We are seeking a Senior GRC Analyst to lead governance, risk, and compliance activities across the organization. The ideal candidate will help strengthen our security posture by managing risk assessments, policy development, control testing, and compliance programs aligned with frameworks such as ISO 27001, NIST.
In this role, you will partner with security, engineering, legal, audit, and business teams to identify risks, track remediation plans, and ensure effective internal controls. You will support audits, maintain evidence repositories, monitor compliance obligations, and prepare reports for leadership and stakeholders. You will also review and improve policies, standards, and procedures to support a scalable and risk-based security program.
The successful candidate will have 5+ years of experience in GRC, information security, risk management, or compliance, along with strong knowledge of audit processes and regulatory requirements. Excellent communication, analytical thinking, and project management skills are essential. Experience with GRC tools and relevant certifications such as CISA, CISM or ISO 27001 Lead Auditor are preferred.
This role is ideal for someone who is detail-oriented, collaborative, and passionate about building strong governance and compliance practices.