditor requests for evidence and documentation. Maintain and update FedRAMP and GovRAMP controls and documentation in alignment with organizational and regulatory requirements, including controls aligned with NIST SP 800-53 rev 5 and other related frameworks. Prepare certification and authorization packages and maintain related documentation such as the System Security Plan (SSP) and associated appendices. Continuous Monitoring & Vulnerability Management Lead the day-to-day FedRAMP continuous monitoring process including vulnerability management lifecycle, from identification through remediation and verification, coordinating with Security, Engineering, and DevOps teams to address issues identified with tools such as Wiz, Burp Suite, AWS native services, and other platforms and resolve issues within FedRAMP and GovRAMP timelines. Coordinate recurring continuous monitoring compliance activities such as access reviews, incident response exercises, and contingency plan testing. Access Management & Training Oversee access controls for FedRAMP environments, including access requests, least privilege reviews and role-based access control validation and quarterly access certifications. Design, implement and deliver FedRAMP training programs to promote compliance awareness Create and manage automated workflows to improve efficiency. Audit & Assessment Readiness Maintain compliance evidence repositories. audit preparation materials, and reporting artifacts. Conduct internal reviews of logged events and control activities, escalating issues or gaps to the Director of GRC and provide status updates and reports highlighting trends, risks, and remediation progress. Process Improvement & Collaboration Collaborate with the Director of GRC to design and implement AI-enabled compliance workflows, leveraging automation tools to streamline evidence generation, reporting, and audit readiness Support the development, rollout, and maintenance of machine-readable compliance documentation (e.g., OSCAL or comparable structured formats) to facilitate interoperability Partner with automation and engineering teams to integrate structured compliance data into Socure’s broader risk management and monitoring ecosystem including vulnerability remediation, access requests, and compliance reporting. Monitor regulatory and industry trends for potential impacts to compliance strategy. Public Sector Sales & Customer Engagement Serve as a security subject matter expert for public sector sales activities, including prospect briefings, RFP/RFQ responses, contract negotiations, and integration discussions. Support development of external communications such as press releases and customer-facing materials related to security certifications and authorizations. Monitor Evolving Requirements Monitor new and evolving requirements and perform gap analyses including Updates to applicable NIST Special Publications and other government standards Contract security requirements from new customers Updates to the FedRAMP Program requirements and processes as the program evolves Provide input to standards bodies on evolving standards when applicable What you'll bring 5+ years of cybersecurity or identity management experience, including 1+ year in the public sector. Direct experience with FedRAMP, GovRAMP, and NIST frameworks (800-53, 800-63, 800-171). Proven ability to manage continuous monitoring, vulnerability remediation, and compliance reporting. Experience using AI tools (e.g., ChatGPT, Glean, Gemini) and machine-readable formats (e.g., OSCAL) to automate and streamline compliance processes. Strong communication, organization, and collaboration skills with the ability to manage multiple priorities. Ability to adapt to changing requirements Must be a U.S. Person (U.S. Citizens or U.S. Permanent Residents) residing in the United States and be able to obtain a U.S. OPM NACI clearance. Preferred Qualifications Experience in regulated industries (e.g., financial services, healthcare) and knowledge of privacy and compliance frameworks such as GDPR, CCPA, and key NIST standards. Professional certifications preferred (CISSP, CISM, CISA, IAPP). Proven success leading certification and compliance initiatives (FedRAMP, GovRAMP, NIST 800‑63/171) Skilled in continuous monitoring, vulnerability management, policy updates, and audit coordination across cross-functional teams. Strong understanding of evolving cybersecurity standards and digital identity regulations, with the ability to translate them into practical risk and compliance improvements. Socure is an equal opportunity employer that values diversity in all its forms within our company. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. If you need an accommodation during any stage of the application or hiring process—including interview or onboarding support—please reach out to your Socure recruiting partner directly. #J-18808-Ljbffr Socure

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the GRC Analyst - Public Sector in New York, NY vacancy
  •  ...future of identity with a team that holds a high bar for itself - keep reading. About the role Socure is seeking an Analyst, GRC - Public Sector to execute and enhance the company's governance, risk, and compliance operations for its public sector business.... 
    Suggested
    Permanent employment
    Contract work

    Socure Inc

    New York, NY
    1 day ago
  • $161.6k - $202k

     ...- and that responsibility demands a security and compliance program that scales with the business. We're building out our dedicated GRC team to improve and mature our program! You'll join the Security team and work across four pillars: security certifications (HITRUST... 
    Suggested
    Work from home
    Flexible hours

    Headway - Design & Development

    New York, NY
    5 days ago
  •  ...Hotman Group is seeking an Entry Level GRC Analyst to work remotely in the USA. The role involves assessing client security, developing risk frameworks, and translating technical requirements into actionable steps. Candidates should possess a relevant degree and 1-2 years... 
    Suggested
    Remote work

    Hotman Group

    New York, NY
    4 days ago
  •  ...A dynamic cybersecurity firm is looking for a detail-oriented Entry-Level GRC Analyst to join their remote team. In this role, you'll work closely with senior members to strengthen client cybersecurity and compliance programs. You'll be involved in assessing controls,... 
    Suggested
    Remote work

    Hotman Group, LLC

    New York, NY
    1 day ago
  • $95k - $105k

     ...Subsplash is looking for a GRC Analyst to join its Remote team in the United States. In this role, you'll be a strategic lead in advancing security and risk operations by identifying gaps and implementing best practices. With a salary range of $95,000-$105,000/yr, you'... 
    Suggested
    Remote work

    Subsplash

    New York, NY
    1 day ago
  •  ...DataRobot, Inc. is seeking a GRC Analyst to join their Information Security Team. The successful candidate will collaborate with stakeholders to manage ISO27001, SOC 2, and HIPAA compliance programs. Key responsibilities include responding to customer security inquiries... 
    Flexible hours

    DataRobot

    New York, NY
    1 day ago
  •  ...Despite our growth and scale, we're still just getting started. That's where you come in. About the role We’re hiring a Senior GRC Analyst to help scale Radar’s security and compliance programs, with a focus on third-party risk and modern SaaS governance. You’ll partner... 
    Work at office
    Remote work

    Radar Labs, Inc.

    New York, NY
    1 day ago
  •  ...Rogo At Rogo, we are building Wall Street's first true AI analyst. Our mission is to empower finance professionals at the world's top...  ...finance, we invite you to join us. The Role Rogo is hiring a GRC Analyst to support our customer trust, security assurance, and... 

    Rogo AI

    New York, NY
    5 days ago
  •  ...is looking for driven, detail-obsessed team members to join our rapidly growing boutique firm as a full-time, remote Entry-Level GRC Analyst. This is a contract-to-hire position with top performers moving to permanent roles within 6 months — and trust us, we want you to... 
    Permanent employment
    Full time
    Contract work
    Remote work

    Hotman Group

    New York, NY
    9 days ago
  • $130k - $160k

     ...Alumni Ventures is seeking a Senior GRC Analyst to operate and mature governance, risk, compliance, and audit readiness programs. This role involves collaboration across departments to ensure effective compliance practices. Ideal candidates have 5+ years in GRC and experience... 
    Remote work
    Flexible hours

    Benepass

    New York, NY
    5 days ago
  •  ...Role- GRC Analyst Duration: Contract to Perm Location: Norwalk CT, New York, Houston, TX Must Haves: GRC Nice to Haves: SOC2, IT Controls ~3 days on site. ~ Open to recent college grads with IT or accounting/finance degrees. ~ Values... 
    Permanent employment
    Contract work

    The Judge Group

    Jersey City, NJ
    5 days ago
  • $130k - $160k

     ...Location U.S Remote Employment Type Full time Department Engineering Team & Role As a Senior GRC Analyst at Benepass, you will help operate and mature the governance, risk, compliance, audit readiness, and customer assurance programs that support our business, customers... 
    Full time
    Work at office
    Remote work
    Work from home
    Flexible hours

    Benepass

    New York, NY
    4 days ago
  •  ...their AI assets. Organizations worldwide rely on DataRobot for AI that makes sense for their business — today and in the future.The GRC Analyst will collaborate with process owners, auditors, and other stakeholders to support the DataRobot Information Security Team in... 
    Local area
    Worldwide
    Flexible hours

    DataRobot

    New York, NY
    1 day ago
  • $135k - $190k

     ...York City, Mumbai and Bangalore for employees who prefer to work in an office some or all of the time. About your role As a Senior GRC Analyst, you are responsible for supporting the organization's governance, risk management, and compliance (GRC) program. The ideal... 
    Full time
    Work at office
    Local area
    Remote work
    Work from home
    Flexible hours

    Juniper Square

    New York, NY
    1 day ago
  •  ...Neier Inc. is looking for a Remote GRC Analyst to lead the transition from a single tenant to a multi‑tenant access control environment. This role involves enhancing SOX compliance and developing governance processes to ensure secure growth. The ideal candidate should... 
    Remote work

    Neier Inc

    New York, NY
    3 days ago
  • $125k - $135k

     ...GRC Analyst job at Suzy. Remote. Suzy puts the voice of the consumer at your fingertips. Whether you're a novice or an expert researcher, our platform brings advanced tools together with the highest quality audience to deliver insights in minutes. Some of the biggest brands... 
    Work experience placement
    Immediate start
    Remote work

    Feitong Buke

    New York, NY
    5 days ago
  •  ...Job Description We are seeking a detail oriented and analytically driven GRC Analyst to support the organization's information security governance, risk management, and compliance program. This role is critical to ensuring alignment with regulatory requirements, industry... 

    Insight Global

    New York, NY
    5 days ago
  •  ...A cutting-edge technology firm in the United States is seeking a Senior GRC Analyst. The role requires 5+ years of experience in risk management, compliance, and governance. You will support the organization's GRC program, maintain security compliance frameworks, and conduct... 
    Remote work

    Juniper Square

    New York, NY
    1 day ago
  •  ...About the Role: As aGRC Analyst II on our Governance Team, you’ll play a critical role in helping our customers establish and implement robust security governance programs. You’ll work directly with clients to support customer onboarding, policy development, gap reviews... 

    Bright Defense, LLC.

    New York, NY
    1 day ago
  •  ...Neier Inc. is seeking an Experienced or Senior GRC Analyst to lead cybersecurity and compliance initiatives. This full-time, remote position will focus on risk assessments, developing compliance programs, and mentoring junior analysts. The ideal candidate has over 5 years... 
    Full time
    Remote work

    Neier Inc

    New York, NY
    3 days ago
  • $95k - $110k

     ...Blackkite is looking for a Senior GRC Analyst to oversee compliance efforts and support customer security assessments in the United States. This role requires expertise in compliance frameworks like SOC 2 and ISO 27001, along with strong communication skills. The successful... 
    Flexible hours

    Blackkite

    New York, NY
    1 day ago
  •  ...A security consulting company in the United States is looking for a GRC Analyst II to support governance programs for clients. In this role, you will onboard customers, perform gap assessments, and develop security policies. The ideal candidate will have 2-3 years in information... 

    Bright Defense, LLC.

    New York, NY
    1 day ago
  • 6AM City, LLC is seeking a candidate in Oklahoma to handle security risk assessments and IT compliance reviews. This role involves assessing business and technology initiatives, providing IT security due diligence, and supporting security awareness programming. The ideal...

    6AM City, LLC

    Brooklyn, NY
    3 days ago
  •  ...strong for 90 years, that encourages you to learn, grow, and pursue your dreams? If yes, then read on... The Information Security GRC Analyst III is responsible for analyzing and assessing the information security controls in an effort to protect the confidentiality,... 
    Monday to Friday

    PSECU Pennsylvania State Employees Credit Union

    New York, NY
    1 day ago
  • Rogo in New York is seeking a GRC Analyst to enhance its customer trust, security, and compliance programs. You will work cross-functionally with teams in security, engineering, and legal to ensure clear communication of security practices. The role entails responding to... 

    Rogo

    New York, NY
    2 days ago
  •  ...are seeking a talented Senior Governance, Risk, and Compliance (GRC) Analyst / Engineer to join our innovative team focused on advancing...  ...mitigation effortsEquity participation in a fast-growing, innovative public company (spun off from Uber and Postmates)Opportunity to grow... 
    Remote work
    Flexible hours

    Prestige Staffing

    New York, NY
    3 days ago
  • Responsibilities Perform security risk assessments for business and technology initiatives such as new vendors, critical vendors, and supporting software by reviewing security questionnaire responses, utilizing web application scanning technology and open-source software...

    6AM City, LLC

    Brooklyn, NY
    3 days ago
  • Radar is hiring a Senior GRC Analyst in New York City to enhance security and compliance programs, focusing on third-party risk and SaaS governance. You will work with various teams to evaluate vendors, shape security strategies, and improve workflows, reporting to the... 

    Radar

    New York, NY
    1 day ago
  • A leading technology-driven financial services company in New York seeks an Information Security professional. The role involves governance, risk, and compliance activities pertinent to security within a hybrid work environment. Candidates should possess at least 2 years...
    Flexible hours

    Betterment

    New York, NY
    14 hours ago
  • PSECU Pennsylvania State Employees Credit Union is seeking an Information Security GRC Analyst III to ensure the integrity, confidentiality, and availability of information. You'll monitor compliance, conduct risk assessments, and manage security policies. The ideal candidate... 

    PSECU Pennsylvania State Employees Credit Union

    New York, NY
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Analyst - Public Sector. Be the first to apply!