Governance, Risk, Compliance & Trust Analyst (Legaltech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Governance, Risk, Compliance & Trust Analyst (GRC): Managing trust, compliance, and risk workstreams for a legal technology platform with an accent on audit readiness and customer trust. Focus on implementing frameworks like FedRAMP and SOC 2, conducting vendor security reviews, and optimizing customer-facing trust content.
Location: Hybrid in Oakland, California, United States
Salary: $140,000 - $178,000
Company
builds technology that helps legal teams find the information they need to promote justice.
What you will do
- Support audit readiness across core frameworks including FedRAMP, SOC 2, and ISO 27001/27017/27018.
- Manage customer security questionnaires, trust inquiries, and improve trust portal content.
- Own end-to-end security and compliance reviews of third-party vendors.
- Design, maintain, and execute security and compliance training programs for personnel.
- Partner cross-functionally with Security Engineering, DevOps, IT, and Legal to validate controls and produce audit-ready outputs.
- Translate technical and regulatory topics into clear written deliverables for internal and external audiences.
Requirements
- 5+ years of experience working as an individual contributor in a GRC or Trust team.
- Strong working knowledge of compliance operations, risk, and control narratives.
- Experience supporting FedRAMP, SOC 2, ISO 27001/27017/27018, or similar frameworks.
- Experience leading the completion of customer security questionnaires and using GRC tooling.
- Ability to independently research complex questions and synthesize inputs from multiple stakeholders.
- Professional maturity and accountability when handling sensitive or high-visibility work.
Culture & Benefits
- Equity program and 401(k) retirement plan with company matching.
- Comprehensive health, dental, and vision insurance with Flexible Spending Accounts.
- 17 paid vacation days, 11 federal holidays, and approximately 10 days of sick leave.
- Annual allocation for Learning & Development opportunities and professional dues.
- Company-sponsored life and disability insurance.
- Modern equipment including a powerful Linux laptop and customized desk setup.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →