Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance, Risk & Compliance (GRC) Analyst

$135k - $165k

IVO Inc

Governance, Risk & Compliance Analyst

Ivo is an AI-powered contract review and legal technology company transforming how organizations review, negotiate, and manage contracts. Security, privacy, and trust are foundational to our platform and customer relationships. As we continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and risk management programs.

Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This role will play a key part in maintaining and enhancing Ivo's compliance programs, including SOC 2 Type II, ISO 27001, CSA STAR, and ISO/IEC 42001.

The ideal candidate has experience supporting security audits, managing evidence collection, conducting risk assessments, maintaining policies and procedures, and partnering cross-functionally with engineering, IT, legal, HR, and business stakeholders. This is a fully onsite role based out of Ivo's San Francisco headquarters to support close cross-functional collaboration with Security, Engineering, IT, and Operations teams.

Responsibilities include:

  • Support and coordinate Ivo's compliance programs including SOC 2 Type II, ISO 27001, CSA STAR, and ISO/IEC 42001.
  • Assist with annual audits, surveillance audits, and customer security assessments.
  • Coordinate evidence collection and maintain audit readiness across teams.
  • Support and maintain Ivo's Vanta GRC platform and associated compliance workflows.
  • Monitor automated compliance evidence collection and control monitoring within Vanta.
  • Perform vendor and third-party risk assessments.
  • Support enterprise risk management and risk register maintenance.
  • Maintain and update security policies, standards, and procedures.
  • Support AI governance and responsible AI compliance initiatives.

Required qualifications include:

  • 3–5 years of experience in Governance, Risk & Compliance (GRC), Information Security, IT Audit, or related field.
  • Hands-on experience supporting SOC 2 Type II, ISO 27001, CSA STAR, and in-depth knowledge of ISO/IEC 42001.
  • Experience administering or working extensively with Vanta or similar GRC/compliance automation platforms.
  • Experience managing and maintaining a customer-facing Trust Center, including security documentation, compliance artifacts, sub-processor disclosures, and customer assurance materials.
  • Strong understanding of information security principles and common security controls.
  • Experience with audits, evidence management, and customer security reviews.
  • Excellent written and verbal communication skills.

Preferred qualifications include:

  • Experience working at a SaaS or AI company.
  • Familiarity with GDPR, CCPA, privacy regulations, and third-party risk management.
  • Knowledge of cloud environments such as GCP, AWS, or Azure.
  • Relevant certifications such as Security+, CISA, CRISC, CCSK, or ISO 27001 Lead Implementer/Auditor.

What we're looking for includes:

  • Strong attention to detail and accountability.
  • Collaborative mindset with strong cross-functional communication skills.
  • Ability to translate compliance requirements into practical operational processes.
  • Interest in emerging AI governance and security frameworks.
  • Self-starter mentality with a continuous improvement mindset.

Compensation and benefits include:

  • Competitive salary ($135k - $165k) and equity package.
  • Comprehensive health, dental, and vision coverage.
  • Flexible PTO.
  • Collaborative onsite work environment (5 days) at Ivo's San Francisco headquarters.
  • Opportunity to help shape the security and compliance foundation of a rapidly growing AI company.

Ivo is an equal opportunity employer and values diversity at all levels of the organization. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Vacancy posted 15 hours ago
Similar jobs that could be interesting for youBased on the Governance, Risk & Compliance (GRC) Analyst in San Francisco, CA vacancy
  • $161.6k - $202k

     ...that responsibility demands a security and compliance program that scales with the business. We're building out our dedicated GRC team to improve and mature our program! You...  ...HITRUST, SOC 2, PCI-DSS, HIPAA), third-party risk management, security awareness training, and... 
    Suggested
    Work from home
    Flexible hours

    Headway - Design & Development

    San Francisco, CA
    1 day ago
  • Spectraforce Technologies is seeking a Database Analyst III in San Francisco, CA. This hands-on role focuses on automating compliance workflows, data governance, and AI-driven automation. Key responsibilities include designing GRC workflows, building dashboards, and... 
    Suggested

    Spectraforce Technologies

    San Francisco, CA
    3 days ago
  • $130k - $150k

     ...believes in each other, come build with us at Crusoe. About This Role We're seeking a GRC Analyst to support the day-to-day execution of our Governance, Risk, and Compliance program. Reporting to the Head of GRC, this role focuses on operational compliance... 
    Suggested
    Temporary work

    Crusoe

    San Francisco, CA
    5 days ago
  • $88k - $124k

     ...IG Compliance & Security Analyst Cooley is seeking an IG Compliance & Security Analyst...  ...to join the Information Governance & Data Privacy team....  ...requests. This role tracks risks, monitors adherence to policies...  ...policies, and working in the GRC platform Conduct both... 
    Suggested
    Full time
    Contract work
    Temporary work
    Work experience placement
    Work at office
    Flexible hours
    Weekend work

    Cooley

    San Francisco, CA
    1 day ago
  •  ...Title: GRC Analyst Location: San Francisco, CA (4 days onsite) Duration: 6+ months Key Responsibilities: • Conduct technical vendor risk assessments (security, privacy, architecture, data handling) for new and existing third parties • Review security... 
    Suggested

    Winmax Systems

    San Francisco, CA
    1 day ago
  •  ...relocation to Saudi Arabia. It is a permanent full‑time expatriate position with an attractive relocation package. The role is a Governance, Risk & Compliance Specialist in the Digital & IT (D&IT) Strategy & Investment Department, within the D&IT Governance Risk & Compliance... 
    Permanent employment
    Full time
    Local area
    Relocation
    Relocation package

    aramco

    San Francisco, CA
    1 day ago
  •  ...Credit Risk Senior Associate In Healthcare Leveraged Finance Bring your expertise...  ...JPMorganChase. As part of Risk Management and Compliance, you are at the center of keeping...  ...analysis, stress testing, and disciplined risk governance. You will also collaborate with business... 

    Chase

    San Francisco, CA
    1 day ago
  • $159k

     ...Yuba City    Department Overview: The Electric Risk & Compliance organization provides governance, oversight, and strategic direction on risk and compliance...  ..., training, guidance, and instruction to regulatory analysts in a work environment that fosters teamwork,... 
    Contract work
    Work experience placement
    Work at office
    Flexible hours
    2 days per week
    3 days per week

    PG&E Corporation

    Daly City, CA
    2 days ago
  • $88k - $124k

    IG Compliance & Security Analyst Cooley is seeking an IG Compliance & Security Analyst to join the Information Governance & Data Privacy team. Position summary Cooley...  .../support periodic risk assessments and develop...  ..., risk and compliance (GRC) processes, solutions,... 
    Full time
    Temporary work
    Work experience placement
    Flexible hours
    Weekend work

    Cooley LLP

    San Francisco, CA
    5 days ago
  • $193.8k - $228k

    Senior GRC Analyst II job at Carta. San Francisco, CA. The Problems You'll Solve As a Senior GRC Analyst...  ...and accordingly establish and maintain governance and risk frameworks. You will build and run security compliance programs to measure and reduce risk, report compliance... 
    Full time

    Itlearn360

    San Francisco, CA
    1 day ago
  • $159k

     ...Business Operations / Strategy; Compliance / Risk / Quality Assurance  Job...  ...organization provides governance, oversight, and strategic direction...  ...analytics platforms (e.g., GRC, SAP, Power BI) to support...  ...and instruction to regulatory analysts in a work environment that... 
    Work experience placement
    Work at office
    Flexible hours

    PG&E Corporation

    Brisbane, CA
    2 days ago
  • $150k

    Crusoe Energy Systems LLC is looking for a GRC Analyst in San Francisco, CA to support their Governance, Risk, and Compliance program. The role includes managing user access reviews, supporting audits, and leveraging AI tools for process improvements. Ideal candidates... 

    Crusoe Energy Systems LLC

    San Francisco, CA
    4 days ago
  •  ...Senior Vice President, Legal and Chief Compliance Officer (CCO) About the Company Nationally recognized healthcare services...  ...-level role that directly impacts organizational strategy, governance, and risk posture. The successful candidate will be a trusted advisor... 

    Confidential

    San Francisco, CA
    2 days ago
  •  ...the update and maintenance of Lambda's IT Risk Register across the full risk lifecycle:...  ...regarding information security control maturity, compliance status, risks, performance and findings...  ...proficiency with at least one enterprise GRC or TPRM platform: AuditBoard, Vanta,... 
    Work at office
    Local area
    Work from home
    Flexible hours

    Lambda Corporation

    San Francisco, CA
    7 days ago
  • $100k - $140k

    Affirm is looking for a Compliance Analyst II in San Francisco to enhance its compliance governance program. This role involves reviewing internal compliance processes, investigating consumer complaints, and collaborating with cross-functional teams to ensure adherence... 
    Remote job

    Affirm

    San Francisco, CA
    4 days ago
  •  ...solutions is looking for a Security GRC Analyst Details: Security...  ...understanding of security controls and compliance Experience GRC in Risk Management (identify, assess,...  ...reporting to data security and access governance program Respond to and follow... 

    Nava Software Solutions

    San Francisco, CA
    5 days ago
  • $300k - $360k

    Ripple is seeking a Senior Director of Governance, Risk and Compliance in San Francisco. This leadership role involves defining the GRC strategy, leading a diverse team, and ensuring compliance with various regulations. Candidates should have over 15 years of experience... 

    Ripple

    San Francisco, CA
    2 days ago
  • $90k - $125k

     ...leading financial technology company in San Francisco is looking for a Payment Risk Operations Analyst to join their team. In this role, you will support payment processes ensuring compliance while managing complex cases and stakeholder relationships. Candidates should... 

    Adyen

    San Francisco, CA
    2 days ago
  • $130k - $160k

    Asana is hiring a Security Risk and Compliance Analyst in San Francisco. This role involves maturing Asana’s compliance programs across various security standards like SOC 2, ISO 27001, and FedRAMP. The successful candidate will support audits, enhance control frameworks... 

    Asana

    San Francisco, CA
    1 day ago
  • $90k

     ...Windsor; Winters; Woodland; Yuba City Compliance Data Analyst: Job Code 51607121 Department...  ...performance data practices that support governance execution, audit readiness, and...  ...Analyst administers the Power Generation Risk & Compliance Committee operating cadence... 
    Work experience placement
    Work at office
    Remote work
    Flexible hours

    PG&E Corporation

    Daly City, CA
    16 hours ago
  •  ...Director of Cybersecurity and Privacy Risk Advisor About the Company Prestigious...  ...advancement of its Information Security Governance and Risk functions. The successful...  ...controls, and leading the team to ensure compliance and continuous control monitoring. The Director... 
    Work experience placement

    Confidential

    San Francisco, CA
    5 days ago
  • $130k - $160k

     ...Role Overview As a Security Risk and Compliance Analyst you will play a hands-on role in maturing...  ...specifically across controls maturity, policy governance, and audit execution. This role sits at the intersection of traditional GRC work and compliance engineering: you... 
    Internship
    Work at office
    Local area
    Work from home
    Worldwide

    Asana

    San Francisco, CA
    5 days ago
  • $190k - $275k

     ...Role Join Decagon as a Compliance Manager and play a critical role...  ...processes to scale our GRC operations to hundreds of enterprise...  ...Establish vendor risk management programs to assess...  ...CCPA, GDPR, and emerging AI governance frameworks ~ Strong project... 
    Full time
    For contractors
    Work at office
    Local area

    Decagon

    San Francisco, CA
    1 day ago
  • $193k - $220k

     ...information security function, and this is a critical hire for the program's next phase of maturity. The Senior Manager, Governance Risk & Compliance (GRC) will report directly to the Chief Information Security Officer (CISO) and own the build-out of the firm's governance,... 
    Full time
    H1b
    Local area
    Immediate start
    Work visa

    Andersen Tax

    San Francisco, CA
    1 day ago
  • $190k - $215k

    Governance, Risk & Compliance (GRC) Manager Sigma is seeking an experienced GRC Manager to lead and scale our governance, risk, and compliance programs. This role is based in our San Francisco office or upcoming New York office and reports to the General Counsel. You'... 
    Full time
    Contract work
    Work at office
    Remote work
    Flexible hours

    Sigma Computing

    San Francisco, CA
    1 day ago
  •  ...of Blue Shield of California data. The Technology Risk and External Assurance program runs technology governance forums including the Artificial Intelligence (AI)...  ..., coordinated SOC 2 and PCI-DSS audit and compliance support, information security oversight including... 
    Work at office
    2 days per week

    Blue Shield of CA

    Oakland, CA
    2 days ago
  • $102.74k - $154.22k

     ...Information Security Risk & Governance Specialist, Senior The Technology and Data Trust Assurance Services team drives BSC technology...  ...providing consistent, coordinated SOC 2 and PCI-DSS audit and compliance support, information security oversight including NIST CSF maturity... 
    Full time
    Part time
    Work at office
    Local area
    Work from home
    Home office
    2 days per week

    Blue Shield Of California

    Oakland, CA
    3 days ago
  •  ...company based in San Francisco, CA is seeking Compliance Analyst to join their team! You will automate compliance workflows, close data governance gaps, and build monitoring dashboards...  ...experience Design and implement GRC workflows and automation pipelines Build... 
    Contract work

    OSI Engineering

    San Francisco, CA
    4 days ago
  • $300k - $360k

    Senior Director of Governance, Risk and Compliance As the Senior Director of GRC, you will define and lead Ripple's Governance, Risk & Compliance strategy. This is a high-impact leadership role at the nexus of security, regulatory compliance, and business strategy in one... 
    Full time
    Local area
    Worldwide
    Shift work

    Ripple

    San Francisco, CA
    2 days ago
  • $122k

     ...Requisition ID # 171705  Job Category: Compliance / Risk / Quality Assurance  Job Level: Individual Contributor Business Unit: Strategy & Growth Work Type: Hybrid Job Location: Oakland; Alameda; Alta; American Canyon; Angels Camp; Antioch; Auberry; Auburn... 
    Work at office
    Remote work
    Flexible hours

    PG&E Corporation

    Brisbane, CA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Analyst. Be the first to apply!