Staff Security Analyst – GRC

🕒 September 21

🇺🇸 United States – Remote

💵 $150k - $164k / year

⏰ Full Time

🔴 Lead

🔐 Security Analyst

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Harness

Harness

501 - 1000 employees

Founded 2016

☁️ SaaS

🔒 Cybersecurity

Software • SaaS • Cybersecurity

Harness is an AI-native software delivery platform that empowers engineering and DevOps teams to achieve high levels of engineering excellence. It offers innovative DevOps tools such as Continuous Delivery and GitOps, Continuous Integration, Feature Management and Experimentation, Infrastructure as Code Management, and Chaos Engineering. The platform is designed to enhance software delivery through automation and insights, improving developer productivity and experience. Harness integrates security in the delivery pipeline to ensure the integrity of the software supply chain and optimizes cloud spend with its cloud cost management tools. Additionally, Harness AI assists with various aspects of software delivery, leveraging automation to simplify tasks and improve efficiency. Harness's solutions help businesses modernize their DevOps processes, secure software delivery, and optimize cloud expenditures.

📋 Description

• Advise, build, and operate security and compliance programs at scale within the GRC team and Information Security organization • Lead security efforts to acquire and maintain commercial compliance certifications while assisting with Federal initiatives • Design solutions that support Harness security goals and collaborate with business and engineering teams • Design, implement, and continuously monitor compliance controls for SOC 1, SOC 2, ISO 27001, PCI-DSS, and HIPAA • Develop automation to scale compliance tasks, automate control testing, integrate continuous compliance checks into CI/CD pipelines, and streamline reporting • Contribute to Federal compliance initiatives involving FedRAMP Moderate+, CMMC, DoD IL, and FedRAMP 20x • Review customer contracts for security and privacy requirements • Complete customer security questionnaires and maintain the customer trust portal • Provide guidance for security and privacy by design across engineering, product, and business initiatives • Manage relationships with suppliers, auditors, assessors, and enterprise prospects • Identify, track, and mitigate compliance project risks • Monitor supply chain security and manage vendor risk • Explain Harness security capabilities and controls to enterprise customers and regulatory auditors

🎯 Requirements

• Minimum of 8–10 years of relevant industry experience in security, compliance, and GRC program management • Extensive exposure to commercial industry regulations, frameworks, and compliance certifications, including ISO 27001, SOC 1, SOC 2, PCI-DSS, and HIPAA • Experience with GRC tools • Ability to build automation for security and compliance controls in a cloud-native environment using AWS, GCP, or Azure • Working knowledge or exposure to Federal compliance frameworks such as NIST 800-53, FedRAMP, and CMMC • Strong cybersecurity acumen • Technical proficiency with enterprise SaaS applications and infrastructure • Project management and organizational skills • Clear written and verbal communication skills • Ability to partner with technical engineering teams and non-technical stakeholders • Hands-on experience building, delivering, or managing a FedRAMP-compliant service offering or achieving an ATO is a bonus • Familiarity with Platform One, Iron Bank, CMMC, or DoD IL is a bonus • Relevant security or technical certifications such as ISO 27001 Lead Implementer/Auditor, PCI QSA, CISA, CISSP, PMP, AWS/GCP Professional, or FedRAMP-specific credentials are a bonus • Experience assessing and utilizing AI in a secure environment is a bonus • Exposure to Kubernetes, SBOMs, SLSA, and/or DLP is a bonus

🏖️ Benefits

• Competitive salary • Comprehensive healthcare benefits • Flexible Spending Account (FSA) • Flexible work schedule • Employee Assistance Program (EAP) • Flexible Time Off and Parental Leave • Monthly, quarterly, and annual social and team building events • Monthly internet reimbursement • Equity may be included in the compensation package

Apply Now

Similar Jobs

🕒 September 14

ISACA

201 - 500

🔒 Cybersecurity

📚 Education

🤝 B2B

Principal Research Analyst leading ISACA’s information security research, frameworks, and practitioner content. Representing the global technology association through thought leadership, events, and member guidance.

🇺🇸 United States – Remote

💵 $113.5k - $170.3k / year

⏰ Full Time

🔴 Lead

🔐 Security Analyst

🕒 August 18

Sysco

10,000+ employees

📦 Logistics

🏥 Healthcare

🏨 Hospitality

SOC Analyst III protecting Sysco’s foodservice distribution network from cyber threats. Analyzing alerts, correlating events, and managing incidents through resolution.

🇺🇸 United States – Remote

⏰ Full Time

🟠 Senior

🔴 Lead

🔐 Security Analyst

🦅 H1B Visa Sponsor

infoinfo

🕒 August 12

Alkami Technology

501 - 1000

💼 Consulting

📣 Marketing

🏦 Banking

Staff Security Analyst strengthening threat detection and incident response for Alkami’s digital banking platform. Leading forensic investigations, security automation, and enterprise security operations maturity.

🇺🇸 United States – Remote

💵 $123.2k - $154k / year

💰 $300M Post-IPO Debt - Alkami Technology on 2025-03

⏰ Full Time

🔴 Lead

🔐 Security Analyst

🕒 July 26

General Dynamics Information Technology

10,000+ employees

💼 Consulting

🏥 Healthcare

📦 Logistics

Principal Information Security Analyst supporting GDIT’s Indian Health Service cybersecurity mission. Assessing systems, implementing controls, and managing federal security compliance.

🇺🇸 United States – Remote

💵 $110.5k - $149.5k / year

⏰ Full Time

🔴 Lead

🔐 Security Analyst

🦅 H1B Visa Sponsor

infoinfo

🕒 July 3

LTS

1001 - 5000

🏥 Healthcare

💼 Consulting

📦 Logistics

Cyber Security Analyst supporting the Department of Veterans Affairs health portfolio and managing cybersecurity efforts across multiple projects. Ensuring system security certification and coordination of security activities.

🇺🇸 United States – Remote

💵 $80k - $92.5k / year

⏰ Full Time

🟠 Senior

🔴 Lead

🔐 Security Analyst

🦅 H1B Visa Sponsor

infoinfo