GRC Analyst
$65 - $85 per hourLHH US
Job Description
Job Description
Senior GRC Analyst - Security & Compliance
LHH Recruitment Solutions is partnering with a high-growth, cloud-native SaaS organization to identify a Senior GRC Analyst to support and scale their security and compliance function. This role offers a unique opportunity to take ownership of a growing governance, risk, and compliance program within an innovative technology environment. The organization is building advanced, cloud-based products on Azure, with security and trust at the core of its platform. The Senior GRC Analyst will play a critical role in developing and operationalizing compliance frameworks, driving audit readiness, and establishing scalable, repeatable processes. This is an ideal opportunity for a GRC professional who is motivated to build and mature a program, work cross-functionally with engineering teams, and gain strong visibility with leadership. Preferred Office Alignment: San Francisco, CA Employment Type: Contract (5+ months) Pay Rate: $65-$85/hr (DOE) Key Responsibilities- Own and manage the Information Security Management System (ISMS), including policies, control frameworks, risk registers, vendor management, and Statement of Applicability.
- Lead ISO 27001:2022 and SOC 2 Type II initiatives end-to-end, including readiness assessments, evidence collection, control testing, remediation tracking, and audit coordination.
- Support the development and implementation of an ISO 42001 (AI management system) program alongside existing compliance frameworks.
- Serve as the primary point of contact for external auditors, managing audit timelines, evidence requests, and engagement logistics (e.g., Stage 1/Stage 2 audits, SOC 2 Type II).
- Administer and optimize the organization's GRC platform (e.g., Vanta, Drata, OneTrust), including control mapping, automated evidence collection, and monitoring control effectiveness.
- Conduct risk assessments, vendor risk reviews, and support security initiatives such as penetration testing, vulnerability disclosures, and bug bounty programs.
- Partner closely with engineering and technical teams to translate regulatory and compliance requirements into practical, scalable controls within an Azure-based environment.
- Support customer trust initiatives, including completion of security questionnaires, RFP responses, and maintenance of trust center documentation.
- 4+ years of experience in GRC, information security compliance, or IT audit, including participation in at least one full certification or audit cycle.
- Demonstrated hands-on experience with ISO 27001 and SOC 2 frameworks, including evidence management, auditor interaction, and remediation efforts.
- Familiarity with cloud security controls, preferably within Microsoft Azure environments.
- Experience working with GRC platforms such as Vanta, Drata, OneTrust, or similar tools.
- Strong skills in risk assessment, control design, and written communication.
- Exposure to AI governance frameworks (e.g., ISO 42001, NIST AI RMF) and AI security standards (e.g., OWASP LLM Top 10, MITRE ATLAS).
- Knowledge of data privacy regulations such as GDPR, particularly in relation to employee data.
- Relevant certifications such as ISO 27001 Lead Implementer or Lead Auditor, CISA, CRISC, CISSP, or CCSK.
- Experience in early-stage or high-growth SaaS environments.
- The California Fair Chance Act
- Los Angeles City Fair Chance Ordinance
- Los Angeles County Fair Chance Ordinance for Employers
- San Francisco Fair Chance Ordinance
- The California Fair Chance Act
- Los Angeles City Fair Chance Ordinance
- Los Angeles County Fair Chance Ordinance for Employers
- San Francisco Fair Chance Ordinance
Vacancy posted 6 days ago
Similar jobs that could be interesting for youBased on the GRC Analyst in San Francisco, CA vacancy
$130k - $150k
...part of a high-performing team that believes in each other, come build with us at Crusoe. About This Role We’re seeking a GRC Analyst to support the day-to-day execution of our Governance, Risk, and Compliance program. Reporting to the Head of GRC, this role...SuggestedTemporary work$135k - $165k
...platform and customer relationships. As we continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance and risk management programs. Why Ivo? Every civilization runs on the same...SuggestedContract workFlexible hours$125k - $200k
...GRC Role at Simile Simile is changing the way consequential decisions in society are made. We have built the first AI simulation... ...mission. Manage Compliance & Audits: Act as a Customer Trust Analyst to address security-related inquiries. Track compliance status...SuggestedFlexible hours- Ivo is looking for a detail-oriented Governance, Risk & Compliance (GRC) Analyst in San Francisco. The ideal candidate will support compliance programs such as SOC 2 Type II and ISO 27001 while managing audits and risk assessments. This onsite role offers a competitive...Suggested
$150k
Crusoe Energy Systems LLC is looking for a GRC Analyst in San Francisco, CA to support their Governance, Risk, and Compliance program. The role includes managing user access reviews, supporting audits, and leveraging AI tools for process improvements. Ideal candidates will...Suggested$193.8k - $228k
Senior GRC Analyst II job at Carta. San Francisco, CA. The Problems You'll Solve As a Senior GRC Analyst II , you’ll work to assess regulatory requirements and accordingly establish and maintain governance and risk frameworks. You will build and run security compliance...Full time- Spectraforce Technologies is seeking a Database Analyst III in San Francisco, CA. This hands-on role focuses on automating compliance workflows... ...AI-driven automation. Key responsibilities include designing GRC workflows, building dashboards, and supporting data management....
- ...27001 and 27701, PCI-DSS, SOC, NIST CSF and other regulatory requirements Have a working proficiency with at least one enterprise GRC or TPRM platform: AuditBoard, Vanta, OneTrust, Whistic or equivalent Have familiarity with cloud security controls and compliance...Work at officeLocal areaWork from homeFlexible hours
- Ivo Inc. is seeking a GRC Analyst to support compliance and risk management initiatives in their San Francisco office. This is a crucial role designed to maintain Ivo's security compliance across multiple standards including SOC 2 Type II and ISO 27001. The successful candidate...Work at office
- ...NAVA Software solutions is looking for a Security GRC Analyst Details: Security GRC Analyst Location: San Francisco , CA - Hybrid Duration: 6 months CTH Qualifications: Analyst with 2+ years' experience and with good understanding...
$95k - $130k
Overview Security GRC Analyst job at LiveRamp. San Francisco, CA. LiveRamp is the data collaboration platform of choice for the world's most innovative companies. A groundbreaking leader in consumer privacy, data ethics, and foundational identity, LiveRamp is setting the...Work at officeRemote workWork from homeFlexible hoursNight shift$95k - $130k
LiveRamp is seeking a Security GRC Analyst in San Francisco to support security risk management, compliance, and reporting efforts. You will collaborate closely with various teams to address and mitigate risks while maintaining high compliance standards. The ideal candidate...Remote job$93.8k - $116.3k
Job Description Job Description Company Description Sia is a next-generation, global management consulting group. Founded in 1999, we were born digital. Today our strategy and management capabilities are augmented by data science, enhanced by creativity and driven...Work at officeRemote workWorldwideVisa sponsorshipWork visaFlexible hours3 days per week- The Goldman Sachs Group is seeking an Associate for their Global Compliance team in San Francisco. This role involves monitoring compliance, assessing financial products for suitability, and advising on regulations. Ideal candidates will possess a Bachelor's degree and ...
$100k - $140k
Affirm is looking for a Compliance Analyst II in San Francisco to enhance its compliance governance program. This role involves reviewing internal compliance processes, investigating consumer complaints, and collaborating with cross-functional teams to ensure adherence...Remote job- A leading global management consultancy is seeking a Consultant specializing in technology and fintech to join their San Francisco office. In this client-facing role, you will lead engagements that deliver impactful solutions across risk, compliance, and operations. The...Work at office
$84k - $105k
At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle, Paze, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services...Hourly payWork at officeImmediate startVisa sponsorshipWork visaFlexible hours$120 per hour
Job Description Job Description About the job Mercor connects elite creative and technical talent with leading AI research labs. Headquartered in San Francisco, our investors include Benchmark , General Catalyst , Peter Thiel , Adam D'Angelo , Larry Summers...Remote jobContract workSummer workWork at office$74.8k - $112.2k
Job Description Job Description About Figure Figure (NASDAQ: FIGR) is transforming capital markets through blockchain. We're proving that blockchain isn't just theory - it's powering real products used by hundreds of thousands of consumers and institutions. By...Remote workVisa sponsorshipWork visa$120 per hour
Job Description Job Description About the job Mercor connects elite creative and technical talent with leading AI research labs. Headquartered in San Francisco, our investors include Benchmark , General Catalyst , Peter Thiel , Adam D'Angelo , Larry Summers...Remote jobContract workSummer workWork at office$198k - $320k
...'s tools are deployed securely and responsibly across critical sectors. About the role We are looking for an AI emerging risks analyst to help us understand potential harms and misuse of AI at the frontier in a time of rapid, sustained change. From known threat actors...$132k - $178k
...Enterprise Risk Analyst Denver, CO or Long Beach, CA or Washington, DC or SF Bay Area Space is a warfighting domain. True Anomaly... ...status tracking using tools such as Jira, Confluence, enterprise GRC platforms, and MS Project. Assist with audit readiness activities...Permanent employmentContract workWork at office$97k - $132k
...Third Party Risk Analyst At Anaplan, we are a team of innovators focused on optimizing business decision-making through our leading AI-infused scenario planning and analysis platform so our customers can outpace their competition and the market. What unites Anaplanners...$80k - $90k
Private Risk Advisor The USI Insurance Services Personal Risk Practice provides comprehensive risk management and insurance consultation to high net worth individuals and family offices with complex financial and insurance needs. The Private Risk Advisor is an outside...Work at officeLocal area$139.8k - $297.9k
Strategic Risk Advisor As a global leader in insurance broking and risk management, Marsh helps clients succeed by defining, designing, and delivering innovative, industry-specific solutions to effectively manage risk. Marsh is searching for an experienced Strategic...Minimum wageFor contractorsWork at officeLocal areaRemote workFlexible hours3 days per week1 day per week$90k - $125k
...CDD Risk Analyst, Reviews San Francisco This is Adyen Adyen provides payments, data, and financial products in a single solution for customers like Meta, Uber, H&M, and Microsoft - making us the financial technology platform of choice. At Adyen, everything we...Work at officeLocal area$288k - $425k
...partnerships, ensuring OpenAI's tools are deployed securely and responsibly across critical sectors. About the Role As an Agentic Risk Analyst, you will shape OpenAI's operating picture for current agentic risk across products and platforms. You will bring a strategic,...Shift work$30 - $38 per hour
...evaluations of AI tools and platforms used by children, teens, and educators, working directly under the supervision of a Risk Assessment Analyst. This is a hands-on, execution-focused role centered on research support, systematic testing, data analysis, and report drafting...Hourly payFull timeLocal areaWorldwide$136.5k - $204.6k
Job Description Job Description About Figure Figure (NASDAQ: FIGR) is transforming capital markets through blockchain. We're proving that blockchain isn't just theory - it's powering real products used by hundreds of thousands of consumers and institutions. By...Remote workVisa sponsorshipWork visa$100k - $150k
Compliance Manager At Secureframe, we are at the forefront of revolutionizing cybersecurity compliance. Recognized as one of the industry's most innovative and trusted providers, Secureframe has consistently received accolades for our advanced technology solutions and...Work at officeWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Analyst. Be the first to apply!
Related searches


