MENU
  • Remote Jobs
  • Companies
  • Go Premium
  • Job Alerts
  • Post a Job
  • Log in
  • Sign up
Working Nomads logo Working Nomads
  • Remote Jobs
  • Companies
  • Post Jobs
  • Go Premium
  • Get Free Job Alerts
  • Log in

Senior GRC Analyst

Pax8

Full-time
USA
$100k-$125k per year
analyst
risk management
cloud
security
documentation
Apply for this position

Position Summary: 

We are seeking a detail-oriented and proactive Senior Technology Governance, Risk, and Compliance (GRC) Analyst to join our growing organization. In this role, you will play a critical part in safeguarding our cloud-based platforms by identifying and managing technology risks, supporting compliance initiatives, and ensuring the effectiveness of security controls. You will collaborate cross-functionally with teams across engineering, security, technology services, legal, and customer success to maintain our compliance posture, support audits, and drive continuous improvement in our GRC program.

The ideal candidate has a strong understanding of cloud-native technologies, SaaS delivery models, and regulatory frameworks such as SOC 2, ISO 27001, and GDPR. This role requires a mix of analytical rigor, technical acumen, and business judgment to help scale and mature our risk and compliance functions in a dynamic, fast-paced environment.

Essential Responsibilities:

  • Conduct regular IT risk assessments to identify and mitigate technology and cybersecurity risks in a SaaS environment.

  • Perform control assessments to ensure alignment with internal policies, regulatory requirements, and industry standards (e.g., ISO 27001, NIST, SOC 2).

  • Maintain and update the GRC framework, ensuring it supports strategic business objectives and regulatory compliance for a cloud-native environment and DevSecOps practices.

  • Coordinate and support internal and external IT audits, including evidence collection, walkthroughs, and remediation tracking.

  • Facilitate and monitor the completion of risk treatment plans, working with business units to implement mitigation strategies.

  • Lead or support the incident response process, including documentation, root cause analysis, and post-incident reviews.  Includes on-call Incident Commander rotation (approximately 1 out of 6 weeks).

  • Maintain the risk register, ensuring accurate and up-to-date records of all identified risks and mitigation actions.

  • Develop and deliver GRC training and awareness programs for staff, promoting a culture of risk-conscious behavior.

  • Track and report compliance metrics, risk trends, and audit findings to key stakeholders and leadership.

  • Collaborate with IT, security, legal, and business teams to assess and manage third-party/vendor risks.

  • Ensure timely updates and maintenance of policies, standards, and procedures related to IT risk and compliance.

  • Monitor and interpret emerging regulations and industry best practices, recommending changes to the GRC program as needed.

  • Participate in the development of business continuity and disaster recovery plans, ensuring alignment with risk management objectives.

  • Utilize GRC tools and platforms to streamline risk, compliance, and audit processes.

  • Provide ongoing support for special projects and initiatives related to cybersecurity, data privacy, and regulatory compliance.

Ideal Skills, Experience, and Competencies:

  • 3-5 years in a technology GRC role.

  • Technical background with a focus on SaaS and multi-tenant cloud platforms highly preferred.

  • Proven experience in running assessments and/or audits with demonstratable track record of driving improvements.

Required Behaviors:

  • Compassionate Candor—We aim to assist others with candid, actionable feedback.

  • Seek to Understand—Be open, curious and committed to learning.

  • We Before Me—Actively collaborate and seek out diverse perspectives to ensure a win for Team Pax8.

  • Do What You Say—Take ownership and honor your commitments; prioritize and deliver.

  • Light Up Learning—Be brave and try new ideas; be vulnerable and share your failures so everyone can learn from our mistakes.

  • Driven by Passion—Connects personal passion to Pax8 mission, resilient in face of adversity and uncertainty in pursuit of mission.

Required Education & Certifications:

  • B.A./B.S. in a related field or equivalent work experience.

Compensation:

  • Qualified candidates can expect a compensation range of $100,000/yr to $125,000/yr or more depending on experience.

Expected Closing Date: 6/30/2025

#LI-Remote #LI-AG1

Apply for this position
Bookmark Report

About the job

Full-time
USA
$100k-$125k per year
8 Applicants
Posted 1 day ago
analyst
risk management
cloud
security
documentation

Apply for this position

Bookmark
Report
Enhancv advertisement

30,000+
REMOTE JOBS

Unlock access to our database and
kickstart your remote career
Join Premium

Senior GRC Analyst

Pax8

Position Summary: 

We are seeking a detail-oriented and proactive Senior Technology Governance, Risk, and Compliance (GRC) Analyst to join our growing organization. In this role, you will play a critical part in safeguarding our cloud-based platforms by identifying and managing technology risks, supporting compliance initiatives, and ensuring the effectiveness of security controls. You will collaborate cross-functionally with teams across engineering, security, technology services, legal, and customer success to maintain our compliance posture, support audits, and drive continuous improvement in our GRC program.

