GRC Security Analyst: Automate Compliance & Risk

Discord

San Francisco (CA)

Hybrid

USD 144,000 - 162,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity
Relocation assistance

Job summary

Discord is seeking a Security Analyst to lead and scale its Security GRC program. You will own the day-to-day workflows—from questionnaires to risk tracking—partnering with Security, Engineering, IT, and Legal to make compliance friction-free.

The role emphasizes automation, documentation, and repeatable processes to reduce manual work and improve controls across the org. The ideal candidate has 4+ years in security compliance or related fields, hands-on experience with GRC processes, and a

Qualifications

  • 4+ years in security compliance, GRC, or a closely related field (security operations, IT risk, audit).
  • Working familiarity with common frameworks (ISO 27001/27002, SOC 2, PCI DSS, GDPR/CPRA) and a sense of how their requirements turn into day-to-day controls.
  • Hands-on experience operating compliance processes: evidence collection, control tracking, risk register upkeep, or security questionnaire response.
  • An automation-first instinct. You reach for tooling, integrations, and repeatable workflows to replace manual, repetitive compliance work, not box-checking.
  • Comfort living across tools (GRC platforms, ticketing, docs and wikis) and a habit of keeping data clean and organized.
  • Clear writing, with a knack for turning dense requirements into guidance people actually use.
  • Ability to work across teams and influence without authority in a fast-moving environment with competing priorities.

Responsibilities

  • Run the customer security questionnaire program end-to-end, from intake through response, and grow a reusable answer library that turns repeat questions into fast, near-self-service answers.
  • Operate risk and control workflows: triage incoming risks, track gap closure and risk treatment through to completion, and keep the risk register accurate and current.
  • Run GRC analyses that turn into decisions: how standards, procedures, and controls align to our policies and framework requirements; where the gaps are; and how mature and effective our controls actually are.
  • Build and maintain the GRC toolchain and its automation: administer our GRC platform, ticketing, and knowledge bases, and design the integrations and workflows that collect evidence and check controls by default rather than by hand.
  • Create the documentation that makes the program usable: internal guidance and updates to our policies, standards, and procedures; company-wide GRC communications; and security training delivered in plain language that people outside the field can follow.

Skills

Security compliance
Security frameworks
Compliance processes
Automation mindset
GRC tools
Technical writing
Cross-functional collaboration

Tools

GRC platform

Job description

Discord is seeking a Security Analyst to lead and scale its Security GRC program. You will own the day-to-day workflows—from questionnaires to risk tracking—partnering with Security, Engineering, IT, and Legal to make compliance friction-free.

The role emphasizes automation, documentation, and repeatable processes to reduce manual work and improve controls across the org. The ideal candidate has 4+ years in security compliance or related fields, hands-on experience with GRC processes, and a

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Security GRC Analyst: Risk & Compliance Lead
Remote Security GRC Analyst: Risk & Compliance Lead

NEPSE Trading • United States

On-site
USD 70,000 - 77,000
Health insurance
401(k) plan with company match
Pension plan
+1
GRC Analyst: Risk, Compliance & Security Awareness
GRC Analyst: Risk, Compliance & Security Awareness

Protective • United States

Remote
USD 70,000 - 77,000
Health insurance
Dental insurance
Vision insurance
+5
Security GRC Lead: Automate Compliance in Cloud CI/CD
Security GRC Lead: Automate Compliance in Cloud CI/CD

Candid Health • New York (NY)

On-site
USD 180,000 - 258,000
Senior GRC Engineer - Automate Compliance & Security
Senior GRC Engineer - Automate Compliance & Security

Cloud Software Group • San Ramon (CA)

On-site
USD 160,000 - 241,000
GRC Automation Engineer: Continuous Compliance
GRC Automation Engineer: Continuous Compliance

Plaid • Seattle (WA)

On-site
USD 156,000 - 214,000
Equity
401(k)
Security GRC Engineer - Automation & Compliance Platform
Security GRC Engineer - Automation & Compliance Platform

candidhealth • United States

On-site
USD 120,000 - 180,000
GRC Analyst — Lead Security & Compliance at Scale
GRC Analyst — Lead Security & Compliance at Scale

Zip • United States

On-site
USD 95,000 - 150,000
Start-up equity
Health, vision & dental coverage
Catered meals
+7
GRC & Privacy Strategist: Automate Compliance & Audits
GRC & Privacy Strategist: Automate Compliance & Audits

Jobless • Northern (KY)

Hybrid
USD 115,000 - 125,000
Health benefits
401(k) matching
Paid time off
+1
GRC Automation Engineer — Controls & Compliance
GRC Automation Engineer — Controls & Compliance

Box • United States

On-site
USD 140,000 - 190,000
GRC Automation Architect
GRC Automation Architect

Anthropic • New York (NY)

On-site
USD 405,000