263 grc analyst jobs at 221 companies in United States

1w
Save
Mark Applied
Hide
GRC Analyst
San Mateo, California, United States
$160k-$170k/yr OnsiteFull Time
Fireworks AI
Fireworks AI: Private AI infrastructure serving developers and enterprises with model training and inference.
3+ YOERequires 3–5 years in GRC, IT audit, information security, or related work; security and privacy framework knowledge; GRC platform experience; access review and security awareness platform administration experience; cloud familiarity.
Adaptive Security, Anecdotes, Vanta, Drata, Secureframe, OneTrust, ServiceNow GRC, KnowBe4, Hoxhunt, Proofpoint, AWS, GCP, Azure, RBAC
3d
Save
Mark Applied
Hide
GRC Analyst
United States or Massachusetts or New York or California or Colorado
$70k-$88k/yr RemoteFull Time
Coretelligent
Coretelligent: Managed IT and cybersecurity services provider serving small, midsized, and highly regulated businesses across the United States.
3+ YOERequires 3+ years in GRC focused on IT or cybersecurity controls, or 3+ years in IT with a cybersecurity focus, plus analytical, organizational, communication, and project management skills.
1mo
Save
Mark Applied
Hide
GRC Analyst
San Francisco, California, United States
$95k-$150k/yr HybridFull Time
ZipHQ
ZipHQ: AI platform for enterprise procurement.
2+ YOEBachelor's degree,2+ years GRC or security risk/audit experience,knowledge of SOC/ISO/PCI/FedRAMP/WCAG frameworks,strong written and verbal communication.
SOC 1, SOC 2, ISO 27001, ISO 42001, PCI DSS, WCAG, FedRAMP
2w
Save
Mark Applied
Hide
GRC Analyst
Boston, Massachusetts, United States
$83k-$105k/yr HybridFull Time
American Tower
American TowerNYSE: AMT: Public U.S. REIT that owns, operates, and leases wireless towers, communications sites, and data centers to connectivity providers.
2+ YOERequires 2+ years in GRC or information security, strong project management and communication skills, Microsoft Office and Oracle proficiency, and knowledge of security standards and privacy regulations.
Microsoft Office, Oracle, ISO 27001, ISO 27002, ITIL, Identity and Access Management (IAM)
2w
Save
Mark Applied
Hide
GRC Analyst
United States
$75k-$80k/yr RemoteFull Time
Allied Benefit Systems
Allied Benefit Systems: Independent U.S. third-party administrator providing self-funded health-plan administration and care solutions to employers and members.
3+ YOEBachelor's degree or equivalent experience; 3+ years in governance, risk, and compliance; regulated-environment experience; HIPAA, HITECH, SOC 2, GRC platforms, and security frameworks knowledge.
Drata, NIST CSF, NIST SP 800 series, ISO/IEC 27000 series
1mo
Save
Mark Applied
Hide
GRC Analyst
New York, New York, United States
$200k-$270k/yr OnsiteFull Time
Fluidstack
Fluidstack: Building and operating civilization-scale data center infrastructure for AI.
Experienced in operating compliance controls and audits across SOC 2, ISO 27001, NIST 800-53 or FedRAMP; owning policy sets, evidence collection, and audit readiness on GRC platforms.
Vanta
2mo
Save
Mark Applied
Hide
GRC Analyst
United States
$134k-$202k/yr RemoteFull Time
Vercel
Vercel: Software providing developer infrastructure for teams building web applications and AI agents.
3+ YOE3+ years supporting audit lifecycle in cloud environments; manage ISO/SOC/HIPAA/PCI compliance, collaborate with engineering, strong project management and communication; familiarity with cloud and GRC tools.
Azure, AWS, Drata, Linear, Datadog
2mo
Save
Mark Applied
Hide
GRC Analyst
Clemmons, North Carolina, United States
OnsiteFull Time
Hayward Holdings
Hayward HoldingsNYSE: HAYW: Publicly traded global manufacturer of residential and commercial pool, outdoor-living, and industrial flow-control equipment.
3+ YOEBachelor's degree in Accounting, Information Systems, Cybersecurity or related; 3+ years SOX-focused GRC/audit experience; hands-on Varonis and SailPoint experience; strong ITGC/ICFR and audit evidence knowledge.
Varonis, SailPoint
1w
Save
Mark Applied
Hide
GRC Analyst
Lafayette or Louisiana
OnsiteFull Time
Acadian Companies
Acadian Companies: Employee-owned U.S. group providing medical transport, home healthcare, safety, security, training, and charter aviation.
2+ YOEBachelor’s degree or equivalent experience; 2–5 years in GRC, IT audit, or cybersecurity risk management; experience with NIST CSF, NIST SP 800-53, or ISO/IEC 27001; HIPAA preferred.
NIST Cybersecurity Framework (NIST CSF), NIST SP 800-53, ISO/IEC 27001, HIPAA, SOC 2, HITRUST, SBOMs
1mo
Save
Mark Applied
Hide
GRC Analyst
Dallas, Texas, United States
OnsiteFull Time
NorthMark Compute & Cloud
NorthMark Compute & Cloud: Private U.S. high-performance computing infrastructure provider serving businesses with HPC, cloud, AI, and simulation capacity.
4+ YOE4+ years GRC or information security governance experience; hands-on change management, risk assessment, policy management; familiarity with ISO 27001/SOC 2/NIST CSF; stakeholder engagement and strong written communication.
ServiceNow GRC, Vanta, Drata, Hyperproof, Archer, Jira, Confluence
3mo
Save
Mark Applied
Hide
Sr. GRC Analyst
United States
$95k-$105k/yr RemoteFull Time
Subsplash
Subsplash: Christian software providing churches and ministries with apps, websites, giving, streaming, and management tools.
3+ YOE3–5 years in GRC/Information Security or Audit; PCI DSS/NIST CSF; data governance (RoPA); IAM; SOX ITGCs; AI tooling for GRC.
Vanta, KnowBe4, Mimecast, PCI DSS
2w
Save
Mark Applied
Hide
Senior GRC Analyst
Pittsburgh, Pennsylvania, United States
$114k-$163k/yr OnsiteFull Time
Wolfe
Wolfe: Private Pittsburgh fintech providing personalized digital and physical gift cards to businesses and consumers.
7+ YOE7+ years in GRC, IT audit, or security compliance; 3+ years supporting PCI DSS in a Level 1 or equivalent payment environment; SOC 2, ITGC, third-party risk, and GRC platform experience.
PCI DSS, SOC 2, NIST CSF 2.0, Vanta, Drata, Secureframe, ServiceNow IRM, AuditBoard
2mo
Save
Mark Applied
Hide
Security GRC Analyst
San Francisco, California, United States
$116k-$160k/yr OnsiteFull Time
Salesforce
SalesforceNYSE: CRM: The #1 AI CRM driving customer success together.
2+ YOE2–4 years GRC/compliance/audit or information security experience; working knowledge of at least two of SOC 2, HIPAA, ISO 27001, or GxP; proficiency with GRC/audit tools and Microsoft Office or Google Workspace; strong communication skills.
SOC 2, HIPAA, ISO 27001, GxP, Microsoft Office Suite, Google Workspace, Drata, Vanta, OneTrust, ServiceNow GRC
3w
Save
Mark Applied
Hide
GRC Analyst I
Fitchburg or Madison
OnsiteFull Time
Sub-Zero Group, Inc.
Sub-Zero Group, Inc.: Family-owned luxury kitchen-appliance manufacturer serving high-end homes with refrigeration, cooking, and dishwashing products.
0+ YOEAssociate's or bachelor's degree in a related field and 0–3 years of GRC, risk, compliance, auditing, or related experience; strong analytical, organizational, and communication skills.
NIST CSF, NIST AI RMF, ISO 27001, ISO 31000, ISO 22301, CCPA/CPRA, GDPR, PCI DSS
2w
Save
Mark Applied
Hide
Senior GRC Analyst
Louisiana, United States
RemoteFull Time
Blue Cross and Blue Shield of Louisiana
Blue Cross and Blue Shield of Louisiana: Policyholder-owned nonprofit health insurer providing medical, dental, Medicare, prescription and life coverage to Louisianians.
4+ YOEBachelor's in IT, audit, or related field, or four years equivalent experience; 4 years specialized GRC experience; knowledge of cybersecurity, IT infrastructure, cloud technologies, or application development.
IT, NIST CSF, NIST 800-53, COBIT, HIPAA, SOC-2, SOC-1, AFRMR, CISA, CRISC, CGEIT, CISM, CISSP, CompTIA Sec+, CIA, CRMA, COSO/ERM, GIAC, ISC2, ISACA, Comp TIA
1mo
Save
Mark Applied
Hide
GRC Analyst II
Los Angeles or Chicago or Nashville or New York or Seattle
$100k-$135k/yr HybridFull Time
Metropolis Technologies
Metropolis Technologies: Building AI for the real world with a computer vision platform for checkout-free payment and mobility services.
3+ YOE3+ years in information security GRC or technology compliance; experience managing security awareness programs; knowledge of SOC 2 and PCI-DSS; familiarity with AI/data security and training platforms; bachelor\u0002s degree required.
SOC 2, PCI-DSS, automated employment decision tool (AEDT)
1mo
Save
Mark Applied
Hide
SAP GRC Analyst
Austin, Texas, United States
OnsiteFull Time
YETI
YETINew York Stock Exchange: YETI: Public American outdoor-products designer, retailer, and distributor serving outdoor enthusiasts and everyday consumers.
6+ YOE5+ years experience in SAP GRC and SAP security, SoD risk analysis, SOX compliance knowledge, GRC module administration, strong communication and independent multitasking skills.
SAP, S/4 HANA, BPC, BW, Fiori, PI/PO, SNC, Solution Manager, Account Request Management (ARM), Access Risk Analysis (ARA), Emergency Access Management (EAM), User Access Review (UAR)
1mo
Save
Mark Applied
Hide
Security GRC Analyst
United States
$70k-$77k/yr RemoteFull Time
Protective Life
Protective Life: Private U.S. insurer providing life insurance, annuities, retirement, asset-protection, and employee-benefit solutions to consumers and businesses.
1+ YOEExecute GRC functions including risk assessments, vendor risk, compliance, security awareness, reporting, and audit readiness; 1+ years GRC or risk experience; bachelor\u0002s degree in related field.
ServiceNow, Archer, Microsoft SharePoint, Microsoft Power BI, UpGuard, Azure, AWS
1mo
Save
Mark Applied
Hide
Cybersecurity GRC Analyst
Harrisburg or Hunker
$70k-$90k/yr OnsiteFull Time
Cleveland Brothers Equipment
Cleveland Brothers Equipment: Exclusive Caterpillar dealer serving Pennsylvania, West Virginia, and Maryland.
Bachelor's or equivalent experience in cybersecurity/IT, deep GRC knowledge, experience with security frameworks, policy development, audits, risk assessments, control tracking, and strong written/verbal communication.
NIST CSF, SOC 2, CIS
2w
Save
Mark Applied
Hide
GRC Analyst
Indianapolis, Indiana, United States
$74k/yr OnsiteFull Time
Information Services Agency
Information Services Agency: A local government providing public services and technology solutions to Indianapolis and Marion County.
2+ YOEBachelor's degree or equivalent experience; 2–3 years in governance, risk, and compliance; knowledge of control frameworks and security standards; analytical, communication, and teamwork skills.
CIS Benchmarks, NIST, CJIS, PCI, Microsoft Security suite, ServiceNow, COSO, COBIT