The ideal candidate has a strong understanding of cloud-native technologies, SaaS delivery models, and regulatory frameworks such as SOC 2, ISO 27001, and GDPR. This role requires a mix of analytical rigor, technical acumen, and business judgment to help scale and mature our risk and compliance functions in a dynamic, fast-paced environment.

Essential Responsibilities:

  • Conduct regular IT risk assessments to identify and mitigate technology and cybersecurity risks in a SaaS environment.

  • Perform control assessments to ensure alignment with internal policies, regulatory requirements, and industry standards (e.g., ISO 27001, NIST, SOC 2).

  • Maintain and update the GRC framework, ensuring it supports strategic business objectives and regulatory compliance for a cloud-native environment and DevSecOps practices.

  • Coordinate and support internal and external IT audits, including evidence collection, walkthroughs, and remediation tracking.

  • Facilitate and monitor the completion of risk treatment plans, working with business units to implement mitigation strategies.

  • Lead or support the incident response process, including documentation, root cause analysis, and post-incident reviews.  Includes on-call Incident Commander rotation (approximately 1 out of 6 weeks).

  • Maintain the risk register, ensuring accurate and up-to-date records of all identified risks and mitigation actions.

  • Develop and deliver GRC training and awareness programs for staff, promoting a culture of risk-conscious behavior.

  • Track and report compliance metrics, risk trends, and audit findings to key stakeholders and leadership.

  • Collaborate with IT, security, legal, and business teams to assess and manage third-party/vendor risks.

  • Ensure timely updates and maintenance of policies, standards, and procedures related to IT risk and compliance.

  • Monitor and interpret emerging regulations and industry best practices, recommending changes to the GRC program as needed.

  • Participate in the development of business continuity and disaster recovery plans, ensuring alignment with risk management objectives.

  • Utilize GRC tools and platforms to streamline risk, compliance, and audit processes.

  • Provide ongoing support for special projects and initiatives related to cybersecurity, data privacy, and regulatory compliance.

Ideal Skills, Experience, and Competencies:

  • 3-5 years in a technology GRC role.

  • Technical background with a focus on SaaS and multi-tenant cloud platforms highly preferred.

  • Proven experience in running assessments and/or audits with demonstratable track record of driving improvements.

Required Behaviors:

  • Compassionate Candor—We aim to assist others with candid, actionable feedback.

  • Seek to Understand—Be open, curious and committed to learning.

  • We Before Me—Actively collaborate and seek out diverse perspectives to ensure a win for Team Pax8.

  • Do What You Say—Take ownership and honor your commitments; prioritize and deliver.

  • Light Up Learning—Be brave and try new ideas; be vulnerable and share your failures so everyone can learn from our mistakes.

  • Driven by Passion—Connects personal passion to Pax8 mission, resilient in face of adversity and uncertainty in pursuit of mission.

Required Education & Certifications:

  • B.A./B.S. in a related field or equivalent work experience.

Compensation:

  • Qualified candidates can expect a compensation range of $100,000/yr to $125,000/yr or more depending on experience.

Expected Closing Date: 6/30/2025

#LI-Remote #LI-AG1

Working Nomads

Post Jobs
Premium Subscription
Sponsorship
Free Job Alerts

Job Skills
API
FAQ
Privacy policy
Terms and conditions
Contact us
About us

Jobs by Category

Remote Administration jobs
Remote Consulting jobs
Remote Customer Success jobs
Remote Development jobs
Remote Design jobs
Remote Education jobs
Remote Finance jobs
Remote Legal jobs
Remote Healthcare jobs
Remote Human Resources jobs
Remote Management jobs
Remote Marketing jobs
Remote Sales jobs
Remote System Administration jobs
Remote Writing jobs

Jobs by Position Type

Remote Full-time jobs
Remote Part-time jobs
Remote Contract jobs

Jobs by Region

Remote jobs Anywhere
Remote jobs North America
Remote jobs Latin America
Remote jobs Europe
Remote jobs Middle East
Remote jobs Africa
Remote jobs APAC

Jobs by Skill

Remote Accounting jobs
Remote Assistant jobs
Remote Copywriting jobs
Remote Cyber Security jobs
Remote Data Analyst jobs
Remote Data Entry jobs
Remote English jobs
Remote Spanish jobs
Remote Project Management jobs
Remote QA jobs
Remote SEO jobs

Jobs by Country

Remote jobs Australia
Remote jobs Argentina
Remote jobs Brazil
Remote jobs Canada
Remote jobs Colombia
Remote jobs France
Remote jobs Germany
Remote jobs Ireland
Remote jobs India
Remote jobs Japan
Remote jobs Mexico
Remote jobs Netherlands
Remote jobs New Zealand
Remote jobs Philippines
Remote jobs Poland
Remote jobs Portugal
Remote jobs Singapore
Remote jobs Spain
Remote jobs UK
Remote jobs USA


Working Nomads curates remote digital jobs from around the web.

© 2025 Working Nomads.