Stand out for this role — generate a tailored resume and cover letter in about a minute.
Insight Security is seeking a GRC Analyst to guide clients through compliance and risk programs from a fully remote location in the United States. You will assess frameworks like SOC 2, ISO 27001, and HIPAA, identify gaps, and help build practical programs that satisfy auditors without adding busywork.
You will collaborate with clients to tailor controls to their business, prepare for audits, respond to security questionnaires, and manage vendor risk while creating documentation that runs
We're looking for someone who can help our clients navigate compliance, build risk programs, and turn security frameworks into something that actually works for their business.
As a GRC Analyst at Insight Security, you'll help clients make sense of the compliance and risk landscape. You'll assess where they stand against frameworks like SOC 2, ISO 27001, and HIPAA, identify gaps, and help them build programs that satisfy auditors without creating busywork.
This isn't about checking boxes on a spreadsheet. You'll work closely with clients to understand their business, figure out what controls actually make sense for their situation, and help them build security programs that are practical and sustainable. When audit time comes, you'll be the one helping them prepare and making sure nothing falls through the cracks.
You'll also help clients respond to security questionnaires, manage vendor risk, and build the documentation that makes everything run smoothly. It's detail-oriented work, but it matters. The companies we work with are often dealing with compliance for the first time, and they need someone who can guide them through it without making it more complicated than it needs to be.
We build security programs for growing companies.