GRC Analyst, Operations & Risk
$100k - $140kWhoop, Inc
GRC Analyst, Operations & Risk
As a GRC Analyst, Operations & Risk, you will support the WHOOP Governance, Risk, and Compliance program by helping manage GRC intake, coordinate third-party risk activities, strengthen operational workflows, and improve visibility across risk and compliance work. This role will support vendor risk reviews, remediation follow-up, audit readiness, compliance operations, and cross-functional GRC requests in a fast-paced environment.
A key focus of this role will be helping ensure GRC work is reviewed, prioritized, routed, tracked, and completed effectively. You will use intake and ticketing data to identify workflow trends, recurring questions, handoff gaps, and opportunities to improve guidance, templates, reporting, automation, and stakeholder experience. You will also support broader GRC initiatives, including compliance calendar activities, control monitoring, process documentation, security awareness coordination, and continuous improvement across the GRC program.
Responsibilities:
- Support day-to-day GRC program operations, including intake management, request prioritization, workflow routing, ticket tracking, escalation management, and completion follow-up
- Perform and support third-party risk management activities, including vendor reviews, reassessments, partner coordination, remediation tracking, and cross-functional follow-up with Security, Legal, Privacy, Procurement, IT, Finance, and business owners
- Assist with risk management activities, including risk assessments, risk documentation, mitigation tracking, risk register hygiene, owner follow-up, and treatment plan coordination
- Support compliance monitoring and audit readiness activities, including evidence collection, preliminary reviews, control-owner coordination, remediation tracking, and compliance calendar activities
- Analyze intake data, workflow trends, recurring stakeholder questions, and handoff gaps to identify opportunities to improve guidance, templates, reporting, automation, SOPs, and cross-functional ways of working
- Coordinate security awareness and training activities, including completion tracking, evidence collection, employee follow-up, and support for annual or role-based training initiatives
- Help maintain visibility into GRC workload, priorities, ownership, service levels, operational metrics, and recurring process improvement opportunities
- Support continuous improvement across GRC tooling, intake forms, trackers, reporting, control monitoring, workflow design, and responsible automation initiatives
Qualifications:
- 2+ years of experience in GRC, third-party risk management, security compliance, IT audit, risk management, vendor management, or a related function
- Experience supporting third-party risk assessments, vendor security reviews, audit readiness, compliance operations, risk remediation tracking, or similar activities
- Strong operational discipline, including the ability to manage competing requests, track open items, follow up with stakeholders, and drive work to closure
- Strong written communication skills, with the ability to document clear status updates, risk summaries, follow-up requests, escalation notes, and process guidance
- Ability to coordinate effectively across cross-functional stakeholders, including Security, Legal, Privacy, Procurement, Engineering, IT, Finance, and business owners
- Familiarity with common security and compliance frameworks such as SOC 2, ISO 27001, NIST CSF, GDPR, PCI, or similar frameworks
- Comfort working in Jira, GRC platforms, ticketing systems, spreadsheets, workflow tools, dashboards, or operational reporting systems
- Ability to identify process gaps, navigate ambiguity, escalate appropriately, and turn unclear requests into actionable next steps
- Bachelor's degree in Information Security, Computer Science, Business, Risk Management, or a related field, or equivalent practical experience
- Relevant certifications such as Security+, CISA, CRISC, CISM, CISSP, ISO 27001, or GRC-related certifications are a plus, but not required
- Strong commitment to embracing and leveraging AI tools in day-to-day tasks, ensuring AI-assisted work aligns with the same high-quality standards as personal contributions.
This role is based in the WHOOP office located in Boston, MA. The successful candidate must be prepared to relocate if necessary to work out of the Boston, MA office.
Interested in the role, but don't meet every qualification? We encourage you to still apply! At WHOOP, we believe there is much more to a candidate than what is written on paper, and we value character as much as experience. As we continue to build a diverse and inclusive environment, we encourage anyone who is interested in this role to apply.
WHOOP is an Equal Opportunity Employer and participates in E-verify to determine employment eligibility
The WHOOP compensation philosophy is designed to attract, motivate, and retain exceptional talent by offering competitive base salaries, meaningful equity, and consistent pay practices that reflect our mission and core values.
At WHOOP, we view total compensation as the combination of base salary, equity, and benefits, with equity serving as a key differentiator that aligns our employees with the long-term success of the company and allows every member of our corporate team to own part of WHOOP and share in the company's long-term growth and success.
The U.S. base salary range for this full-time position is $100,000 - $140,000. Salary ranges are determined by role, level, and location. Within each range, individual pay is based on factors such as job-related skills, experience, performance, and relevant education or training.
