Senior Analyst, GRC
recruit22 · Illinois, United States · 2 wk ago
RemoteRemoteOTHRFull-time
Location: Remote
About the role
Our client is a rapidly growing organization seeking a detail-oriented and proactive Senior Analyst, Governance, Risk & Compliance (GRC) to support and strengthen its compliance, risk management, and security governance programs. This individual will play a key role in ensuring the organization remains audit-ready, compliant with industry standards, and aligned with evolving security and privacy requirements. This position offers the opportunity to work cross-functionally with Technology, Engineering, Legal, and Business teams while helping shape and mature governance and compliance processes in a fast-paced environment.
Responsibilities
- Conduct third-party vendor and emerging technology risk assessments, including tracking remediation efforts to completion.
- Support ongoing compliance initiatives, including evidence collection and maintenance for regulatory and industry requirements.
- Maintain audit readiness by organizing documentation and supporting internal and external audits.
- Document and monitor security controls, ensuring effectiveness and compliance.
- Assist with the development and maintenance of policies, standards, procedures, and security baselines.
- Track and manage policy exceptions and remediation activities.
- Maintain the enterprise risk register and support risk reporting activities.
- Partner with stakeholders across IT, Security, Engineering, and Legal to drive compliance and risk management initiatives.
- Support continuous improvement efforts within governance, risk, and compliance programs.
Qualifications
- 3+ years of experience in Governance, Risk & Compliance (GRC), IT Audit, Information Security, Compliance, or a related field.
- Working knowledge of one or more security and compliance frameworks, such as:
- PCI DSS
- NIST
- SOC 2
- ISO 27001
- Experience working with GRC platforms such as Hyperproof, Archer, OneTrust, or similar solutions.
- Strong documentation, organizational, and analytical skills.
- Ability to manage multiple initiatives simultaneously while maintaining attention to detail.
- Excellent written and verbal communication skills.
- Experience working with cross-functional teams and driving projects to completion.
Preferred Experience
- Third-Party Risk Management (TPRM)
- Security control assessments
- Audit support and evidence management
- Privacy and regulatory compliance programs
- Risk register management
- AI governance and technology risk assessments
What Success Looks Like
- Demonstrates strong ownership and accountability.
- Consistently drives initiatives through completion without extensive oversight.
- Identifies risks, gaps, and opportunities for improvement proactively.
- Builds strong partnerships across departments.
- Maintains a high standard of accuracy and quality in documentation and reporting.
Pay
$140,000 - $180,000 + Bonus
Benefits
- Comprehensive medical, dental, and vision coverage
- Generous paid time off
- Paid parental leave
- Employee wellness and assistance programs
- Career growth and professional development opportunities
- Collaborative and mission-driven work environment