Назад
Company hidden
1 день назад

Senior Security Analyst (GRC)

115 000 - 145 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Analyst (GRC/Fintech): Building and scaling security governance, risk, and compliance operations for an AI-native mortgage servicing platform with an accent on regulatory frameworks, audit readiness, and AI-assisted workflows. Focus on maintaining risk registers, automating GRC processes, coordinating remediation, and supporting operational security activities across cloud infrastructure, products, and sensitive financial data.

Location: Remote; hirify.global offices are located in New York City and San Francisco.

Salary: $115,000–$145,000 per year, plus equity.

Company

hirify.global is a Series C fintech company building an AI-native operating system for regulated finance, starting with mortgage servicing.

What you will do

  • Implement and maintain compliance with SOC 2, NIST CSF, CIS, NYDFS, GLBA Safeguards, CCPA, and related requirements.
  • Support internal and external security audits by gathering evidence and tracking remediation.
  • Build AI-assisted GRC workflows and automate security and compliance processes.
  • Manage security risk registers, risk assessments, governance projects, metrics, KPIs, and reporting.
  • Coordinate customer security due diligence, vendor risk assessments, policy monitoring, and issue remediation.
  • Support operational security activities, including monitoring, incident management, security reviews, awareness training, and on-call work.

Requirements

  • 5+ years of experience as a security analyst or security program manager.
  • Experience with security compliance frameworks, risk assessments, issue management, control monitoring, incident management, and reporting.
  • Knowledge of cloud security and public cloud environments.
  • Hands-on experience with AI tooling and AI-assisted workflows for GRC or security operations.
  • Strong communication, organization, collaboration, and project management skills.
  • Bachelor’s degree in Computer Science, Information Security, Technology, or a related field; relevant security certifications such as Security+, CC, SSCP, CISSP, CISM, or CRISC.

Nice to have

  • Experience with OWASP, ISO 27001/2, NIST 800-53, or additional security frameworks.
  • Experience in startup, financial services, or technology organizations.

Culture & Benefits

  • Remote work support with offices in New York City and San Francisco.
  • Competitive salary, company equity, and a 401(k) plan.
  • Medical, dental, and vision coverage, plus physical and mental well-being benefits.
  • Flexible paid time off, sick days, and 11 company holidays.
  • Learning and development opportunities, regular review cycles, and 360-degree feedback.
  • Quarterly budgets for team and company outings and 12 weeks of fully paid parental leave.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →