Jobs and Careers
SK

Senior GRC Analyst

Skillable
Remote (United States), United StatesRemotefull_timeVerifiedPosted 23 Jan 2025
💰 $160,000/yr($130,000/yr$160,000/yr)

About the role

Skillable is a 100% remote and virtual tech company that’s modernizing the world of training. Come share your professional magic with highly talented, drive and fun colleagues who believe in the power of “skilling.” Experience what a true team focused on doing the right thing feels like! 

 

Our people and talent are what make us great and fun! We work together to create amazing solutions and experiences for our customers and their clients. We utilize our employees’ personal strengths to help our company grow and ensure our team is living their best, authentic life. We don’t just share our appreciation for our team members once a year with a branded mug—it’s shared on a daily basis. Our remote work environment blends the demands of work and life without the added pressure of commuting or feeling guilty about leaving early to visit the dentist. 

 

Come work with us and learn what teamwork and integrity blended with an emphasis on well-being and balance can do for your career! 


The Senior Governance, Risk and Compliance (GRC) Analyst is responsible for developing and upholding security policies, standards, and procedures that adhere to industry best practices and regulatory mandates. They will spearhead the application and enforcement of security governance frameworks. They will design and manage the implementation of automation processes to enhance trust, assurance, compliance and regulatory efforts. They will provide mentorship to team members, fostering a culture of continuous learning and growth within the security domain. 

Responsibilities

  • Oversee the implementation and enforcement of security governance frameworks (e.g., ISO 27001, NIST CSF, COBIT). 
  • Collaborate with senior leadership to define security objectives and ensure alignment with organizational goals. 
  • Design and lead implementation of automation for trust, assurance, compliance, and regulatory activities. 
  • Identify, assess, and prioritize security risks across the organization. 
  • Develop and maintain a customer-facing trust center to transparently and accurately communicate the organization's audits, security practices, certifications, and compliance efforts. 
  • Act as a point of contact for customers seeking additional information about the organization’s security and compliance programs. 
  • Respond to customer inquiries and requests for additional documentation in a timely and professional manner. 
  • Act as a liaison between technical teams, business units, and external stakeholders to address security, compliance, risk and accessibility needs. 
  • Develop risk mitigation strategies and manage the security risk register. 
  • Conduct regular risk assessments and security audits to evaluate and address vulnerabilities. 
  • Develop relationships with internal risk owners to ensure timely and appropriate response to identified risk 
  • Provide recommendations for risk treatment and remediation efforts. 
  • Ensure compliance with applicable laws, regulations, and standards, such as GDPR, HIPAA, PCI-DSS, SOX, or other relevant frameworks. 
  • In partnership with VP of Security, lead and coordinate internal and external audits, ensuring timely and successful completion. 
  • Partner with key internal stakeholders to support and execute on security training programs to promote compliance awareness among employees. 
  • Promote awareness and adherence to accessibility standards such as WCAG (Web Content Accessibility Guidelines) in digital security measures. 
  • Design and implement organization-wide security awareness training programs to educate employees on best practices and potential threats. 
  • Monitor and measure the effectiveness of training programs and update content as needed. 
  • Collaborate with internal teams to provide accurate and timely responses to security questionnaires and other assessments required by customers, partners, and regulatory bodies that reflect the organization's security posture. 
  • Maintain a repository of responses and supporting documentation to streamline future questionnaire processes. 

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Skillable

View company profile →