Remote Junior GRC Analyst: Security & Compliance

Jobvite, Inc.

Seattle (WA)

Remote

USD 94,000 - 104,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Davis Wright Tremaine LLP is seeking a Junior Governance, Risk & Compliance (GRC) Analyst to join our Security Office remotely within reasonable commuting distance of our offices. The role supports audits, vendor security reviews, and regulatory readiness across ISO 27001, NIST CSF, and SOC 2 frameworks.

You will help maintain the ISMS, coordinate client inquiries, and assist with audit preparedness and policy administration while working under senior Security Office personnel.

Qualifications

  • 2 years of experience in cybersecurity, compliance, audit, risk management, legal operations, governance, or related fields.
  • Bachelor's Degree in Cybersecurity, Information Systems, Business Administration, Risk Management, Legal Studies, or related field preferred
  • Equivalent combination of education and experience may be considered
  • Strong written communication and documentation skills
  • Proficiency using Microsoft 365 applications
  • Ability to manage sensitive and confidential information
  • Strong organizational and analytical skills
  • Ability to manage multiple concurrent projects and deadlines
  • Exposure to cybersecurity governance or compliance activities
  • Understanding of common security frameworks (ISO 27001, NIST CSF, SOC 2)
  • Experience reviewing contracts, questionnaires, audit requests, or vendor documentation
  • Familiarity with professional services, legal, or highly regulated environments
  • Experience using AI-assisted research and document analysis tools

Responsibilities

  • Assist with client security audits and assessments.
  • Gather, organize, and maintain audit evidence packages.
  • Coordinate collection of supporting documentation from multiple business units.
  • Draft responses to customer security questionnaires utilizing approved evidence repositories.
  • Track audit deliverables, deadlines, and open requests.
  • Maintain client audit documentation and records.
  • Support continuous improvement of audit response processes.
  • Review client Outside Counsel Guidelines for cybersecurity, privacy, AI governance, incident response, and compliance requirements.
  • Document identified security requirements and contractual obligations.
  • Track OCG-derived security requirements and remediation activities.
  • Support preparation of Security Office recommendations and exception documentation.
  • Maintain OCG tracking databases and reporting artifacts.
  • Support vendor cybersecurity reviews and due diligence activities.
  • Review vendor security questionnaires, SIG responses, SOC reports, certifications, attestations, and supporting evidence.
  • Assist in documenting security findings, risks, recommendations, and compensating controls.
  • Track vendor remediation activities and review cycles.
  • Maintain vendor assessment records and documentation libraries.
  • Support periodic vendor reevaluations and monitoring activities.
  • Support ISO 27001, internal audit, client audit, and regulatory readiness activities.
  • Assist with evidence management and document control.
  • Verify security policies, standards, procedures, and records remain current.
  • Participate in audit preparation exercises and gap assessments.
  • Track corrective actions and audit observations.
  • Maintain governance documentation repositories.
  • Assist with security policy review activities.
  • Monitor compliance tracking programs.
  • Support security metrics development and reporting.
  • Assist with risk register and remediation tracking activities.
  • Contribute to process improvement and automation initiatives.
  • Update SOPs, standards, procedures, and knowledge base content.
  • Maintain audit, OCG, and vendor review records.
  • Ensure documentation remains organized, current, and accessible.
  • Coordinate with Procurement, Information Governance, Legal, and Security Operations stakeholders.

Skills

Cybersecurity
Compliance
Audit
Risk management
Governance
Legal operations

Education

Bachelor's degree

Job description

Davis Wright Tremaine LLP is seeking a Junior Governance, Risk & Compliance (GRC) Analyst to join our Security Office remotely within reasonable commuting distance of our offices. The role supports audits, vendor security reviews, and regulatory readiness across ISO 27001, NIST CSF, and SOC 2 frameworks.

You will help maintain the ISMS, coordinate client inquiries, and assist with audit preparedness and policy administration while working under senior Security Office personnel.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Remote Junior GRC Analyst - Risk & Compliance
Remote Junior GRC Analyst - Risk & Compliance

Jobvite, Inc. • United States

Hybrid
USD 94,000 - 111,000
Health insurance
2 volunteer days for community service
Dental plan
+5
Senior GRC & ISMS Security Analyst
Senior GRC & ISMS Security Analyst

Dorsey & Whitney LLP • Salt Lake City (UT)

On-site
USD 120,000 - 180,000
Senior GRC & InfoSec Systems Analyst – Audit & Compliance
Senior GRC & InfoSec Systems Analyst – Audit & Compliance

Dorsey & Whitney LLP • New York (NY)

On-site
USD 120,000 - 180,000
Medical Insurance
Paid time off
Parental Leave
Senior GRC & InfoSec Systems Analyst
Senior GRC & InfoSec Systems Analyst

Dorsey & Whitney LLP • Denver (CO)

On-site
USD 120,000 - 180,000
Senior GRC InfoSec Lead: Audits, Risk & Compliance
Senior GRC InfoSec Lead: Audits, Risk & Compliance

Dorsey & Whitney LLP • Minneapolis (MN)

On-site
USD 115,000 - 155,000
Remote GRC Analyst — SOC 2 & ISO 27001 Expert
Remote GRC Analyst — SOC 2 & ISO 27001 Expert

Parallels • United States

Remote
USD 120,000 - 130,000
Fully remote
Remote GRC Analyst - InfoSec Compliance & Audit
Remote GRC Analyst - InfoSec Compliance & Audit

Paycom - ATS • Atlanta (GA)

Remote
USD 90,000 - 120,000
Governance, Risk, & Compliance (GRC) Analyst
Governance, Risk, & Compliance (GRC) Analyst

Districttechgroup • Washington

On-site
USD 80,000 - 100,000
Fully remote work environment
Competitive salary and performance bonuses
Health, dental, and vision insurance
+2
Remote GRC Analyst - SOC 2, ISO 27001, DORA
Remote GRC Analyst - SOC 2, ISO 27001, DORA

Calckey • Northern (KY)

Hybrid
USD 120,000 - 130,000
Senior GRC & ISMS Security Analyst
Senior GRC & ISMS Security Analyst

Dorsey & Whitney LLP • Phoenix (AZ)

On-site
USD 110,000 - 170,000
Medical insurance
Dental & vision coverage
401(k)
+2