Jobs and Careers
AN

Member of Risk Team (GRC Senior Analyst)

Anchorage Digital
United States, United Statesfull_timeVerifiedPosted 28 Mar 2025

About the role

At Anchorage Digital, we are building the world’s most advanced digital asset platform for institutions to participate in crypto.
Anchorage Digital is a crypto platform that enables institutions to participate in digital assets through custody, staking, trading, governance, settlement, and the industry's leading security infrastructure. Home to Anchorage Digital Bank N.A., the only federally chartered crypto bank in the U.S., Anchorage Digital also serves institutions through Anchorage Digital Singapore, Porto by Anchorage Digital, and other offerings.
The company is funded by leading institutions including Andreessen Horowitz, GIC, Goldman Sachs, KKR, and Visa, with its Series D valuation over $3 billion. Founded in 2017 in San Francisco, California, Anchorage Digital has offices in New York, New York; Porto, Portugal; Singapore; and Sioux Falls, South Dakota. Learn more at anchorage.com, on X @Anchorage, and on LinkedIn. 
As a Member of Risk Team, GRC Analyst, you’ll get the opportunity to work on various projects across the organization ranging from GRC Process Management, IT Risk Management, Security Risk Assessments, and Continuous Monitoring. This role is highly cross-functional and will cover multiple service offerings and entities (Anchor Labs, Inc., Anchorage Digital Bank, Anchorage Digital Singapore, Anchorage Digital New York, etc.).
You are recognized as a subject matter expert in GRC Management and can apply your skills and knowledge to have significant influence within and outside the team. You are a strong contributor and have the ability to significantly contribute to medium-to-large projects as well as owning small-to-medium projects. You will play a key role in building and scaling foundational elements of the company’s IT risk management and compliance program. You will support the build-out and ongoing maintenance of several key initiatives of the Risk team’s scope and ownership.
You are capable of contributing to the development of company goals and objectives, expected to help define the long-term strategy of IT Risk. You understand the “why” and the “bigger picture” and meaningfully contribute and take ownership of your work.
We have created the Factors of Growth & Impact to help Villagers better measure impact and articulate coaching, feedback, and the rich and rewarding learning that happens while exploring, developing, and mastering the capabilities and contributions within and outside of the Risk Team, GRC Analyst role

Technical Skills:

  • Has a complete conceptual knowledge and full understanding in principles, practices, and a working knowledge of GRC Framework.
  • Experience with administered GRC Platforms, including, setting up workflows, requirements and access within the tool.
  • Applies experience and analytical skills to “connect the dots” between the company’s business and products to the IT environment in order to evaluate whether IT compliance obligations are being met.
  • Has working experience in SOC reviews, IT controls, audit processes, information security, policy governance and management.
  • Applies critical thinking in creating risk and controls descriptions to be both concise and accurate by working with key stakeholders across the organization business.
  • Resolves a wide range of issues in creative ways working directly with control owners to ensure regulatory requirements are being met, including managing and tracking findings (from risk assessments, audits, etc.) from identification to remediation.
  • Experience in working with SaaS software engineering teams and have a strong understanding of Cloud Security technologies.

Complexity and Impact of Work:

  • Responsible for supporting the entire life-cycle of the company’s GRC Framework, including identifying risks, mapping to regulatory requirements, to planning, control owner coaching/prep, evidence requests, walk-throughs, follow ups, and reporting.
  • Can work autonomously, defines priorities under broad direction, and applies problem solving skills to translate regulations and compliance obligations into technical controls, and vice-versa.
  • Drives work independently and significantly contributes to medium-to-large cross-functional projects with little oversight and coordinating activities of other project team members.
  • Contribute to regulatory exam preparations
  • Consistently demonstrates on-time delivery and high quality work product. Where a deadline or commitment is at risk, escalates to manager to help manage priorities, if appropriate, and alerts affected stakeholders so "no surprises.”

Organizational Knowledge:

  • Is aware of the strategy of Anchorage and is considered when not only working cross-functionally with security, product, design, engineering, legal, TPRM, people, and external auditors but also understanding

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Anchorage Digital

View company profile →