Similar Jobs
See allSenior InfoSec GRC Analyst
Camunda
Global
ISO 27001
SOC 2
GRC
GRC Security Analyst
Clear Capital
US
GRC
ISO 27001
Risk Assessment
Sr. Lead Information Security Governance, Risk, and Compliance (GRC) Analyst
USAP
US
Information Security
GRC
Risk Assessment
Compliance Manager
10a Labs
US
Compliance
SOC 2
GDPR
Staff Security Engineer
Mozilla Corporation
US
ISO 27001
SOC 2
GRC
Key Responsibilities:
- Serve as a hands-on GRC advisor for a portfolio of customers, guiding them through risk assessments, risk registers, audit preparation, and control rollouts.
- Help customers prepare for and navigate audits (SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, and similar frameworks), translating requirements into practical next steps.
- Advise on policy development and control design tailored to each customer's risk profile and maturity level.
What We're Looking For:
- 5+ years of experience as a GRC analyst, consultant, or coordinator with direct hands-on experience in audits, risk assessments, and policy rollouts.
- Working familiarity with common frameworks (SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST) and ability to orient quickly in any of them.
- Strong consultative communication skills to explain compliance concepts to nontechnical stakeholders.
Compensation & Benefits:
- Competitive salary and meaningful equity participation at a Series A inflection point.
- Comprehensive paid benefits including health insurance, 401(k), and generous leave policies.
- Autonomy and no bureaucracy, with room to build the function your way.
Compyl
Compyl is a GRC and automated security compliance platform built by security practitioners. Backed by Venture Guides, Contour Venture Partners, and Armory Square Ventures, it is a high-growth Series A company.