Source Job

Europe

  • Acting as the primary subject matter expert for all security and compliance inquiries.
  • Taking end-to-end ownership of certification lifecycles, such as ISO 27001 and Cyber Essentials.
  • Working closely with the GRC team to improve existing programs.

GRC ISO 27001 SOC 2 GDPR

13 jobs similar to Governance, Risk & Compliance Analyst

Jobs ranked by similarity.

  • Lead and mature LiveKit’s security and privacy compliance programs.
  • Own the day-to-day operations of compliance workflows.
  • Partner closely with Security and IT Engineers on controls design, documentation, governance, and audits.

LiveKit is revolutionizing the AI landscape by providing the network infrastructure that powers multimodal AI interfaces.

US

Lead and support customer security audits and respond to security questionnaires. Prepare, coordinate, and manage ISO 27001 audits. Ensure ongoing compliance with HIPAA, NIST CSF, and other regulatory requirements.

OneStudyTeam specializes in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes.

Canada US Europe

As a Compliance and Risk Specialist, you will support the Compliance and Risk team by leading compliance initiatives. You will conduct risk assessments and remediation activities. You will contribute to the development of security strategies for systems deployed globally.

Canadian Bank Note Company (CBN) is a trusted leader in secure technology solutions for governments and businesses worldwide.

Europe

  • Perform IT audit engagements (ISO27001) and readiness assessments.
  • Evaluate the design and effectiveness of technology controls.
  • Communicate IT audit findings to management and identify performance improvement opportunities.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

Global Unlimited PTO

  • Use security and compliance tools (GRC tools) to help the company stay audit-ready
  • Manage IT assets and access permissions for team members and internal systems
  • Support daily security operations related to ISO 27001 / SOC 2

Hopae is building the world’s most trusted digital identity platform — private, secure, and built for real life. Backed by top global investors, Hopae operates across Seoul, Paris, and San Francisco, bringing together exceptional talent from over 10 nationalities.

$108,890–$184,028/yr
US

  • Own the end-to-end process for client and prospect security questionnaires.
  • Collaborate with internal stakeholders, managing timelines to ensure accurate responses.
  • Develop and maintain a "Trust Center" to proactively address common security questions.

Included Health is a healthcare company that delivers integrated virtual care and navigation. They aim to break down barriers to provide high-quality care for every person, offering care guidance, advocacy, and access to personalized virtual and in-person care.

$125,000–$145,000/yr
US 4w PTO

  • Drive the implementation of technical controls and evidence gathering in collaboration with engineering for compliance standards.
  • Manage the daily operational reality of audits, customer questionnaires, and internal IT/Security support requests.
  • Rapidly prototype and ship internal tools, custom Vanta integrations, and scripts using AI-assisted development to close automation gaps.

Sayari is a risk intelligence provider equipping public and private sectors with visibility into complex commercial relationships. They deliver corporate and trade data from over 250 jurisdictions and are headquartered in Washington, D.C. They were also featured as one of Inc.’s “Best Workplaces” for 2025.

5w PTO

  • Own our information security strategy and build our security roadmap.
  • Maintain our ISO 27001 certification, preparing for SOC 2 readiness.
  • Operate strategically and tactically, developing policy and reviewing cloud configurations.

ApprovalMax is redefining how finance teams manage the Money Out cycle — from purchase orders and supplier bills to employee expense management and payroll. Trusted by 18,000+ businesses worldwide, our platform empowers companies to automate financial controls, ensure compliance, and scale efficiently.

US

Deliver successful consulting engagements across multiple Risk offerings while maintaining a high degree of customer satisfaction. Perform qualitative and quantitative risk assessments using industry-recognized frameworks. Provide advisory services to GuidePoint customers to help mature their cyber risk management and information security programs.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk.

EMEA

  • Support the audit and assurance teams in performing ISO 27001 certification assessments and related information security audits.
  • Assist in audit planning, evidence review, report preparation, and overall quality assurance.
  • Handle client ingestion and onboarding activities, perform HubSpot data scrubbing and updates, and register new engagements in Asana and coordinate Insight ONE transfers.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

EMEA

Responsible for operating, supporting, and developing the ISO Practice with a high level of quality, productivity, and satisfaction for both clients and employees. Oversees the delivery of ISO certification services, ensures compliance with accreditation requirements. Leads the development of the audit team to drive efficiency, profitability, and growth within the practice.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

LATAM

Lead day-to-day activities for SOC 2 and other IT compliance engagements. Guide staff, engage with clients, and play a key role in the delivery of high-quality audits and readiness assessments. Identify control gaps and provide recommendations for remediation.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.