Назад
Company hidden
19 часов назад

GRC Analyst (AI)

160 000 - 170 000$
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
GRC Analyst (AI): Supporting and maturing security and compliance programs for an enterprise AI platform with an accent on audits, risk management, access reviews, third-party risk, and continuous control monitoring. Focus on testing control effectiveness, automating evidence collection, translating framework requirements for engineering and operations teams, and turning program data into risk insights.

Location: San Mateo, United States

Salary: $160K–$170K plus equity

Company

hirify.global provides an AI platform for building, training, and serving specialized models across text, image, embedding, audio, and multimodal workloads.

What you will do

  • Support GRC operations including user access reviews, certifications, joiner-mover-leaver tracking, security awareness campaigns, phishing and deepfake simulations, and policy exception triage.
  • Support annual and ad hoc risk assessments, maintain the risk register, coordinate remediation with risk owners, and track issues through closure.
  • Run vendor and subprocessor risk assessments, ongoing monitoring, and remediation tracking for critical third parties.
  • Execute internal control audits and support external audit cycles by coordinating evidence, control owners, and remediation activities.
  • Maintain continuous control monitoring, automated control tests, evidence collection, and administration of the GRC platform.
  • Partner with engineering, IT, operations, legal, and sales to operationalize controls, maintain policies, and report risk insights to leadership.

Requirements

  • 3–5 years of experience in GRC, IT audit, information security, or a related field.
  • Working knowledge of SOC 2, ISO 27001, ISO 27701, ISO 42001, NIST CSF, HIPAA, GDPR, or CCPA.
  • Experience with GRC platforms such as Anecdotes, Vanta, Drata, Secureframe, OneTrust, or ServiceNow GRC.
  • Experience with user access reviews and identity and access management concepts including RBAC, least privilege, segregation of duties, and JML processes.
  • Hands-on experience administering security awareness or phishing simulation platforms, plus comfort with AWS, GCP, or Azure environments and SaaS operations.
  • Strong written communication, organization, attention to detail, and ability to work collaboratively across technical and non-technical teams.

Culture & Benefits

  • Work on AI infrastructure challenges including low-latency inference and scalable model serving.
  • Collaborate with engineers and AI researchers on emerging technology.
  • High ownership and direct impact in a fast-growing company.
  • Inclusive, equal-opportunity workplace committed to diversity.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →