TL;DR
Staff GRC Analyst (Governance, Risk, and Compliance): Responsible for strengthening security posture and ensuring compliance with critical standards like SOC 2, GDPR, and CCPA across the organization with an accent on leading GRC tool configuration and managing audits. Focus on developing a comprehensive risk management program and overseeing security procedures across multiple domains.
Location: Remote (USA)
Salary: $126,480–$175,000 USD
Company
hirify.global is a fast-growing fintech and traveltech product company transforming business travel by integrating corporate travel, a powerful charge card, and modern spend management into one platform.
What you will do
- Lead configuration and management of GRC tools, ensuring integration with security systems.
- Manage SOC 2 reporting dashboard and develop/maintain a comprehensive risk management program.
- Conduct regular audits across business, IT, and security processes to ensure compliance.
- Oversee development and execution of security procedures and Contingency Planning strategies.
- Audit access and compliance of third-party vendors and review procurement requests for security standards.
- Collaborate cross-functionally to identify and monitor security controls and mature audit processes.
Requirements
- Proven experience in managing GRC functions, ideally within a fast-paced, high-growth company.
- Strong understanding of ISO 27001, SOC 2, GDPR, CCPA, PCI-DSS, and SOX compliance standards.
- Skilled in using GRC platforms and tools.
- Strong knowledge of security concepts, including risk management, identity and access management (IAM), key management, data protection, and network security.
- Track record of building security/GRC programs across various domains.
- Certifications such as CISA, CISM, CISSP, CRISC, or CCEP.
Nice to have
- Familiarity with cloud security components of platforms like AWS, GCP, or Azure.
Culture & Benefits
- Competitive base pay tied to role and experience, with opportunities for bonuses, commissions, and equity.
- Hybrid-hub model, offering both office and fully remote environments for success.
- Access to a full list of benefits on the company culture page.
- Opportunity to join a mission to transform work travel for businesses and travelers.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →