Назад
Company hidden
3 дня назад

GRC Security Analyst (AI Governance)

114 000 - 139 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
GRC Security Analyst (AI Governance) (Security Compliance/Financial Services): Monitoring security frameworks, conducting risk assessments, maintaining policies, and preparing audits for a real estate analytics and valuation technology company with an accent on NIST, ISO, SOC 2, privacy regulations, and AI governance. Focus on evaluating third-party risk, developing remediation plans, measuring security program effectiveness, and addressing complex compliance issues across cloud, DevOps, and application security.

Location: Remote within the United States; Reno, Nevada

Salary: $114,000–$139,000 annually, depending on location, experience, and qualifications

Company

hirify.global is a real estate analytics, data solutions, and valuation technology company providing AI-driven analytics, valuation services, and automated appraisal review platforms.

What you will do

  • Monitor and enforce compliance with NIST CSF, NIST RMF, ISO 27001/27002, SOC 2, ISO 42001, GLBA, CCPA, and GDPR.
  • Conduct security risk assessments, evaluate control effectiveness, and resolve complex security and compliance issues.
  • Develop and maintain security policies, procedures, and guidelines aligned with industry standards, client requirements, and mortgage lending regulations.
  • Lead internal and external audit preparation, participation, and remediation of audit findings.
  • Partner with cross-functional teams to remediate security gaps and evaluate third-party vendor security posture.
  • Maintain compliance records, define security program metrics, and prepare reports for leadership, clients, and regulators.

Requirements

  • At least 5 years of experience in GRC, security compliance, or risk management with a bachelor’s degree, or 3 years with a master’s degree, or equivalent experience.
  • Expert knowledge of security frameworks, standards, and privacy regulations including NIST, SOC 2, ISO 27001, ISO 42001, GLBA, GDPR, and CCPA.
  • Relevant certification such as CISSP, CISM, CISA, CRISC, AIGP, or equivalent.
  • Experience with GRC platforms such as Vanta, Drata, or OneTrust and with risk assessment practices in financial services or appraisal management.
  • Working knowledge of cloud computing, DevOps, and application security, plus advanced spreadsheet skills for data analysis and compliance reporting.
  • Strong analytical, communication, documentation, and stakeholder advisory skills.

Culture & Benefits

  • Remote work environment serving the real estate industry.
  • Medical, dental, and company-paid vision insurance.
  • 401(k) plan with employer match, paid time off, paid holidays, and disability coverage.
  • Health savings contributions, wellness programs, virtual primary care, and virtual mental health resources.
  • Profit-sharing, communication and referral bonuses, career development resources, and anniversary recognition.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →