Security Governance Risk & Compliance Analyst I

🔥 0 minutes ago

🇺🇸 United States – Remote

💵 $49.7k - $73.1k / year

⏰ Full Time

🟢 Junior

🟡 Mid-level

🚔 Compliance

🦅 H1B Visa Sponsor

info
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Commerce

Commerce

1001 - 5000 employees

🛍️ eCommerce

🤖 Artificial Intelligence

🤝 B2B

eCommerce • Artificial Intelligence • B2B

Commerce is a company that provides flexible, AI-driven solutions designed for next-generation commerce. It connects various tools and systems to drive growth and unlock data potential for businesses. With a focus on delivering seamless, personalized experiences at scale, Commerce supports businesses through tailored solutions and end-to-end services. Its platform includes offerings like BigCommerce, Feedonomics, and Makeswift, aimed at enabling innovation, optimizing data, and creating customizable digital experiences.

📋 Description

• Support third-party risk assessments by reviewing vendor security questionnaires, documentation, and due diligence materials • Maintain and update the vendor risk register and track remediation activities to closure • Assist with internal control testing and evidence collection for SOC 2, ISO 27001, PCI-DSS, and other compliance frameworks • Help coordinate audit requests and liaise with internal stakeholders to gather required documentation • Monitor policy and procedure documentation and flag items due for review or update • Assist in tracking risk exceptions and escalate items requiring senior review • Support reporting and metrics preparation for leadership and committee-level reviews • Contribute to process improvement initiatives as the program scales

🎯 Requirements

• 0–2 years of experience in GRC, risk operations, compliance, or a related function; internships count • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Business, or a related field; equivalent work experience also considered • Genuine interest in GRC engineering and willingness to learn quickly in a fast-paced environment • Hands-on familiarity with Claude Code or similar AI coding tools, with ability to consider cybersecurity or GRC applications • Strong written and verbal communication skills for cross-functional and external vendor work • High attention to detail and comfort working with documentation, spreadsheets, and tracking tools • Proficiency in Microsoft Office or Google Workspace • Coursework or certification in cybersecurity or risk management is nice to have, including Security+ or CISA • Exposure to SOC 2, ISO 27001, NIST, or PCI-DSS is nice to have • Experience in an operations or process-driven role is nice to have

🏖️ Benefits

• Variable compensation such as bonus or commission may be available where applicable • Equity may be available where applicable • Benefits in accordance with local policies • Inclusive and accessible hiring experience • Accommodation or adjustments during recruitment if needed

Apply Now

Similar Jobs

🔥 3 hours ago

LMI

1001 - 5000

📦 Logistics

🏥 Healthcare

🎖️ Defense

Section 508 specialist ensuring accessible training products for the Department of Veterans Affairs. Testing documents, multimedia, PDFs, and e-learning content throughout curriculum development.

🕒 2 days ago

EXALTA Group

1001 - 5000

🏥 Healthcare

💼 Consulting

🎖️ Defense

Regulatory Specialist guiding global medical-device submissions, labeling, and quality-system compliance. Supporting product teams, audits, corrective actions, and regulatory agency relationships.

🕒 2 days ago

Auto Approve

201 - 500

🚘 Automotive

💼 Consulting

📦 Logistics

Compliance Analyst auditing auto-finance processes for Auto Approve, a fintech company helping customers save on vehicle loans. Documenting controls, testing compliance, and recommending improvements.

🕒 3 days ago

Cushman & Wakefield

10,000+ employees

💼 Consulting

🏥 Healthcare

🏗️ Construction

Contracts & Compliance Administrator managing vendor contracts, payments, risk, and performance for Cushman & Wakefield’s real estate services operations. Overseeing approximately 100 active service vendors remotely across the United States.

🕒 3 days ago

SmithRx

51 - 200

💼 Consulting

🛡️ Insurance

🏥 Healthcare

Compliance Analyst supporting corrective actions and regulatory programs at SmithRx, a health-tech company disrupting pharmacy benefit management. Mitigating PBM risks across healthcare operations.

🇺🇸 United States – Remote

💵 $89.3k - $126k / year

💰 $20M Series B on 2022-03

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance