19 часов назад
GRC Analyst (AI)
160 000 - 170 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
GRC Analyst (AI): Supporting and maturing security and compliance programs for an enterprise AI platform with an accent on audits, risk management, access reviews, third-party risk, and continuous control monitoring. Focus on testing control effectiveness, automating evidence collection, translating framework requirements for engineering and operations teams, and turning program data into risk insights.
Location: San Mateo, United States
Salary: $160K–$170K plus equity
Company
provides an AI platform for building, training, and serving specialized models across text, image, embedding, audio, and multimodal workloads.
What you will do
- Support GRC operations including user access reviews, certifications, joiner-mover-leaver tracking, security awareness campaigns, phishing and deepfake simulations, and policy exception triage.
- Support annual and ad hoc risk assessments, maintain the risk register, coordinate remediation with risk owners, and track issues through closure.
- Run vendor and subprocessor risk assessments, ongoing monitoring, and remediation tracking for critical third parties.
- Execute internal control audits and support external audit cycles by coordinating evidence, control owners, and remediation activities.
- Maintain continuous control monitoring, automated control tests, evidence collection, and administration of the GRC platform.
- Partner with engineering, IT, operations, legal, and sales to operationalize controls, maintain policies, and report risk insights to leadership.
Requirements
- 3–5 years of experience in GRC, IT audit, information security, or a related field.
- Working knowledge of SOC 2, ISO 27001, ISO 27701, ISO 42001, NIST CSF, HIPAA, GDPR, or CCPA.
- Experience with GRC platforms such as Anecdotes, Vanta, Drata, Secureframe, OneTrust, or ServiceNow GRC.
- Experience with user access reviews and identity and access management concepts including RBAC, least privilege, segregation of duties, and JML processes.
- Hands-on experience administering security awareness or phishing simulation platforms, plus comfort with AWS, GCP, or Azure environments and SaaS operations.
- Strong written communication, organization, attention to detail, and ability to work collaboratively across technical and non-technical teams.
Culture & Benefits
- Work on AI infrastructure challenges including low-latency inference and scalable model serving.
- Collaborate with engineers and AI researchers on emerging technology.
- High ownership and direct impact in a fast-growing company.
- Inclusive, equal-opportunity workplace committed to diversity.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Head of GRC (AI)
220 000 - 260 000$
3 дня назад
GRC & Privacy Analyst (AI)
115 000 - 125 000$
3 дня назад
GRC Analyst (AI)
135 000 - 165 000$
Decagon
24 часа назад
Governance, Risk, and Compliance Manager (AI Compliance)
190 000 - 275 000$
5 дней назад
Principal Security GRC Analyst (FedRAMP)
150 000 - 200 000$
Plaid
3 дня назад
Security Analyst, Third-Party Ecosystem Risk Management
119 000 - 176 000$