
Governance, Risk, and Compliance Analyst
StarRez, Inc.
full-time
Posted on:
Location Type: Remote
Location: Remote • 🇺🇸 United States
Visit company websiteSalary
💰 $80,000 - $90,000 per year
Job Level
JuniorMid-Level
Tech Stack
CloudGo
About the role
- Act as a visible champion for strong security and privacy practices across StarRez
- Perform and coordinate risk assessments, vendor security reviews and business impact assessments
- Support internal and external compliance audits, including SOC 2 Type II, PCI DSS, Cyber Essentials Plus, GovRAMP and other frameworks
- Coordinate and execute risk mitigation projects, either directly or by engaging the appropriate technical and business stakeholders
- Maintain and improve documentation and evidence required for customer assurance, audit readiness and due diligence processes
- Support the Security Operations Manager and Go-To-Market teams with internal audits, contract reviews and security term assessments
- Produce and deliver customer-facing documentation, resources and presentations that highlight the StarRez security program, and respond to customer security and compliance questions
Requirements
- 2+ years of experience in information security, risk management, IT compliance or data privacy
- Working knowledge of security frameworks and requirements, particularly SOC 2, PCI DSS v4, Cyber Essentials Plus and NIST 800-53 or GovRAMP
- Strong understanding of governance, risk and compliance concepts and how they apply within SaaS or cloud-based environments
- Experience collaborating cross-functionally with product, engineering and business teams to manage risk and meet compliance objectives
- Excellent written and verbal communication skills with the ability to translate complex technical or regulatory requirements into practical business terms.
- Hands-on experience with GRC and relevant platforms such as Vanta, Tenable, and Crowdstrike (preferred)
Benefits
- Full benefits including health care
- Paid time off
- Life insurance
- 401k plan with company match for eligible team members
- A supportive team environment with emphasis on learning and development opportunities
- Our Promise: You will learn, grow, and be appreciated for your impact and contributions.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
information securityrisk managementIT compliancedata privacysecurity frameworksSOC 2PCI DSSCyber Essentials PlusNIST 800-53GovRAMP
Soft skills
collaborationcommunicationdocumentationpresentation skillsstakeholder engagementrisk assessmentaudit readinesscustomer assuranceproblem-solvingtranslating technical requirements