GRC Analyst

Bazeta

San Francisco (CA)

Remote

USD 134,000 - 202,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Equity
Healthcare package
Mentorship and events budget
Flexible time off
WFH budget

Job summary

Vercel is seeking a GRC Analyst to join the Governance, Risk & Compliance team. You will manage and maintain ongoing compliance with security and privacy frameworks including ISO 27001, SOC 2, HIPAA, and PCI DSS, collaborating with cross-functional teams to promote accountability and integrity.

You will report to the Head of GRC and can be remote, onsite, or hybrid, with in-office anchor days at selected locations as applicable.

Qualifications

  • At least 3 years of experience supporting the audit lifecycle in a cloud-centric environment (SOC 2, ISO 27001, PCI, HIPAA, etc.).
  • Strong organizational, communication, and collaboration skills across teams.

Responsibilities

  • Collaborate with internal teams to maintain effective internal controls and drive remediation with documented progress.
  • Build relationships across the business to share compliance accountability and keep stakeholders informed.
  • Manage audit deliverables, develop treatment plans, and coordinate across teams to ensure audit success.

Skills

Audit lifecycle
Cloud security
Project management
Policy communication

Tools

Drata
Linear
Datadog

Job description

# GRC AnalystUnited States9 hours agoID 1185183Price on request## DetailsEmployment type: Full-timeRemote: YesCompany: VercelLevel: Any## DescriptionAbout Vercel : Vercel is the agentic infrastructure company, freeing people and agents to ship what's next. For more than a decade we've helped builders move from idea to production with speed, security, and exceptional developer experience. Now we're scaling our products for both agents and people to ship and run software, built in the open and trusted by OpenAI, PayPal, Ramp, Supreme, and millions of developers worldwide. About the role: We are looking for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance with security and privacy frameworks, policies, procedures, and commercial assessments, including ISO 27001, SOC 2, HIPAA, PCI DSS, and more. Your role will be instrumental in ensuring that our company operates ethically, responsibly, and in accordance with regulatory requirements. You will collaborate with cross-functional teams to promote a culture of accountability and integrity throughout the organization and foster an environment where everyone understands the importance of adhering to established guidelines and ethical practices. You will report to the Head of GRC and will be located ((remote, onsite, hybrid)). Think you may not have all the skills and are hesitant to apply? There is no “perfect” candidate and we encourage you to apply if you think that you can bring value to our team and are passionate and committed to upholding the highest standards of compliance and ethics. If you’re based within a pre-determined commuting distance of one of our offices (SF, NY, London, or Berlin), the role includes in-office anchor days on Monday, Tuesday, and Friday, even if the role is listed as remote. For location-specific details, please connect with our recruiting team. What you will do: • Collaborate with internal teams to maintain an effective suite of internal controls and drive remediation efforts to completion with clear documentation of progress. • Build strong working relationships across the business so compliance accountability is shared and stakeholders are informed. • Streamline annual audits by managing audit deliverables, developing treatment plans, and coordinating across teams to document and track completion to ensure audit success. • Monitor and improve controls , processes, and evidence management practices, identify opportunities to automate and streamline GRC operations, and contribute to controls maturity scoring and reporting • Enable go-to-market teams and accelerate deal cycles by supporting security questionnaires, addressing compliance inquiries, and maintaining clear, customer-facing documentation on Vercel’s security and compliance posture. • Design and manage company training and enhance visibility on compliance-specific topics for internal stakeholders to ensure an understanding of compliance, ethics, and regulatory requirements within the organization. About you: • At least 3 years of relevant experience in supporting the audit lifecycle in a cloud-centric environment (SOC 2, ISO 27001, PCI, HIPAA, etc.), with strong organizational skills to be flexible and proactive in a high-growth, start-up environment. • Experience collaborating closely with internal partners to seamlessly incorporate policies and technical controls into the SDLC. • Strong project management skills and sense of ownership with the ability to communicate and collaborate effectively, and execute projects across various business units and levels. Bonus if you have: • Strong experience with cloud infrastructure (e.g., Azure, AWS) • Familiarity with compliance or software development tools and systems (e.g., Drata, Linear, Datadog, etc.) • Experience with frontend development and open source components • Relevant industry certifications (i.e., CISM, CISSP, CCEP) are a plus, but not required Compensation & Benefits: • Competitive compensation package, including equity. • Inclusive Healthcare Package. • Learn and Grow - we provide mentorship and send you to events that help you build your network and skills. • Flexible Time Off. • We will provide you the gear you need to do your role, and a WFH budget for you to outfit your space as needed. The San Francisco, CA base pay range for this role is $134,000-$202,000. Actual salary will be based on job-related skills, experience, and location. Compensation outside of San Francisco may be adjusted based on employee location. The total compensation package may include benefits, equity-based compensation, and eligibility for a company bonus or variable pay program depending on the role. Your recruiter can share more details during the hiring process. Disclosures: • Privacy: Please review our Job Applicant Privacy Policy for more information on how we handle your data. • Equal Opportunity: Vercel is committed to fostering and empowering an inclusive community within our organization. We do not discriminate on the basis of race, religion, color, gender expression or identity, sexual orientation, national origin, citizenship, age, marital status, veteran status, disability status, or any other characteristic protected by law. Vercel encourages everyone to apply for our available positions, even if they don't necessarily check every box on the job description.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

Vercel Inc. • United States

On-site
USD 134,000 - 202,000
Equity
Healthcare package
Mentorship & events
+2
GRC Analyst: Remote-Ready Compliance & Audit Pro
GRC Analyst: Remote-Ready Compliance & Audit Pro

vercel.com • San Francisco (CA)

Hybrid
USD 134,000 - 202,000
Competitive compensation package including equity
Inclusive Healthcare Package
Mentorship and networking events
+2
GRC Analyst
GRC Analyst

vercel.com • San Francisco (CA)

On-site
USD 134,000 - 202,000
Competitive compensation package including equity
Inclusive Healthcare Package
Mentorship and networking events
+2
GRC Analyst
GRC Analyst

Webhosting • San Francisco (CA), New York (NY)

On-site
USD 134,000 - 202,000
Remote GRC Analyst — Security & Compliance
Remote GRC Analyst — Security & Compliance

Webhosting • San Francisco (CA), New York (NY)

Hybrid
USD 134,000 - 202,000
Senior HRBP - G&A San Francisco
Senior HRBP - G&A San Francisco

vercel.com • San Francisco (CA)

On-site
USD 180,000 - 220,000
Competitive compensation package including equity
Inclusive Healthcare Package
Flexible Time Off
+2
Security Software Engineer, IAM
Security Software Engineer, IAM

Bazeta • Northern (KY)

Hybrid
USD 208,000 - 312,000
Equity
Healthcare package
WFH budget
+1
Senior Recruiter
Senior Recruiter

Vercel Inc. • New York (NY)

Hybrid
USD 176,000 - 215,000
Equity
Healthcare package
Mentorship and events
+2
Remote GRC Analyst - Security & Compliance Lead
Remote GRC Analyst - Security & Compliance Lead

Bazeta • San Francisco (CA)

Remote
USD 134,000 - 202,000
Equity
Healthcare package
Mentorship and events budget
+2
Software Engineer, Trust & Safety
Software Engineer, Trust & Safety

Vercel • San Francisco (CA)

On-site
USD 196,000 - 294,000
Equity
Healthcare Package
Mentorship and events
+2