New York City or Chicago or Austin or Dallas or Denver or Miami or San Francisco or Seattle
$270k-$290k/yrHybridFull Time
DriveWealth: Provides API-based brokerage infrastructure for fractional stock trading.
15+ YOE15+ years in information security/GRC in regulated financial services; deep SEC/FINRA and global privacy knowledge; hands-on GRC, audit, TPRM, incident response, and executive/board reporting; relevant certifications preferred.
Thrive: Provides managed IT, cybersecurity, and cloud services for organizations.
2+ YOE2+ years conducting security and compliance assessments; client-facing consulting experience; knowledge of NIST 800-171/CMMC, SOC 2, ISO 27001; ability to manage multiple clients, perform gap analyses, and support audit preparation.
Sr. GRC (Governance, Risk, and Compliance) Analyst
Tampa, Florida, United States
HybridFull Time
Bloomin' BrandsNASDAQ: BLMN: Operates a portfolio of casual and fine dining restaurant brands.
6+ YOEBachelor's degree required; 6+ years in information security, risk management, and IT auditing; knowledge of PCI DSS, SOX, SOC1/2, ITGC, ISO2700x; strong communication and project management skills; security certs preferred.
Risk Consulting - Risk Technology - Oracle GRC - Manager (New York, NY, US, 10001-8604)
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or North Carolina or Philadelphia or Portland or San Francisco or Seattle or Tampa
$150k-$260k/yrHybridFull Time
EY: Global firm providing audit, tax, and professional consulting services.
5+ YOEBachelor's or master's degree with ~5 years related experience; Oracle security/controls and controls testing experience; strong project management, client service, leadership, communication, analytical skills; valid US driver’s license and passport; willing to travel.
Mitsubishi UFJ Financial GroupNew York Stock Exchange: MUFG: Global financial group providing diverse banking and investment services.
4+ YOEMinimum 4-7 years in risk management, information security, and IT with cloud security expertise; strong regulatory knowledge; certifications such as CISA, CRISC, CISM, CISSP; bachelor’s degree in IT or information security.
Cloud Platforms, Identity and Access Management, Security Testing Tools, Configuration and Compliance Tools
Avalon Healthcare Solutions: Manages diagnostic laboratory testing for healthcare payers and providers.
3+ YOEJuris Doctor and 3+ years attorney experience, 3+ years healthcare compliance experience, expert knowledge of HIPAA, GRC and risk assessment experience, strong writing and critical thinking skills.
InComm Payments: Provider of global prepaid products and payment technology solutions.
2+ YOE2+ years assisting with audit planning, execution and reporting; knowledge of COSO, SOX, COBIT, NIST, PCI and GRC; bachelor’s in accounting/finance; CPA, CISA or CIA preferred or in-progress; experience with AuditBoard.
Senior Analyst, IT Internal Controls & SOX Compliance
San Francisco or Salt Lake City or Phoenix or Los Angeles or Chicago or Boston or Austin or New York City or Miami or Tampa or Atlanta or Columbus or Boise or San Diego or Minneapolis or Houston or Raleigh or Nashville or Kansas City or Charlotte or Portland or Philadelphia or Dallas or Washington D.C. or Seattle
$113k-$148k/yrRemoteFull Time
CircleNYSE: CRCL: Digital currency issuer and blockchain financial infrastructure provider.
4+ YOE4+ years Big 4 IT audit/controls experience, Bachelor's in related field, CPA/CISA/CIA/CISSP required; strong SOX/ITGC knowledge, cloud/SaaS/SDLC/IAM experience, ERP/GRC familiarity, and stakeholder communication skills.
Slack, Apple MacOS, Google Workspace, ERP, GRC, AI
Chicago or Tampa or Charlotte or Atlanta or Austin or Washington or Dallas or Los Angeles or Boston or Florham Park or New York City or San Francisco or San Jose or Philadelphia or Houston
$77k-$202k/yrOnsiteFull Time
PwC: Providing audit, tax, and management consulting services to businesses.
2+ YOEBachelor's degree and at least 2 years delivering SAP compliance, security, and governance solutions (GRC); proficiency with SAP GRC and SAP BW/4HANA; strong communication and analytical skills.
SAP Governance, Risk and Compliance (GRC), SAP BW/4HANA, SAP
State of Florida: Providing state government services and administrative public programs.
Lead enterprise GRC across cybersecurity, data management, and program oversight; supervise a small team; develop maturity models, metrics, and executive reporting; bachelor’s degree required; preferred GRC certifications; background check and ability to travel.
FISNYSE: FIS: Provides technology solutions for merchants, banks, and capital markets
5+ YOE5+ years in risk management, audit, compliance or governance; experience with issue/finding lifecycle, GRC platforms (Archer), reporting tools, stakeholder management, and process improvement.
NubankNYSE: NU: Digital financial platform offering banking, credit, and investment services.
15+ YOE15+ years in information security with executive CISO experience, US financial regulatory expertise (OCC), crypto and AI security knowledge, GRC transformation and strong executive communication.
Chicago or Denver or Phoenix or Chandler or Arizona or Colorado or District of Columbia or Illinois or Maryland or Texas or Virginia or California or Florida or Massachusetts or New York or Oregon or Washington or Wisconsin or United States
$171k-$214k/yrHybridFull Time
Caribou: Connects car owners with lenders to refinance auto loans.
Owner of security and IT programs with proven SOC 2 Type II delivery, SIEM/EDR incident response, GRC controls, SaaS and identity management, vendor management, and people leadership.
Fort Lauderdale or Atlanta or Kansas City or Springfield or Charlotte or Pittsburgh or Dallas or Houston
OnsiteFull Time
Forvis Mazars: Provides audit, tax, and consulting services to global businesses.
5+ YOEPCI QSA credential, bachelor’s in cybersecurity/MIS/CS or similar, 5+ years in cybersecurity/IT audit/GRC, experience with PCI DSS and federal cyber frameworks, CISSP/CISA/CISM preferred.
Bayview Asset Management: Investment management firm specializing in credit and mortgage assets.
5+ YOEBachelor's degree,5+ years in IT operational/technology risk or related GRC/audit roles; strong knowledge of information security, privacy, business continuity, risk assessments, KRIs, and stakeholder management.
Sydney or Hobart or California or Maryland or Massachusetts or Illinois or Oregon or Washington or Colorado or Texas or Florida or Pennsylvania or Louisiana or Missouri or District of Columbia
RemoteFull Time
UpGuard: AI-powered platform for managing cyber risk and security.
5+ YOE5+ years in B2B SaaS implementations or professional services, experience with enterprise deployments (5,000+ employees), GRC desirable, strong consultative skills, API/integration expertise, and PSA tool experience.