In addition to the base salary, the successful candidate will also receive benefits and a generous equity package.
These ranges may be modified in the future to reflect evolving market conditions and organizational needs. While most offers will typically fall toward the starting point of the range, total compensation will depend on the candidate's specific qualifications, expertise, and alignment with the role's requirements.
- ...Information Security Governance, Risk and Compliance (GRC) Analyst The ideal candidate is a self-starter with a passion for building relationships... ...(2+) years of training or practical experience in IT Operations Two plus (2+) years of training or practical experience...OperationsRisk
- ...Title: GRC Analyst Location MassDOT, 10 Park Plaza, Boston, MA 02116 Duration... ...Information Security Governance, Risk and Compliance (GRC) Analyst The Massachusetts... ...training or practical experience in IT Operations Two plus (2+) years of training or...OperationsRiskFor contractorsWork at officeRemote workMonday to FridayFlexible hoursShift work
$60k - $90k
Whoop is searching for a GRC Analyst in Boston, MA, to enhance the Governance, Risk, and Compliance program. This role involves managing GRC intake processes,... ...party risk reviews, and ensuring effective compliance operations. The ideal candidate will have 2+ years in a...OperationsRisk$88k - $121k
About the Role Flagship's GRC program has matured from build to operate. We have a functioning GRC system of record in Jira, active compliance tracks across... ...— someone who is as comfortable running a vendor risk assessment in Jira as they are prepping evidence packages...OperationsRisk- ...Aqueduct Technologies is seeking a GRC Analyst to join our Governance, Risk, and Compliance (GRC) team. Reporting directly to the Director of GRC, this... ...Internal Support: Work closely with security operations, engineering, and account teams to align GRC initiatives...OperationsRiskLocal area
$95k - $110k
...is the global leader in third-party cyber risk intelligence, trusted by more than 3,000 organizations... ...recognition from customers and industry analysts alike. WHY BLACK KITE We’re a fast... ...place. THE OPPORTUNITY The Senior GRC Analyst reports to the Director of...RiskWorldwideFlexible hours$75 per hour
...We're looking for a hands-on ServiceNow GRC Analyst to join a growing Security organization... ...experience o Strong emphasis on manual, operational work (not a strategic or design-focused... ...of regulatory environments or risk frameworks is a plus • Prior experience...Risk- Northeastern University is hiring a Governance, Risk and Compliance Analyst in Boston. This hybrid role involves supporting compliance initiatives and NIST frameworks in government and higher education environments. The ideal candidate will have a Bachelor's degree, 2-4...Risk
- Synchrony Financial is seeking a detail-oriented Sr. Business Analyst to join its GRC Risk Management Systems team in Boston, Massachusetts. This... ...will have extensive experience in software development, operational risk management, and project management, demonstrating...Risk
- ...THE DEPARTMENT Our Enterprise Risk Management department is responsible for minimizing loss while respecting people, brand and operations. THE OPPORTUNITY With a special focus on merchandise security, our Risk Associate supports the Store team in delivering an...OperationsRisk
$97.5k - $141.5k
...Senior Risk Management Specialist Position Summary: The Senior Risk Management Specialist provides leadership in risk management... ...review and case learning committees. Facilitates committee operations as assigned. Demonstrates expertise in drafting reports for...OperationsRiskFixed term contractWork experience placementWork at officeLocal areaImmediate startFlexible hours3 days per week- ...Lead Risk Analyst, Payment fraud At Snaplii, risk management isn't a "brake" on growth-it's the "supercharger" that enables our 300... ...have). Previous experience as a Fraud Analyst, Risk Analyst, Operations Specialist, Data Scientist, or Product Manager. Bachelor's...OperationsRiskWork experience placementWork at officeRelocationRelocation package
$100k - $120k
...Senior Risk Specialist Focus Financial Partners is seeking a proactive and detail-oriented Senior Risk Operations Specialist to support and strengthen our organization's Cybersecurity... ...cybersecurity, policy development, or GRC (governance, risk, and compliance). ~...OperationsRisk- ...team of nearly 300 investment, finance, and operations professionals located in Boston, MA, and... ...with our partners, and generate superior risk-adjusted returns that secure Liberty's... ...future. #LMI The Position: The Sr. Analyst/Associate will join Liberty Mutual...OperationsRiskWork experience placementLocal area
- A property management company in Boston seeks a Risk Manager to oversee risk management and insurance policies across various operations. This position requires at least 3 years of experience in risk management or claim management, with a preferred degree in Business or...OperationsRisk
$90k - $115k
...Senior Risk Analyst The Washington Trust Company is seeking an experienced Senior Risk Analyst to support our fraud strategy and reporting... ...performance; coordinate changes with system owners and operations teams. Testing & validation : design test plans, execute...OperationsRiskWork at office- ...Chief Compliance Officer CCO needed for hedge fund for U.S. operations with minimum 2-3 years of experience. Some operational background... ...services. Job Responsibilities: Develop and uphold risk based written compliance programs pursuant to the Advisers Act...OperationsRisk
$65k - $90k
Enterprise Risk Management is looking to hire an Investor Services Risk Analyst to help drive our mission, strengthen and protect the firm and its clients by establishing... ..., monitoring, measurement, and mitigation of operational risks and will gain exposure to various...OperationsRiskWork experience placementLocal area- ...Senior Catastrophe Risk Analyst At Gallagher Re, we bring clarity to complexity by helping clients around the world make confident,... ...otherwise qualified person with a disability, unless the accommodation would impose an undue hardship on the operation of our business....OperationsRiskLive outWork at officeLocal areaFlexible hours
$18 - $20 per hour
Risk Management Analyst Department: Operations Employment Type: Full Time Location: Huntington YMCA Reporting To: Jeremy Stiles Compensation: $18.00 - $20.00 / hour Description Under the supervision of the Vice President of Risk Management, this position is responsible...OperationsRiskFull timePart timeInternshipWork at office$65k - $90k
...place to build a fulfilling career. Enterprise Risk Management are looking to hire an Investor Services Risk Analyst to drive our mission; to strengthen and protect... ..., monitoring, measurement, and mitigation of operational risks. This role will provide the right...OperationsRiskWork experience placementWork at officeLocal area$84k - $105k
...Job Description POSITION: Enterprise Risk Reporting Analyst Position Summary: At Cambridge... ...The Enterprise Risk Reporting Analyst operates within Enterprise Risk Management (ERM)... ...preferably with exposure to the Tableau, and GRC solution exposure, is a plus ·...OperationsRiskFull timeVisa sponsorshipWork visaFlexible hours$30 - $35 per hour
...Associate Risk Analyst Fidelity TalentSource is your destination for discovering your... ...Archer Governance, Risk and Compliance (GRC) system. The role will be responsible... ...Experience in financial services, operations, risk management, or compliance a plus...OperationsRiskHourly payTemporary workPart timeWork experience placement$180k - $200k
...Information Security Compliance & Risk | Hybrid, Boston, MA | $180,000–$200,000 + 20% Bonus | GRC • Risk • Audit • AI Governance... ...role overseeing a team of analysts and driving governance, audit readiness... ...across Security Engineering, Operations, Legal, Compliance, and Privacy...OperationsRiskTemporary work$100k - $140k
...and Middle Market Technology companies. Analyst/Associate will be a corporate finance professional... ...-specific, industry, and regulatory risks ~ Support the VPs in diligence calls... ...closing procedures including both operations and documentation ~ Support the communication...OperationsRiskWork experience placementWork at officeLocal areaRemote work- ...well as providing guidance on compliance issues and potential risks. The Head of Regulatory Affairs will be expected to collaborate... ...assessment, mitigation, and the development and maintenance of standard operating procedures and regulatory policies to ensure ongoing compliance...OperationsRisk
- We are seeking a highly motivated Risk Analyst to join a fast-paced and collaborative investment-focused organization. This role is ideal... ...a professional who thrives at the intersection of finance, operations, technology, and risk management. You will play a critical role...OperationsRiskContract work
- ...programs which involves developing strategies to mitigate compliance risks, monitoring regulatory changes, and fostering a culture of... ...to proactively address compliance issues across all operations. WHAT YOU'LL DO Compliance Program Development: Design...OperationsRiskLocal area
- ...that directly impacts organizational strategy, governance, and risk posture. The successful candidate will be a trusted advisor to... ...beyond policy to influence the company's national and multi-state operations in a highly regulated healthcare environment. Key...OperationsRisk
$94.2k
...with infrastructure architecture/engineering/operations, compliance, privacy, business teams and other areas necessary to identify risks to the business and drive solutions ranging... ...~ Governance Risk and Compliance (GRC) tool experience such as ARCHER ~ In-depth...OperationsRiskFor contractorsLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Analyst, Operations & Risk. Be the first to apply!
- transaction risk analyst Boston, MA
- operational risk consultant Boston, MA
- governance risk & compliance analyst Boston, MA
- it risk analyst Boston, MA
- risk compliance officer Boston, MA
- operational risk specialist Boston, MA
- risk analyst Boston, MA
- third party risk analyst Boston, MA
- senior quantitative risk analyst Boston, MA
- risk officer Boston, MA


