Назад
Company hidden
2 дня назад

Sr. GRC Analyst

105 000 - 135 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr. GRC Analyst (ServiceNow GRC/IRM and compliance automation): Operating and maturing an enterprise GRC program with an accent on scalable workflows, automated evidence collection, and SOC 2 and ISO/IEC 27001:2022 compliance. Focus on translating regulatory requirements into controls, improving dashboards and remediation tracking, and coordinating risk and audit activities across security, IT, legal, privacy, engineering, finance, and audit teams.

Location: Remote, United States; PST business hours required

Salary: $105,000–$135,000 annual salary

Company

hirify.global is a rapidly growing healthcare workforce solutions provider that delivers tech-enabled services, talent marketplaces, contingent labor management solutions, and proprietary software.

What you will do

  • Own GRC projects, compliance deliverables, and process improvements from planning through completion.
  • Operate and continuously improve the enterprise GRC program, including control ownership, documentation, traceability, and evidence requirements.
  • Support SOC 2 and ISO/IEC 27001:2022 readiness, audit preparation, evidence coordination, control testing, auditor support, and remediation tracking.
  • Replace manual compliance activities with automated workflows, evidence collection, control testing, issue tracking, dashboards, and reporting.
  • Conduct control reviews, risk assessments, evidence evaluations, gap analyses, and emerging-risk assessments.
  • Collaborate with Security, IT, Engineering, Finance, Legal, Privacy, Internal Audit, customers, and business stakeholders on compliance and risk matters.

Requirements

  • 4+ years of experience in Governance, Risk, and Compliance, Information Security, IT Audit, or a related discipline.
  • Hands-on experience operating or configuring GRC tools such as ServiceNow GRC/IRM, Drata, Vanta, or Hyperproof.
  • Experience owning GRC projects, compliance deliverables, process improvements, control design, evidence evaluation, risk assessments, audit support, remediation tracking, or compliance testing.
  • Strong working knowledge of SOC 2 or ISO/IEC 27001:2022; healthcare compliance experience, including HIPAA, is preferred.
  • Strong written and verbal communication skills, independent execution, prioritization, risk escalation, and cross-functional collaboration.
  • A bachelor’s degree in IT or Computer Science and relevant certifications such as CISA, CISSP, CCSP, or an ISO 27001 credential are preferred.

Nice to have

  • Experience with ISO/IEC 42001, NIST AI RMF, NIST CSF, GDPR/UK GDPR, or CCPA/CPRA.
  • ServiceNow GRC/IRM implementation, administration, configuration, or integration experience.
  • Experience developing GRC metrics, dashboards, key performance indicators, and leadership reporting.
  • Experience supporting internal or external audits in regulated or healthcare-related environments.

Culture & Benefits

  • Premium medical, dental, life, and vision insurance.
  • Generous 401(k) match and paid sick leave in accordance with applicable laws.
  • Unlimited DTO and virtual wellness classes, including yoga, meditation, and boot camp.
  • Company-sponsored virtual events, happy hours, team-building activities, and birthday recognition.
  • Entrepreneurial, high-energy, low-bureaucracy environment focused on innovation, inclusion, and professional growth.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →