Jobs and Careers
QU

Senior GRC Analyst

Quantexa
New York City, United Statesfull_timeVerifiedPosted 17 Apr 2025

About the role

What we’re all about.

We find, when we come together in the pursuit of excellence, great things happen. And that’s how we do things at Quantexa – together. Our business is data, but our culture is collective. We’re about growth – but not just the bottom line. We create a culture where people feel empowered to do their best work. We might work across continents and time zones, but that doesn’t stop us from collaborating. We’re connected. We celebrate our successes together, and we unite to tackle the challenges. 41% of our colleagues come from an ethnic or religious minority background. We speak over 20 languages across our 47 nationalities, creating a sense of belonging for all.

At Q, we’re looking for people who share that vision. People like you.

The opportunity

As a Senior GRC Analyst at Quantexa, you will bring excellent demonstrable experience in both US Government and non-government security and compliance, applying deep knowledge acquired prior to joining to immediately contribute to the maturity of our Governance, Risk, and Compliance (GRC) function. This role demands a proactive, detail-oriented, and solutions-driven approach, where your enthusiasm for strengthening organisational security posture will be evident in both strategic initiatives and day-to-day activities.

You will work closely and pro-actively with subject matter experts and stakeholders across the business to ensure the GRC function remains resilient, forward-looking, and aligned with Quantexa’s internal objectives, client commitments, and complex regulatory requirements. Your immediate focus will be on compliance and security assurance related to managing the SOC 2 process with our nominated CPA and working on Quantexa’s U.S. Government engagements, as well as wider commercial obligations.

A strong understanding of federal security frameworks is essential particularly the application of NIST SP 800-53 controls for federal information systems and NIST SP 800-171 for the protection of Controlled Unclassified Information (CUI). You will also work across and manage the SOC 2 engagement programme and internationally recognised ISO standards, including ISO/IEC 27001 and ISO/IEC 27017, demonstrating a high level of confidence in applying and mapping these controls in a dynamic FinTech environment.

Your role will involve actively shaping and guiding regulatory readiness efforts, accreditation processes, and evidence-based reporting, while maintaining a continuous focus on control effectiveness. You will be expected to identify emerging compliance risks, suggest improvements, and lead by example in implementing practical, business-aligned controls that go beyond tick-box compliance.

You will also be expected to apply a working understanding of Artificial Intelligence (AI) principles and how these intersect with governance, risk, and compliance within software development environments. This includes helping to define and uphold responsible and secure AI practices, in line with client expectations and regulatory developments.

As a key member of the Information Security team, you will act as a trusted advisor across the business, promoting a culture of accountability, transparency, and security-first thinking. Your ability to translate complex requirements into actionable controls will be instrumental in driving Quantexa’s ongoing growth in regulated markets.

Ultimately, your demonstrable knowledge, commitment to high standards, and proactive engagement will help strengthen Quantexa’s global compliance profile, support secure operations, and reinforce trust with clients, partners, and regulators alike.

Requirements

What you’ll be doing

·        Ensure Regulatory Compliance

o   Align Quantexa's practices with global regulatory standards and accreditations, such NIST (SP 800-53, SP 800-171), CMMC 2.0, (AICPA) SOC 2 (All trust principles), and ISO/IEC 27001 (2022) with an emphasis on US Government requirements.

o   Demonstrate an understanding of Artificial Intelligence (AI) principles, particularly their application within software development

·        Monitor Regulatory Changes

o   Stay updated and report on evolving global regulations, refining frameworks and controls to maintain ongoing compliance across federal and commercial standards within information security.

·        Maintain Security Certifications

o   Assist and oversee the maintenance of commercial security certifications, such as SOC 2 Type II and ISO/IEC 27001:2022, ensuring continuous alignment with best practices.

·        Coordinate with Assessors

o   Collaborate with government, non-government auditors, clients, CPAs, and third-party assessors, to facilitate audits and

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Quantexa

View company profile →