Senior GRC Analyst: AI Security & Compliance Leader

Shift Technology

New York (NY)

Hybrid

USD 120,000 - 150,000

Full time

22 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Remote and hybrid options
Learning & development opportunities
Generous PTO & holidays
Mental health benefits
Volunteer days

Job summary

Shift Technology is seeking a Senior GRC Analyst to architect and manage a unified governance, risk, and compliance program within its Information Security team. You will drive policy, risk assessments, DPIAs, and third‑party security programs to protect customer data and regulatory posture.

You will coordinate internal and external audits (ISO 27001, SOC 2 Type II) and partner with DPOs to ensure privacy protections, while communicating risk to stakeholders and leadership.

Qualifications

  • 7+ years of experience in a GRC, IT Audit, Security Assurance, or Information Security role.
  • Bachelor’s Degree in a relevant field or equivalent work experience.
  • Professional certifications such as CIPP/E, CIPP/US, CIPT CISA, CISM, CRISC, or CISSP are highly desirable.

Responsibilities

  • Develop and maintain the security assurance plan to meet Shift policies and standards.
  • Improve third-party information security assurance and continual assessment.
  • Identify risk areas and facilitate security control evaluations and testing.
  • Review architectural designs to align with security policies and mitigate risk.
  • Support DPIAs for new products and initiatives.
  • Manage and coordinate audits for certifications like ISO 27001 and SOC 2 Type II.

Skills

GRC experience
Audit management
Compliance knowledge

Education

Bachelor’s degree in a relevant field
CIPP/E, CIPP/US, CIPT, CISA, CISM, CRISC, or CISSP

Tools

Drata

Job description

Shift Technology is seeking a Senior GRC Analyst to architect and manage a unified governance, risk, and compliance program within its Information Security team. You will drive policy, risk assessments, DPIAs, and third‑party security programs to protect customer data and regulatory posture.

You will coordinate internal and external audits (ISO 27001, SOC 2 Type II) and partner with DPOs to ensure privacy protections, while communicating risk to stakeholders and leadership.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior GRC & Information Security Lead
Senior GRC & Information Security Lead

Dorsey & Whitney LLP • Phoenix (AZ)

On-site
USD 140,000 - 180,000
Health benefits
Paid time off
Parental leave
Senior GRC Engineer - Automate Compliance & Security
Senior GRC Engineer - Automate Compliance & Security

Cloud Software Group • San Ramon (CA)

On-site
USD 160,000 - 241,000
Senior GRC & InfoSec Systems Analyst – Audit & Compliance
Senior GRC & InfoSec Systems Analyst – Audit & Compliance

Dorsey & Whitney LLP • New York (NY)

On-site
USD 120,000 - 180,000
Medical Insurance
Paid time off
Parental Leave
Senior GRC Analyst
Senior GRC Analyst

Averity • New York (NY)

On-site
USD 90,000 - 140,000
Senior GRC & ISMS Security Analyst
Senior GRC & ISMS Security Analyst

Dorsey & Whitney LLP • Minneapolis (MN)

On-site
USD 120,000 - 180,000
Senior GRC Manager — Security & Compliance Lead
Senior GRC Manager — Security & Compliance Lead

Socket.dev • Chicago (IL)

On-site
USD 110,000 - 140,000
Remote Security GRC Analyst: Risk & Compliance Lead
Remote Security GRC Analyst: Risk & Compliance Lead

NEPSE Trading • United States

On-site
USD 70,000 - 77,000
Health insurance
401(k) plan with company match
Pension plan
+1
Senior GRC & ISMS Analyst: Security Audits & Compliance
Senior GRC & ISMS Analyst: Security Audits & Compliance

Dorsey & Whitney LLP • Dallas (TX)

On-site
USD 120,000 - 170,000
Senior GRC & InfoSec Systems Analyst
Senior GRC & InfoSec Systems Analyst

Dorsey & Whitney LLP • Wilmington (DE)

On-site
USD 114,000 - 150,000
Senior GRC & ISMS Security Analyst
Senior GRC & ISMS Security Analyst

Dorsey & Whitney LLP • Salt Lake City (UT)

On-site
USD 120,000 - 180,000