Senior Security GRC Analyst & Compliance Lead

Early Warning Services LLC

San Francisco (CA)

Hybrid

USD 139,000 - 174,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Healthcare Coverage
401(k) Plan with match
Paid Time Off & Holidays
Parental Leave

Job summary

Early Warning Services LLC is seeking a lead for Security Governance, Risk Analytics, and Compliance to enhance audits, assessments, and evidence management. You will design repeatable processes, drive automation, and partner with Security, Technology, and business teams to strengthen compliance readiness.

The role emphasizes cross‑functional collaboration, mature documentation, and clear ownership of assessment activities.

Qualifications

  • Education and/or experience typically obtained through completion of a bachelor's degree or equivalent practical experience.
  • Typically has 7 years of experience or demonstrated portfolio consistent with experience required of the role.
  • Relevant experience in security governance, risk and compliance, information security, technology risk, IT audit, control testing, regulatory readiness, or a comparable operational governance discipline.
  • Demonstrated understanding of control environments, evidence requirements, audit and assessment processes, issue management, and remediation tracking.
  • Experience translating security or compliance requirements into practical processes, operating procedures, or guidance for business and technology stakeholders.
  • Demonstrated program, project, or workstream management skills, including the ability to coordinate cross‑functional activities with competing priorities, dependencies, and ownership.
  • Experience identifying root causes and implementing sustainable process or workflow improvements.
  • Strong written and verbal communication skills, including experience preparing process documentation, stakeholder guidance, management reporting, or executive‑level summaries.
  • Demonstrated ability to build stakeholder alignment and influence outcomes without relying on direct authority.
  • Experience working with GRC, workflow, reporting, collaboration, or comparable enterprise systems.
  • Strong analytical skills and attention to evidence quality, documentation, traceability, and follow‑through.

Responsibilities

  • Establish and improve repeatable processes for security audits, assessments, customer requests, regulatory activities, control reviews, evidence collection, and related compliance obligations.
  • Define and maintain clear intake, triage, ownership, evidence, review, escalation, and closure practices in coordination with Security stakeholders and first‑line risk management partners.
  • Identify and implement workflow and automation opportunities that improve audit readiness, evidence management, compliance tracking, and operational efficiency.
  • Maintain visibility into compliance activities through appropriate GRC, workflow, collaboration, and reporting platforms, including clear ownership, due dates, status, dependencies, blockers, and closure evidence.
  • Develop reusable evidence packages, control narratives, evidence maps, templates, playbooks, checklists, and guidance for recurring compliance activities.
  • Review evidence and compliance responses for completeness, consistency, traceability, and readiness before submission to audit, assessment, regulatory, or customer stakeholders.
  • Partner with Security, Technology, and business subject matter experts to identify recurring audit and assessment issues, reduce duplicative requests, and address root causes of evidence and process gaps.
  • Monitor adherence to applicable security controls, standards, procedures, remediation commitments, and assessment outcomes; identify overdue, incomplete, or ineffective activities and facilitate appropriate escalation.
  • Coordinate findings, observations, and remediation activities by establishing clear ownership, target dates, validation requirements, supporting evidence, escalation paths, and closure criteria.
  • Maintain alignment between operational tracking, GRC records, remediation documentation, and governance or leadership reporting, as applicable.
  • Develop and report metrics related to compliance workload, cycle time, evidence quality, service-level performance, aging items, recurring requests, remediation progress, and closure readiness.
  • Analyze audit, assessment, control, issue, and compliance data to identify recurring themes, systemic process opportunities, emerging concerns, and areas requiring leadership attention.
  • Prepare clear reporting and supporting narratives for Security leadership, cross-functional governance forums, auditors, regulators, customers, and other stakeholders, as appropriate.
  • Translate compliance requirements into practical operating guidance for business and technology teams and provide support that enables stakeholders to understand requirements, ownership, expected evidence, and completion criteria.
  • Support retrospectives and continuous‑improvement activities following significant audits, assessments, customer reviews, or remediation efforts.
  • Support the company's commitment to risk management and protecting the integrity, confidentiality, and availability of systems and data.

Skills

Security governance
Risk & compliance
Info security
IT audit
Regulatory readiness

Education

Bachelor's degree

Tools

Jira
ServiceNow
GRC platforms
Confluence
SharePoint
Excel

Job description

Early Warning Services LLC is seeking a lead for Security Governance, Risk Analytics, and Compliance to enhance audits, assessments, and evidence management. You will design repeatable processes, drive automation, and partner with Security, Technology, and business teams to strengthen compliance readiness.

The role emphasizes cross‑functional collaboration, mature documentation, and clear ownership of assessment activities.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Hybrid GRC Security Lead: Audits, Risk & Compliance
Hybrid GRC Security Lead: Audits, Risk & Compliance

Early Warning Services LLC • Chicago (IL)

Hybrid
USD 116,000 - 145,000
Healthcare Coverage
401(k) Match
Paid Time Off
+2
Lead Security Governance, Risk & Compliance Analyst
Lead Security Governance, Risk & Compliance Analyst

Early Warning (Zelle) • Scottsdale (AZ)

Hybrid
USD 110,000 - 160,000
Security GRC Lead: Audit Readiness & Compliance
Security GRC Lead: Audit Readiness & Compliance

Early Warning (Zelle) • Scottsdale (AZ)

Hybrid
USD 110,000 - 160,000
Remote Security GRC Analyst: Risk & Compliance Lead
Remote Security GRC Analyst: Risk & Compliance Lead

NEPSE Trading • United States

On-site
USD 70,000 - 77,000
Health insurance
401(k) plan with company match
Pension plan
+1
Security Compliance Lead — Build & Audit GRC Program
Security Compliance Lead — Build & Audit GRC Program

Harbinger • Garden Grove (CA)

On-site
USD 130,000 - 160,000
Health insurance
Stock options
401(k) retirement plan
+1
Senior Security Risk & GRC Analyst
Senior Security Risk & GRC Analyst

APCO Holdings, LLC • Ponte Vedra Beach (FL)

On-site
USD 115,000 - 165,000
Competitive compensation
Medical, dental, and vision benefits
401(k) with company match
+2
Senior GRC Lead - AI-Driven Security & Compliance
Senior GRC Lead - AI-Driven Security & Compliance

Gusto • San Francisco (CA)

Hybrid
USD 183,000 - 205,000
Equity (RSUs)
Competitive pay & benefits
Hybrid work schedule (2–3 days in-odd)
Remote Staff Security Engineer, GRC & Compliance Leader
Remote Staff Security Engineer, GRC & Compliance Leader

ezCater • Boston (MA), Northern (KY)

Hybrid
USD 165,000 - 210,000
GRC Security Analyst: Automate Compliance & Risk
GRC Security Analyst: Automate Compliance & Risk

Discord • San Francisco (CA)

Hybrid
USD 144,000 - 162,000
Equity
Relocation assistance
Security GRC Engineer — Lead Compliance & Risk
Security GRC Engineer — Lead Compliance & Risk

Whatnot • Los Angeles (CA)

Hybrid
USD 120,000 - 180,000
Health Insurance options
Work From Home Support
Home office setup allowance
+3