146 senior grc analyst jobs at 122 companies in United States

3w
Save
Mark Applied
Hide
Senior GRC Analyst
Atlanta or United States
$110k-$120k/yr RemoteFull Time
PrizePicks
PrizePicks: Operates a daily fantasy sports and player prediction platform.
5+ YOE5+ years GRC/InfoSec/IT audit experience; experience with SOC 2, ISO 27001, PCI-DSS, NIST, GDPR; audit coordination, TPRM, policy management, GRC tooling experience, strong communication and project management.
Vanta, Drata, Archer, OneTrust, ServiceNow GRC
2mo
Save
Mark Applied
Hide
Senior GRC Analyst
United States or Canada
$130k-$160k/yr RemoteFull Time
Benepass
Benepass: Platform for distributing and managing flexible employee benefits.
5+ YOE5+ years in GRC, information security, IT audit or risk management; hands-on SOC 2, ISO 27001/HITRUST; policy, evidence & audit readiness; strong communication.
Vanta, Drata, Thoropass, Secureframe
2w
Save
Mark Applied
Hide
Senior GRC Analyst
New York City, New York, United States
$115k-$145k/yr RemoteFull Time
Compyl
Compyl: A provider of a platform to help companies understand and manage risk, security, and compliance.
5+ YOE5+ years GRC experience with audits, risk assessments, and policy/control rollouts; familiarity with SOC 2/ISO 27001/HIPAA/PCI-DSS/NIST; strong consultative communication and judgment.
1mo
Save
Mark Applied
Hide
Senior GRC Analyst
Westerville, Ohio, United States
OnsiteFull Time
Kokosing
Kokosing: Provides heavy civil, industrial, and marine construction services.
5+ YOE5+ years GRC/cybersecurity experience; knowledge of CMMC and NIST 800-171; strong risk management, policy and vendor risk experience; ability to influence stakeholders and support audits and data governance.
CMMC, NIST 800-171
1mo
Save
Mark Applied
Hide
Senior GRC Analyst, HIPAA
United States or San Francisco
$133k-$195k/yr OnsiteFull Time
DoorDash
DoorDashNASDAQ: DASH: On-demand delivery platform connecting consumers with local merchants.
6+ YOE6+ years in security compliance/GRC with 3+ years implementing HIPAA programs in technology or regulated environments; strong HIPAA Security Rule knowledge, multi-framework experience, technical fluency with cloud/IAM/CI/CD, and stakeholder communication skills.
HITRUST, SOC 2, ISO 27001, NIST 800-53, PCI DSS, GDPR, CCPA, IAM, CI/CD, infrastructure-as-code, GRC tooling
2mo
Save
Mark Applied
Hide
Sr. GRC Analyst
United States
$95k-$105k/yr RemoteFull Time
Subsplash
Subsplash: Software platform providing engagement and giving tools for churches.
3+ YOE3–5 years in GRC/Information Security or Audit; PCI DSS/NIST CSF; data governance (RoPA); IAM; SOX ITGCs; AI tooling for GRC.
Vanta, KnowBe4, Mimecast, PCI DSS
1mo
Save
Mark Applied
Hide
Senior IT GRC Analyst
Hillsboro or Irvine or Phoenix or Tacoma or Utah or San Diego or Denver or Liberty Lake or Los Angeles or Las Vegas or Seattle
$80k-$165k/yr OnsiteFull Time
Columbia Bank
Columbia BankNASDAQ: COLB: Commercial and consumer banking services in the Western United States.
7+ YOE7+ years in information security/IT audit/operations; ServiceNow IRM/GRC experience; knowledge of NIST, FFIEC, CIS, ITIL, COBIT; familiarity with PCI DSS, GLBA, HIPAA; bachelor’s preferred.
ServiceNow IRM/GRC, NIST CSF, FFIEC, CIS, ITIL, COBIT, ISO 27002, NIST 800, PCI DSS, GLBA, HIPAA, Cybersecurity Assessment Tool (CAT)
2w
Save
Mark Applied
Hide
Senior GRC Analyst
Boston, Massachusetts, United States
$130k-$170k/yr OnsiteFull Time
WHOOP
WHOOP: Wearable technology for personalized health and performance tracking.
6+ YOE6+ years in cybersecurity or enterprise risk; experience conducting structured cyber/IT risk assessments, maintaining risk registers, familiarity with security frameworks and AI risk; strong communication and analysis skills.
NIST CSF, ISO 27001, PCI DSS, GDPR, HIPAA, NIST AI RMF, ISO/IEC 42001, FAIR
2mo
Save
Mark Applied
Hide
Senior GRC Analyst
Palo Alto, California, United States
$120k-$145k/yr OnsiteFull Time
Workato
Workato: Enterprise platform for automating business workflows and integrating applications.
8+ YOE8+ years in cybersecurity, audits, risk management, or compliance; hands-on FedRAMP experience; cloud security controls; strong communication; eligibility for federal programs.
AWS GovCloud, Azure Government, Google Cloud, NIST 800-53, FedRAMP, PCI-DSS, SOC 2, ISO 27001, 27701
1w
Save
Mark Applied
Hide
Senior IT GRC Analyst
United States
RemoteFull Time
CMG Financial
CMG Financial: Provides residential mortgage loans and home financing services.
5+ YOEBachelor's or equivalent, 5+ years IT audit/compliance/GRC experience, SOC 2 management, knowledge of NIST CSF/ISO 27001/SOX and financial regulations (GLBA, CFPB, NYDFS), strong policy writing and communication; CISA/CRISC/GRCP preferred.
NIST CSF, ISO 27001, SOX
1mo
Save
Mark Applied
Hide
Senior GRC Analyst, Privacy
Calgary or Vancouver or Spain or Switzerland or United Kingdom or United States
HybridFull Time
Benevity
Benevity: Provides enterprise software for corporate social responsibility programs.
5+ YOE5+ years privacy/GRC experience in SaaS or tech; deep knowledge of GDPR, UK-GDPR, CPRA/CCPA, PIPEDA, CASL; hands-on ROPA, DSAR, DPIA, DPA review; experience with OneTrust or Hyperproof; CIPP/CIPM/CISM/C RISC certifications valued.
OneTrust Privacy module, Hyperproof
5d
Save
Mark Applied
Hide
SAP GRC Analyst
Austin, Texas, United States
OnsiteFull Time
YETI
YETINYSE: YETI: Sells premium outdoor gear, coolers, and drinkware.
6+ YOE5+ years experience in SAP GRC and SAP security, SoD risk analysis, SOX compliance knowledge, GRC module administration, strong communication and independent multitasking skills.
SAP, S/4 HANA, BPC, BW, Fiori, PI/PO, SNC, Solution Manager, Account Request Management (ARM), Access Risk Analysis (ARA), Emergency Access Management (EAM), User Access Review (UAR)
2w
Save
Mark Applied
Hide
Senior Security GRC Analyst
San Mateo, California, United States
$224k-$272k/yr HybridFull Time
Roblox
RobloxNYSE: RBLX: Platform for creating and playing user-generated 3D digital experiences.
4+ YOE4+ years GRC experience, risk assessment and policy development, ability to work with engineers, knowledge of compliance frameworks and security controls.
Factor Analysis of Information Risk (FAIR), Roblox Studio
2mo
Save
Mark Applied
Hide
Senior GRC Analyst, Hybrid TX
Fort Worth, Texas, United States
HybridFull Time
Amynta
Amynta: Provides specialty insurance, warranty programs, and underwriting management services.
4+ YOE4–7 years in information security, governance, risk and compliance; Bachelor's in Information Systems or related field; strong communication; willing to work in Fort Worth, TX; certifications preferred.
NIST, ISO 27001, PCI-DSS, SOC 2 Type II
2mo
Save
Mark Applied
Hide
Senior GRC Engineering Analyst
United States
$76k-$134k/yr RemoteFull Time
Deltek
DeltekNYSE: ROP: Software and information solutions for project-based businesses.
3+ YOE3+ years in GRC engineering/cloud security/compliance or related fields, Bachelor\u0002s in a related field or equivalent experience, experience with AWS/Azure/OCI, knowledge of security frameworks and cloud controls, certification(s) preferred, US citizenship required.
AWS, Azure, OCI, CI/CD, infrastructure-as-code, SIEM, FedRAMP, NIST 800-53, CMMC, ISO 27001, PCI DSS, SOC 1, SOC 2, CSA CCM, CIS Benchmarks, Costpoint GCCM
2mo
Save
Mark Applied
Hide
Global Cybersecurity Senior GRC Analyst (Denver, PA, US, 17517)
Denver, Pennsylvania, United States
OnsiteFull Time
UGI Corporation
UGI CorporationNYSE: UGI: Distributes and markets natural gas, propane, and electric power.
4+ YOESenior GRC role focusing on governance, risk, and compliance across global cybersecurity program; strong regulatory and framework experience.
RSA Archer, ServiceNow GRC
1mo
Save
Mark Applied
Hide
GRC SECURITY ANALYST
Reno or United States
$114k-$139k/yr RemoteFull Time
Clear Capital
Clear Capital: AI-driven real estate valuation and property data solutions.
3+ YOE5+ years GRC/risk/compliance experience with Bachelor’s (or 3+ years with Master’s) or equivalent; deep knowledge of NIST, ISO, SOC 2, GLBA/CCPA/GDPR; relevant certifications (CISSP, CISM, CISA, CRISC, AIGP); familiarity with Vanta, Drata, OneTrust, cloud and DevOps; strong analytics and communication.
NIST CSF, NIST RMF, ISO 27001, ISO 27002, ISO 42001, SOC 2, GLBA, CCPA, GDPR, Vanta, Drata, OneTrust, DevOps, cloud computing
1w
Save
Mark Applied
Hide
Sr Security (GRC) Analyst
Wichita or Atlanta
HybridFull Time
Koch Inc.
Koch Inc.: Operates global manufacturing, refining, and industrial technology businesses.
Experience in cybersecurity/GRC, risk assessments, security frameworks, policy development, audit/assurance, vendor risk, and translating technical risk for leadership.
ZenGRC, OneTrust, NIST CSF, ISO 27001
1d
Save
Mark Applied
Hide
Governance, Risk & Compliance (GRC) Analyst
Bethesda, Maryland, United States
$80k-$100k/yr RemoteFull Time
SkyePoint Decisions
SkyePoint Decisions: Provider of cybersecurity, infrastructure, and IT development services.
5+ YOEBachelor's degree and 5+ years cybersecurity GRC experience supporting Federal programs; knowledge of NIST frameworks, FISMA, risk assessments, audit prep, U.S. citizenship and ability to obtain Public Trust required.
ServiceNow GRC, Archer, eMASS, Xacta
1mo
Save
Mark Applied
Hide
Senior GRC Risk Analyst
Carmel or Eagan
$105k-$130k/yr OnsiteFull Time
MISO
MISO: Manages the high-voltage electricity grid and wholesale energy markets.
5+ YOEBachelor's degree in a related field, 5+ years cybersecurity risk management experience, vendor risk assessment expertise, knowledge of NIST frameworks, and relevant certifications (CRISC/CISSP/CISA/CISM) preferred.
NIST Cybersecurity Framework (CSF), NIST 800-37, NIST 800-53