Senior GRC Analyst

🔥 58 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Compyl

Compyl

51 - 200 employees

Founded 2020

☁️ SaaS

📋 Compliance

🔒 Cybersecurity

SaaS • Compliance • Cybersecurity

Compyl is a cloud-based Governance, Risk, and Compliance (GRC) platform that helps organizations automate compliance, risk management, audits, and third-party vendor assessments. The platform provides a single control library mapped to multiple frameworks, evidence automation (Evidence Studio), policy and contract management, asset and access reviews, and vendor risk workflows. Compyl emphasizes integrations (125+ connectors), industry-tailored control mappings (financial services, healthcare, insurance, energy, higher education, etc. ), and AI features including Compyl AI agents and a Copilot for querying GRC data. It positions itself as an enterprise SaaS solution built by CISOs to make GRC adaptive and connected rather than a set of point tools.

📋 Description

• Serve as a hands-on GRC advisor for a portfolio of customers, guiding them through risk assessments, risk registers, audit preparation, and control rollouts. • Help customers prepare for and navigate audits (SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, and similar frameworks), translating requirements into practical next steps. • Advise on policy development and control design tailored to each customer's risk profile and maturity level. • Spot GRC complexity early — recognizing when a customer's question touches on risk, compliance, or audit nuance that needs more than a standard playbook answer. • Partner closely with Support and Customer Success to own the escalations that require real GRC expertise, not just product knowledge. • Turn recurring customer questions into scalable guidance — playbooks, internal knowledge base content, and best-practice frameworks the whole team can use. • Act as the voice of the customer internally, flagging where our platform could better support real-world GRC workflows.

🎯 Requirements

• 5+ years of experience as a GRC analyst, consultant, or coordinator — in-house, at a consulting firm, or in a similar capacity. • Direct, hands-on experience with audits, risk assessments and risk registers, and policy rollouts — you've been in the room, not just read about it. • Working familiarity with common frameworks (SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, or similar). • An instinct for GRC complexity: you can tell when something is more nuanced than it first appears, and you know how to break it down for someone who's stuck. • Strong consultative communication skills — you can explain a compliance concept to a nontechnical stakeholder without losing the substance. • A genuine interest in helping customers solve problems, not just closing tickets. • Nice to Have: Certifications such as CISA, CRISC, CGRC, or ISO 27001 Lead Implementer/Auditor. Experience working directly with a GRC software platform (as a practitioner, implementer, or vendor-side consultant). Exposure to multiple industries or company sizes, giving you a broader sense of how GRC programs vary in practice.

🏖️ Benefits

• Competitive salary and meaningful equity participation at a Series A inflection point. • Comprehensive paid benefits, including health insurance, 401(k), and generous leave policies.

Apply Now

Similar Jobs

🔥 2 hours ago

Spellbook

51 - 200

⚖️ Legal

☁️ SaaS

🤖 Artificial Intelligence

Compliance Analyst focused on operationalizing compliance programs for Spellbook. Managing frameworks and collaborating across teams to ensure regulatory adherence.

🔥 2 hours ago

Gravie

201 - 500

🏥 Healthcare

🛡️ Insurance

🤝 B2B

Operational Compliance Manager position at Gravie, ensuring compliance in health plan operations. Focus on regulatory alignment, training, and compliance monitoring in high-risk areas.

🇺🇸 United States – Remote

💵 $100k - $134k / year

💰 $150M Private Equity Round - Gravie on 2025-05

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🔥 2 hours ago

Health Gorilla

51 - 200

🏥 Healthcare

🔌 API

🤝 B2B

Compliance Analyst at Health Gorilla ensuring adherence to healthcare regulations and compliance measures. Conducting monitoring, investigations, and compliance reporting related to data governance and interoperability.

🔥 2 hours ago

3E

501 - 1000

📋 Compliance

☁️ SaaS

🤝 B2B

Regulatory Solutions Advisor at 3E helping clients navigate complex environmental regulations and deliver scalable solutions. Partnering with sales and utilizing AI capabilities for compliance and safety.

🗣️🇫🇷 French Required

🔥 2 hours ago

OCCU | Oregon Community Credit Union

501 - 1000

🛡️ Insurance

💼 Consulting

🏦 Banking

Regulatory Compliance Analyst supporting compliance management at Oregon Community Credit Union. Focused on regulatory research, monitoring, and risk management in financial services.