Tines

Senior GRC Analyst

Tines

full-time

Posted on:

Location: 🇺🇸 United States

Visit company website
AI Apply
Apply

Job Level

Senior

Tech Stack

AWSAzureCloudGoogle Cloud Platform

About the role

  • FedRAMP Certification Efforts - Assist our FedRAMP certification program, including gap analysis, remediation planning, documentation development, and coordination with 3PAO assessors
  • Maintain SOC 2 Compliance - Support continuous compliance with SOC 2 requirements, including evidence collection, control testing, and audit coordination
  • Vendor Risk Management - Establish and manage a comprehensive vendor risk assessment program, evaluating security controls and compliance posture before acquisition
  • Risk Assessment and Management - Conduct thorough risk analyses for systems, processes, and third-party applications, implementing appropriate controls to mitigate identified risks
  • Compliance Automation - Leverage Tines automation capabilities to streamline compliance processes, evidence collection, and reporting
  • Customer Security Assurance - Respond to customer security inquiries, questionnaires, and audit requests, maintaining our Trust Center with up-to-date documentation
  • Policy Development and Maintenance - Review, update, and develop security policies and procedures aligned with regulatory requirements and industry best practices
  • Cross-functional Collaboration - Partner with engineering, product, legal, and leadership teams to embed compliance requirements into organizational processes
  • Contract Review and Management - Collaborate closely with the legal team to review contracts for security and compliance requirements, ensure appropriate security provisions are included, identify potential compliance risks, and recommend mitigating controls. Help develop standardized security language for various contract types.
  • Regulatory Monitoring - Stay current with evolving compliance standards and regulatory requirements relevant to our business and customers

Requirements

  • 8+ years of experience in IT compliance, security, or risk management
  • Demonstrated experience with FedRAMP certification processes and requirements
  • Hands-on experience implementing or maintaining ISO 27001 compliance
  • Strong knowledge of SOC 2 compliance frameworks and audit processes
  • Experience conducting vendor security assessments and risk analyses
  • Excellent understanding of information security principles, controls, and best practices
  • Strong project management skills with ability to manage multiple compliance initiatives simultaneously
  • Exceptional communication skills for translating technical requirements to non-technical stakeholders
  • Industry certifications such as CISSP, CISA, or CISM
  • Experience with compliance automation tools and techniques
  • Knowledge of cloud security principles and controls (AWS, Azure, GCP)
  • Experience reviewing contracts for security and compliance requirements
  • Experience in SaaS or technology companies
  • Familiarity with privacy regulations (GDPR, CCPA)
  • Experience working in remote-first environments
TTM Technologies

GRC Analyst

TTM Technologies
Mid · Seniorfull-time🇺🇸 United States
Posted: 3 hours agoSource: ttmtech.wd5.myworkdayjobs.com
Cyber Security
United Rentals

Safety Compliance Manager

United Rentals
Mid · Seniorfull-timeCalifornia · 🇺🇸 United States
Posted: 3 hours agoSource: ur.wd1.myworkdayjobs.com
MTM, Inc.

Compliance Coordinator

MTM, Inc.
Mid · Seniorfull-time$52k–$52k / yearLouisiana, Minnesota, Montana, Pennsylvania, Rhode Island · 🇺🇸 United States
Posted: 5 hours agoSource: mtminc.wd1.myworkdayjobs.com
Truist

Business Data Steward Manager – Regulatory Reporting

Truist
Senior · Leadfull-timeNorth Carolina · 🇺🇸 United States
Posted: 6 hours agoSource: truist.wd1.myworkdayjobs.com
Eversource Energy

Manager, Instrumentation and Regulation – Gas

Eversource Energy
Senior · Leadfull-time$149k–$165k / yearConnecticut · 🇺🇸 United States
Posted: 6 hours agoSource: eversource.wd1.myworkdayjobs.com