1 день назад
Senior Security Analyst (GRC)
115 000 - 145 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Security Analyst (GRC/Fintech): Building and scaling security governance, risk, and compliance operations for an AI-native mortgage servicing platform with an accent on regulatory frameworks, audit readiness, and AI-assisted workflows. Focus on maintaining risk registers, automating GRC processes, coordinating remediation, and supporting operational security activities across cloud infrastructure, products, and sensitive financial data.
Location: Remote; offices are located in New York City and San Francisco.
Salary: $115,000–$145,000 per year, plus equity.
Company
is a Series C fintech company building an AI-native operating system for regulated finance, starting with mortgage servicing.
What you will do
- Implement and maintain compliance with SOC 2, NIST CSF, CIS, NYDFS, GLBA Safeguards, CCPA, and related requirements.
- Support internal and external security audits by gathering evidence and tracking remediation.
- Build AI-assisted GRC workflows and automate security and compliance processes.
- Manage security risk registers, risk assessments, governance projects, metrics, KPIs, and reporting.
- Coordinate customer security due diligence, vendor risk assessments, policy monitoring, and issue remediation.
- Support operational security activities, including monitoring, incident management, security reviews, awareness training, and on-call work.
Requirements
- 5+ years of experience as a security analyst or security program manager.
- Experience with security compliance frameworks, risk assessments, issue management, control monitoring, incident management, and reporting.
- Knowledge of cloud security and public cloud environments.
- Hands-on experience with AI tooling and AI-assisted workflows for GRC or security operations.
- Strong communication, organization, collaboration, and project management skills.
- Bachelor’s degree in Computer Science, Information Security, Technology, or a related field; relevant security certifications such as Security+, CC, SSCP, CISSP, CISM, or CRISC.
Nice to have
- Experience with OWASP, ISO 27001/2, NIST 800-53, or additional security frameworks.
- Experience in startup, financial services, or technology organizations.
Culture & Benefits
- Remote work support with offices in New York City and San Francisco.
- Competitive salary, company equity, and a 401(k) plan.
- Medical, dental, and vision coverage, plus physical and mental well-being benefits.
- Flexible paid time off, sick days, and 11 company holidays.
- Learning and development opportunities, regular review cycles, and 360-degree feedback.
- Quarterly budgets for team and company outings and 12 weeks of fully paid parental leave.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 часов назад
Senior Security Technical Governance Program Manager
176 400 - 206 168$
6 дней назад
Governance, Risk & Compliance (GRC) Analyst (Defense)
120 000 - 150 000$
5 дней назад
Senior GRC Analyst (SaaS)
183 000 - 205 000$
6 часов назад
Cybersecurity Senior Analyst (AI)
85 000 - 130 000$
6 дней назад
Security Engineer
160 000 - 185 000$
6 дней назад