Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Analyst

$95k - $150k

ZIP

About Zip Zip is the AI platform for enterprise procurement — built for humans and agents working together. By orchestrating procurement across teams, tools, and suppliers with the help of AI agents, companies can secure the resources they need to innovate faster than ever before. The world’s most influential enterprises trust Zip, including T-Mobile, OpenAI, AMD, Mars, Dollar Tree, and more. Together they’ve saved over $8 billion and processed over $500 billion in spend. Zip’s team includes product leaders from Apple, Airbnb, and Meta, as well as former procurement leaders from United Health, Sanofi, MGM Resorts, Discover, and NASA. Backed by Adams Street, Alkeon, BOND, CRV, DST, Tiger Global, and Y Combinator, Zip has raised $371 million, most recently at a $2.2 billion valuation and has been recognized by Forbes Fintech 50, Fast Company's Most Innovative Companies, Inc. Best in Business, and LinkedIn Top Startups. Your Role The Security & Compliance team at Zip is committed to providing a high level of security assurance to customers, aligning security goals with business objectives and customer requirements. As a GRC Analyst at Zip, you’ll be a key driver for ensuring the success of compliance programs at a fast-growing company. Your contributions will be pivotal to the overall growth and competitive edge of Zip’s GRC program. You’ll ensure we can securely and compliantly build new features, help design and scale the compliance programs that power our expansion. You’ll help maintain our existing SOC and ISO certifications while supporting new certifications, from AI products to entry into new markets like the EU and highly-regulated industries. Responsibilities Drive and perform periodic compliance-related activities, such as user access reviews, internal audits, and vendor risk assessments Lead conversations and curate responses for customers’ security, compliance, and governance teams in due diligence and security questionnaires Guide internal control owners and stakeholders to understand requirements, take accountability, and operationalize their controls. Collaborate with internal stakeholders and external auditors to support third party audits including SOC 1, SOC 2, and ISO 27001 Develop, maintain, and lead the adoption of security policies, standards, and guidelines to ensure compliance with applicable regulatory requirements Required Qualifications Bachelor’s degree in a related field 2+ years of experience in GRC, information security consulting, cybersecurity risk, audits, or similar roles Strong written and verbal communication skills with both technical and non-technical stakeholders Familiarity with and participation in one or more of the following frameworks: SOC 1, SOC 2, ISO 27001, ISO 42001, PCI DSS, WCAG, FedRAMP Familiarity with information security fundamentals for cloud software systems Preferred Qualifications Professional certifications in information security are a plus but not required The salary range for this role is $95,000 - $150,000. The salary for this position is determined based on a variety of job-related factors that may include location, relevant experience, education, or particular skills and expertise. Perks & Benefits At Zip, we’re committed to providing our employees with everything they need to do their best work. Start-up equity 100% health, vision & dental coverage options Catered breakfast, lunch, & dinner Flexible PTO ClassPass membership Monthly commuter benefit Team building events & happy hours Home office stipend Phone/internet reimbursement Paid parental leave Fertility stipend 401k plan Unlimited AI token usage We are committed to building a diverse and inclusive workspace where everyone (regardless of age, religion, ethnicity, gender, sexual orientation, and more) feels like they belong. #J-18808-Ljbffr

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the GRC Analyst in San Francisco, CA vacancy
  • $134k - $202k

     ...our customers, growing our community, or shaping our story, you’ll help define what comes next.About the role:We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance... 
    Suggested
    Work at office
    Remote work
    Work from home
    Worldwide
    Monday to Friday
    Flexible hours

    Vercel

    San Francisco, CA
    1 day ago
  •  ...raised our Series B and have grown 800% over the last 12 months. The Opportunity Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This role will play a key part in maintaining... 
    Suggested
    Contract work
    Work at office
    Visa sponsorship
    Relocation package
    Flexible hours

    Ivo AI Inc

    San Francisco, CA
    5 days ago
  • $135k - $165k

     ...platform and customer relationships. As we continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and risk management programs. Role Overview Ivo is seeking a detail-oriented and... 
    Suggested
    Contract work
    Flexible hours

    Icehouseventures

    San Francisco, CA
    4 days ago
  • $135k - $165k

    Icehouseventures is seeking a proactive GRC Analyst to join our team in San Francisco. This role will support compliance and risk management initiatives essential for maintaining high security standards. The ideal candidate will have 3-5 years of experience in GRC and relevant... 
    Suggested
    Contract work

    Icehouseventures

    San Francisco, CA
    4 days ago
  • $218k - $269k

     ...7001, NIST 800‑53, and FedRAMP Moderate equivalency: continuous evidence collection, control monitoring, and audit readiness held on GRC platforms (Vanta) and the tooling we build in‑house. Own the policy and procedure set: draft, maintain, and run the review cycle so... 
    Suggested
    Local area

    Fluidstack

    San Francisco, CA
    2 days ago
  • $183k - $205k

     ...security governance, risk and compliance initiatives. This person will guide the company from foundational Governance, Risk & Compliance (GRC) maturity through to steady-state operations, leveraging AI to automate and improve old practices and tools, ensuring ongoing... 
    Full time
    Work at office
    Local area
    2 days per week
    3 days per week

    gusto

    San Francisco, CA
    14 days ago
  • Fluidstack is seeking a Security Compliance Lead in San Francisco to own end-to-end controls across SOC 2 Type II, ISO 27001, NIST 800-53, and FedRAMP, building a scalable program for global sites. You will collaborate with engineering and operations to gather evidence,...

    Fluidstack

    San Francisco, CA
    2 days ago
  • Vercel in San Francisco is seeking a GRC Analyst to join our Governance, Risk & Compliance team. You will manage and maintain ongoing compliance with security and privacy frameworks, policies, and audits including ISO 27001, SOC 2, HIPAA, and PCI DSS. You will collaborate... 
    Remote job
    Work at office

    Webhosting

    San Francisco, CA
    2 days ago
  • Zip is hiring a GRC Analyst to drive compliance programs across SOC 1, SOC 2, ISO 27001, and expanding into the EU and regulated industries. You’ll partner with internal teams and external auditors to maintain certifications and enable secure product development. In this... 

    Zip

    San Francisco, CA
    1 day ago
  • Vercel in San Francisco is seeking a GRC Analyst to join the Governance, Risk & Compliance team. You will manage ongoing compliance with security and privacy frameworks (ISO 27001, SOC 2, HIPAA, PCI DSS) and collaborate across the organization to uphold ethical practices... 
    Remote job

    Visa Hunt

    San Francisco, CA
    4 days ago
  • Perplexity is seeking a Governance, Risk & Compliance Analyst to shape and run our compliance and risk management program. You will lead the implementation of frameworks, oversee data privacy regulations, and build scalable audit systems in a fast‑growing startup environment... 

    Apply

    San Francisco, CA
    4 days ago
  • $123.7k - $254.67k

     ...process here.Pinterest’s Security team (Pinfosec) is seeking an IC14 Security Engineer - Security Governance, Risk & Compliance (GRC Senior Analyst) to support and strengthen our security governance and assurance programs. This role is ideal for someone who is detail-... 
    Interim role
    Work at office
    Local area
    Relocation
    Relocation package

    Pinterest

    San Francisco, CA
    3 days ago
  • Discord is seeking a Security Analyst to lead and scale its Security GRC program. You will own the day-to-day workflows—from questionnaires to risk tracking—partnering with Security, Engineering, IT, and Legal to make compliance friction-free. The role emphasizes automation... 

    Discord

    San Francisco, CA
    4 days ago
  • $96.3k - $145.2k

    ## Security GRC AnalystApplyremote type: Office Tech-Flexiblelocations: California - San Franciscotime type: Full timeposted on: Posted...  ...Experience The Security GRC (Governance, Risk, and Compliance) Analyst role is part of our Security and Compliance team, sitting at the... 
    Work at office

    Salesforce

    San Francisco, CA
    3 days ago
  • Pinterest is seeking an IC14 Security Engineer - GRC Senior Analyst to strengthen security governance and assurance programs. You will drive risk management, policy governance, control testing, and audit support in a fast-growing environment. You will partner across Security... 

    Pinterest

    San Francisco, CA
    1 day ago
  • Salesforce, Inc. is seeking a Security GRC Analyst to lead the Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP. The role partners with control owners and external auditors to ensure continuous compliance and audit readiness. The ideal candidate has 2-4 years... 

    Salesforce

    San Francisco, CA
    3 days ago
  • Salesforce is seeking a Security GRC Analyst to own the Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP. You will coordinate internal evidence collection, manage control owners, and serve as the main liaison with external auditors to ensure audit readiness... 

    Salesforce

    San Francisco, CA
    2 days ago
  • Who Are We?Taking care of our customers, our communities and each other. That’s the Travelers Promise. By honoring this commitment, we have maintained our reputation as one of the best property casualty insurers in the industry for over 170 years. Join us to discover a ...
    Full time
    Local area
    Long distance
    Night shift

    The Travelers Indemnity Company

    San Francisco, CA
    20 hours ago
  • $190k - $210k

    Olema Oncology is a clinical-stage biopharmaceutical company committed to transforming the standard of care and improving outcomes for patients living with breast cancer and beyond. It’s an exciting time to be part of Team Olema, with our transformation into a fully integrated...
    Work at office
    Flexible hours
    2 days per week

    Olema Oncology

    San Francisco, CA
    2 days ago
  • $132.6k - $195k

     ..., merchants, and drivers.About the RoleThe Global Governance, Risk, and Compliance (GRC) team is looking for a technical, security-focused Third-Party Risk Management (TPRM) Sr. Analyst. If you are comfortable and have experience working in a fast-paced environment, taking... 
    Hourly pay
    Contract work
    Work at office
    Local area
    Remote work
    Flexible hours

    Doordash

    San Francisco, CA
    3 days ago
  • The California Public Utilities Commission is seeking an Analyst I to support enterprise risk management, risk and compliance, and division operations under the Program and Project Supervisor. The role involves research, analysis, report preparation, and workflow development... 

    California Public Utilities Commission

    San Francisco, CA
    3 days ago
  • $265k - $285k

    Reference: 630009Posted: 2026-08-11Location: Brisbane, CaliforniaCompany: Planet Pharma GroupContact: ApplicationsEmail: ****@*****.*** include: Provides regulatory leadership in support of the development, registration, and life-cycle management...

    Planet Pharma

    Brisbane, CA
    20 hours ago
  • $160k - $260k

     ...Banking from an advisory perspective.What will you do?Review research notes / reports submitted to the Control Room by Supervisory Analysts for review and approval of content against the Watch / Restricted ListsRestricted List: daily updating and monitoring of the... 
    Full time
    Work at office
    Flexible hours
    Weekend work

    Royal Bank of Canada

    San Francisco, CA
    15 hours ago
  • $153k - $245k

    Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figma’s platform helps teams bring ideas to life—whether you're brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea...
    Minimum wage
    Full time
    Local area
    Remote work
    Flexible hours

    Figma

    San Francisco, CA
    1 day ago
  • $218.06k - $327.09k

    Job DescriptionThe Senior Director, Oncology Cell and Gene Therapy Regulatory Affairs, leads the development and implementation of the global regulatory strategy for CGT products of high complexity and visibility and may serve as Franchise GRL on complex programs with multiple...
    Hourly pay
    Full time
    Temporary work
    Worldwide
    Flexible hours
    3 days per week

    AstraZeneca

    San Francisco, CA
    2 days ago
  • $127k - $165k

    Career-defining. Life-changing. At iRhythm, you’ll have the opportunity to grow your skills and your career while impacting the lives of people around the world. iRhythm is shaping a future where everyone, everywhere can access the best possible cardiac health solutions...
    Full time
    Remote work

    iRhythm Technologies

    San Francisco, CA
    2 days ago
  •  ...well as the ability to coordinate across multiple cross-functional teams, including Legal, People Operations, Finance, Contracts, and GRC.What You'll DoCompliance Program Management Own our public sector compliance program — audits, FAR reps & certs, SAM.gov... 
    Contract work
    For contractors
    For subcontractor
    Work at office
    Local area

    Peregrine Technologies

    San Francisco, CA
    20 hours ago
  •  ...experience in regulatory compliance, business banking, or commercial cardFamiliarity with vendor management, SOC1, SOC2, risk management and GRC processes and toolsExperience designing and overseeing compliance processesDynamic multi-tasker who can juggle multiple priorities... 
    Flexible hours

    Parafin

    San Francisco, CA
    1 day ago
  • $77k - $202k

    Industry/SectorNot ApplicableSpecialismCybersecurity & PrivacyManagement LevelSenior AssociateJob Description & SummaryThe OpportunityAs a Security Risk & Engineering - Tech and Cyber Risk & Compliance - Senior Associate, you will focus on maintaining regulatory compliance...
    Full time
    H1b

    PwC

    San Francisco, CA
    2 days ago
  • Job Overview: We are seeking an experienced and highly motivated Regulatory Manager to join our Regulatory Affairs team. In this role, you will be responsible for developing and executing regulatory strategies to ensure compliance and successful product approvals. You...
    Contract work
    Work at office

    Cedent Consulting

    San Francisco, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!