Security GRC Analyst (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security GRC Analyst (Fintech): Scaling and automating security compliance, customer assurance, and third-party risk programs with an accent on SOC 2 maturity and GRC tool implementation. Focus on building automated evidence collection workflows, managing security questionnaires, and positioning the platform as a leader in financial security.
Location: Remote (Global)
Salary: $85,000 – $180,000
Company
is a personal finance platform designed to simplify complex financial management for users through a user-focused, all-in-one product.
What you will do
- Scale and optimize GRC, compliance, and customer assurance programs including security questionnaires and trust center content.
- Automate third-party risk assessments and evidence collection processes to reduce cycle times.
- Implement and manage GRC tooling like Vanta, Drata, or SafeBase with an emphasis on AI-powered automation.
- Strengthen continuous controls monitoring for the existing SOC 2 program.
- Evaluate and implement additional security frameworks such as ISO 27001 or CSA STAR.
Requirements
- 3-5 years of experience operating and scaling GRC, compliance, or customer assurance programs.
- Proven hands-on experience with customer assurance tasks like security questionnaires and RFPs.
- Deep understanding of SOC 2, CCPA/GDPR, and ISO 27001 frameworks.
- Strong experience with compliance automation tools such as Vanta, Drata, or Oneleet.
- Ability to identify process anti-patterns and replace manual tasks with automated solutions.
- Excellent written communication skills for internal and external stakeholder engagements.
Nice to have
- Experience in fintech or the financial services sector.
- Knowledge of cloud infrastructure (AWS) and modern SaaS stacks.
- Experience leveraging AI tools like Claude or ChatGPT for GRC workflows.
- Relevant certifications such as CISA, CRISC, or Security+.
Culture & Benefits
- Fully remote work culture with no central office requirements.
- Competitive cash and equity compensation package.
- Unlimited PTO policy.
- Monthly "First Friday" day off for rest and recovery.
- Stipend for setting up a home office environment.
- Comprehensive benefit plans based on location.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →