Senior GRC Analyst
Location: Remote
Compensation: Salary
Reviewed: Tue, Sep 22, 2026
This job expires in: 30 days
Job Summary
To support the security program, the full-time Senior GRC Analyst will develop, maintain, and assess an integrated security and privacy management framework while managing compliance with industry standards and leading risk assessments, all in a remote capacity for candidates in the Central or Eastern time zones of the US or Canada.
Key Responsibilities
- Develop and implement security policies, standards, and procedures while promoting a culture of security and compliance across the organization
- Manage internal and external audits for certifications such as ISO 27001 and SOC 2 Type II, ensuring compliance and tracking remediation efforts
- Oversee the third-party security assurance program, conducting risk assessments and managing identified issues with suppliers
Required Qualifications
- 7+ years of experience in a GRC, IT Audit, Security Assurance, or Information Security role
- Bachelor's Degree in a relevant field or equivalent work experience
- Professional certifications such as CIPP/E, CIPP/US, CISA, CISM, or CISSP are highly desirable
- Direct experience in highly regulated industries, such as financial services or healthcare
- Deep knowledge of security and privacy frameworks (e.g., ISO 27001, SOC 2 Type II) and global privacy regulations (e.g., GDPR, HIPAA)
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 39,143 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee