Senior GRC Analyst

🕒 il y a 1 mois

🇺🇸 États-Unis – Télétravail

💵 $130 000 - $160 000 / an

⏰ Temps Plein

🟠 Senior

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Benepass

Benepass

11 - 50 employés

👥 RH Tech

💸 Finance

🧘 Bien-être

💰 €12 000 000 Series A en 2021-09

HR Tech • Finance • Wellness

Benepass est une plateforme flexible d'avantages pour les employés, conçue pour les entreprises qui placent l'expérience employé en priorité. Elle offre des programmes d'avantages personnalisables, adaptés pour répondre aux besoins diversifiés de la main-d'œuvre mondiale actuelle, incluant des comptes de dépenses liés au mode de vie, des avantages en matière de bien-être et des incitations au développement professionnel. En consolidant les programmes avantages fiscaux et divers sur une seule plateforme, Benepass simplifie la gestion des avantages et augmente l'engagement des employés. Leur plateforme offre une gamme d'options de dépenses par le biais de cartes physiques et virtuelles, accompagnée de métriques en temps réel et de fonctionnalités de conformité automatisées, facilitant une administration simplifiée et une satisfaction accrue des employés.

Description

• Maintain and improve information security policies, standards, procedures, control documentation, and related governance materials. • Help map policies and controls to frameworks such as SOC 2, ISO 27001/27002, HITRUST, NIST CSF 2.0, and other customer, regulatory, or security requirements. • Support policy exceptions, risk acceptances, remediation tracking, control owner follow-ups, and recurring governance workflows. • Support SOC 2, ISO 27001, and HITRUST readiness, audit preparation, evidence collection, auditor coordination, and audit response management. • Maintain recurring evidence-gathering and control testing workflows, helping ensure controls operate consistently across the business. • Track audit findings, control gaps, remediation plans, owners, due dates, and closure evidence. • Support risk assessments, control gap assessments, internal reviews, and maintenance of the risk register. • Translate technical and security risks into clear business language, including mitigations, ownership, timelines, and residual risk. • Own or support customer security questionnaires, RFP security sections, due diligence requests, and trust or compliance documentation. • Maintain reusable questionnaire content, approved responses, compliance artifacts, and customer-facing assurance materials. • Support employee security awareness programs and create clear internal guidance for policies, controls, and compliance responsibilities. • Support vendor security reviews, third-party risk assessments, remediation tracking, risk acceptance documentation, and vendor compliance evidence. • Use GRC platforms such as Vanta, Drata, Thoropass, Secureframe, or similar tools to improve evidence collection, control monitoring, task tracking, reporting, and repeatable compliance operations.

🎯 Exigences

• 5+ years of experience in GRC, information security compliance, IT audit, risk management, security assurance, or a closely related field. • Hands-on experience supporting SOC 2 audits and readiness activities. • Working knowledge of ISO 27001/27002, HITRUST, NIST CSF, or similar security and compliance frameworks. • Experience maintaining security policies, controls, control narratives, evidence repositories, and audit documentation. • Experience supporting internal or external audits, including evidence collection, auditor coordination, control owner follow-up, and remediation tracking. • Strong written communication skills, with the ability to produce clear policies, questionnaire responses, process documentation, and stakeholder updates. • Excellent attention to detail and project management discipline. • Experience responding to customer security questionnaires, RFP security sections, or due diligence requests. • Familiarity with GRC, compliance automation, or audit management tools. • Experience in SaaS, fintech, benefits, healthcare, or other regulated environments. • Comfort working in a startup or fast-moving environment where processes need to be mature enough to scale without creating unnecessary friction. • Ability to work with both technical and non-technical teams and communicate security and compliance expectations clearly.

🏖️ Avantages

• 95% coverage of medical, dental, and vision • $250 WFH setup (one time) • $500/year Learning & Development Benefit • $150/month cell phone + internet • $100/month Wellness • $100/month Co-working and Commuter Benefit • Flexible PTO

Postuler Maintenant

Emplois Similaires

🕒 il y a 1 mois

Vanta

201 - 500

📋 Conformité

🔐 Sécurité

☁️ SaaS

Manager of GRC Subject Matter Experts leading framework lifecycle at Vanta. Overseeing team of experts responsible for compliance frameworks and ensuring product alignment with security standards.

🇺🇸 États-Unis – Télétravail

💵 $230 000 - $311 000 / an

💰 €40 000 000 Series B en 2022-10

⏰ Temps Plein

🟠 Senior

🔴 Expert

🚔 Conformité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Axiom

11 - 50

GRC Specialist working remotely to support client governance, risk management, and CMMC compliance. Focused on scoping, documentation, and client interactions for compliance standards.

🇺🇸 États-Unis – Télétravail

💵 $70 000 - $95 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

🚔 Conformité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Spellbook

11 - 50

🤖 Intelligence artificielle

☁️ SaaS

Compliance Analyst overseeing Spellbook's US compliance programs in regulated sectors like government and healthcare. Building and implementing compliance frameworks while collaborating across teams and managing audits.

🇺🇸 États-Unis – Télétravail

💵 $144 000 - $180 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Brello Health

51 - 200

💊 Pharmaceutique

👥 B2C

🧘 Bien-être

Compliance Analyst ensuring marketing compliance for FDA-regulated compounded drugs. Reviews marketing materials, conducts audits, and promotes ethical marketing practices.

🇺🇸 États-Unis – Télétravail

💵 €70 000 - €80 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Unchained

51 - 200

💸 Finance

₿ Crypto

🔐 Sécurité

US Regulatory Manager at Unchained ensuring compliance with U.S. financial services regulations. Involves collaboration across departments for effective risk management and policy implementation.

🗣️🇺🇸🇬🇧 Anglais requis