About Our GRC Team :
We are seeking a highly motivated and detail-oriented Sr Analyst to support our global Governance, Risk, and Compliance program.
Reporting to the Senior Director of GRC, you will collaborate cross-functionally to help strengthen our compliance framework, support audits, perform risk assessments, track remediation efforts, and ensure alignment with key standards like ISO 27001, ISO 42001, ISO 27701, and SOC 2.
This role offers the opportunity to work on global compliance initiatives and drive compliance and risk maturity across the business.
Responsibilities
Requirements
- Demonstrated ability of 5+ years in Information Security, GRC, ERM, compliance, audit, internal controls, AI governance, or other security related areas. (Experience in cloud-based tech company is preferred)
- Understanding of general IT and cloud security controls, such as Information Security, Business Continuity, Disaster Recovery, Third Party Risk / Vendor Management, Software Development, Hardware and Software.
- Familiarity with global industry frameworks like ISO 27001, ISO 27701, SOC 2, ISO 42001, NIST CSF, NIST 800-53, and RMF.
- Detail oriented with excellent verbal and written communication skills.
- Ability to work with both business and technical areas and translate requirements between the two areas to address control deficiencies.
- Excellent interpersonal and organizational skills with an ability to coordinate with internal stakeholders and external auditors.
- Familiarity with managing GRC tools (e.g. Metricstream, Hyperproof, Vanta) and dashboards to monitor compliance posture.
- Ability to adapt in a dynamic environment and manage multiple priorities effectively.
- Flexibility is essential and startup experience is a plus.
- Experience in project management including managing complex projects at an enterprise level.
- Self-motivated and responsible individual who will represent the company with the highest level of integrity and professionalism.
- BS or MS in Computer Science, Information Systems, Engineering, or Similar.
- Bonus : Certifications such as CISSP, CRISC, CISA, CIPP are highly desirable, but not required.
About Us :
We help marketing and sales teams overcome the disruptive data and technology fragmentation that inhibits insight and forces them to spam their prospects. We do this by injecting Account Intelligence into every step of the buyer journey, wherever our clients interact with customers, and by helping them orchestrate every action across systems and channels - through advertising, account-based experience, and sales motions.