FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

GRC Analyst
TRAC RecruitingGRC Analyst strengthening SOC 2 and GovRAMP compliance for a technology provider serving government and regulated customers. Managing risks, audit evidence, customer assessments, contracts, and public-sector proposals.
Posted 8/13/2026full-timeRemote • 🇺🇸 United StatesMid-LevelSenior💰 $80,000 - $90,000 per yearWebsite
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in GRC program development and administration, with a strong focus on compliance with NIST SP 800-53, SOC 2, and GovRAMP requirements. Proven ability to manage audits, develop security policies, and coordinate compliance-related initiatives in federal and regulated environments.
Highest-signal resume keywords
GRC Program DevelopmentNIST SP 800-53 ComplianceSOC 2 Audit ExperienceCloud Security KnowledgeProposal Development for Government RFPs
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
GRCSecurity ComplianceInternal AuditRisk AssessmentPolicy DevelopmentAudit Evidence ManagementIdentity and Access ManagementEncryptionChange ManagementSoftware Development Lifecycle
Soft Skills
Cross-Functional CommunicationOrganizational SkillsStrategic ThinkingProblem-SolvingAdaptability
Tools & Technologies
VantaDrataAI Tools for DocumentationCompliance Automation Platforms
Certifications & Qualifications
SOC 2FedRAMPISO 27001CMMC
Industry Keywords
CJIS Security PolicyFederal Security RequirementsCloud-Based TechnologyGovernment RFPsContractual Compliance
Tech Stack
Tools & technologiesCloud
About the role
Key responsibilities & impact- Support the ongoing development and administration of the organization's GRC program
- Maintain compliance with NIST SP 800-53, CJIS Security Policy, SOC 2, and GovRAMP requirements
- Maintain the enterprise risk register and assist with periodic risk assessments
- Monitor control performance and identify remediation or improvement areas
- Develop, update, organize, and maintain security and compliance policies and procedures
- Manage policy version control, approvals, annual reviews, and employee attestations
- Support SOC 2 and GovRAMP audit and authorization activities
- Assist with gap assessments and track remediation efforts through completion
- Collect, organize, validate, and maintain audit evidence
- Work with engineering and technical teams to complete compliance-related requirements
- Act as a primary contact for customer security questionnaires, vendor assessments, and compliance reviews
- Maintain approved questionnaire responses, supporting documentation, and customer-facing security materials
- Monitor contractual security, privacy, compliance, reporting, and service obligations
- Maintain a calendar of recurring contractual deliverables and deadlines
- Coordinate reports, SLA documentation, insurance certificates, certifications, and other required compliance materials
- Partner with the Growth team on government and public-sector RFPs, solicitations, and proposal opportunities
- Develop and edit security, technical, compliance, and management proposal sections
- Support proposal amendments, customer questions, formal responses, and post-award activities
- Create reusable proposal content and translate technical security capabilities for procurement and government stakeholders
Requirements
What you’ll need- 3–5+ years of experience in GRC, security compliance, information security, internal audit, or a related discipline
- Experience in a federal, regulated, or cloud-based technology environment
- Hands-on participation in at least one complete audit or authorization cycle involving SOC 2, FedRAMP, StateRAMP/GovRAMP, ISO 27001, CMMC, or a comparable framework
- Working knowledge of NIST SP 800-53, SOC 2, and GovRAMP requirements
- Technical understanding of cloud and/or on-premises environments
- Knowledge of identity and access management, encryption, security logging and monitoring, network architecture, software development lifecycle, and change management
- Practical experience using AI tools for research, drafting, documentation, analysis, or evidence management
- Strong cross-functional written and verbal communication skills
- Evidence-first mindset and ability to identify, collect, organize, and validate control evidence
- Ability to create scalable workflows where processes are evolving
- Organization and execution skills to manage multiple priorities, stakeholders, and deadlines
- Strategic thinking combined with hands-on execution skills
- Adaptability, independent problem-solving, and ownership
- Demonstrated ability to coordinate concurrent initiatives while meeting firm external deadlines
- Ability to work independently and establish processes without extensive direction
- Must live in the United States
- Must be a US Citizen or Green Card Holder
- Must be able to work without sponsorship
- Preferred: experience with CJIS Security Policy, FBI NGI, or criminal justice information systems
- Preferred: experience supporting government or public-sector RFPs and proposal development
- Preferred: familiarity with Vanta, Drata, or similar compliance automation platforms
- Preferred: experience working directly with government agencies or organizations subject to federal security requirements
Benefits
Comp & perks- 🌐 Worldwide ❌ Jobs You've Hidden ⭐️ Saved Jobs ✅ Applied Jobs ✉️ Email Alerts 👤 Account TRAC Recruiting Website LinkedIn All Job Openings 11 - 50 employees Founded 2007 💼 Consulting 🏥 Healthcare 📣 Marketing Consulting
- Healthcare
- Marketing TRAC Recruiting is a women-owned recruiting and staffing firm focused on high-quality, direct-hire placements across industries. The company emphasizes a “quality over quantity” model, building long-term partnerships with clients by deeply understanding their organizations and roles rather than relying on keyword matching. TRAC has particular experience supporting search funds, SaaS companies, and startups, and its team members each have 10+ years of staffing experience, specializing within different divisions to help clients scale effectively. GRC Analyst Job not on LinkedIn 🔥 0 minutes ago 🇺🇸 United States – Remote 💵 $80k - $90k / year ⏰ Full Time 🟡 Mid-level 🟠 Senior 🎲 Risk Apply Now Customize resume + cover letter Report problem ☆ Save ☑️ Mark as applied ❌ Hide 📋 Description
- Support the ongoing development and administration of the organization's GRC program
- Maintain compliance with NIST SP 800-53, CJIS Security Policy, SOC 2, and GovRAMP requirements
- Maintain the enterprise risk register and assist with periodic risk assessments
- Monitor control performance and identify remediation or improvement areas
- Develop, update, organize, and maintain security and compliance policies and procedures
- Manage policy version control, approvals, annual reviews, and employee attestations
- Support SOC 2 and GovRAMP audit and authorization activities
- Assist with gap assessments and track remediation efforts through completion
- Collect, organize, validate, and maintain audit evidence
- Work with engineering and technical teams to complete compliance-related requirements
- Act as a primary contact for customer security questionnaires, vendor assessments, and compliance reviews
- Maintain approved questionnaire responses, supporting documentation, and customer-facing security materials
- Monitor contractual security, privacy, compliance, reporting, and service obligations
- Maintain a calendar of recurring contractual deliverables and deadlines
- Coordinate reports, SLA documentation, insurance certificates, certifications, and other required compliance materials
- Partner with the Growth team on government and public-sector RFPs, solicitations, and proposal opportunities
- Develop and edit security, technical, compliance, and management proposal sections
- Support proposal amendments, customer questions, formal responses, and post-award activities
- Create reusable proposal content and translate technical security capabilities for procurement and government stakeholders 🎯 Requirements
- 3–5+ years of experience in GRC, security compliance, information security, internal audit, or a related discipline
- Experience in a federal, regulated, or cloud-based technology environment
- Hands-on participation in at least one complete audit or authorization cycle involving SOC 2, FedRAMP, StateRAMP/GovRAMP, ISO 27001, CMMC, or a comparable framework
- Working knowledge of NIST SP 800-53, SOC 2, and GovRAMP requirements
- Technical understanding of cloud and/or on-premises environments
- Knowledge of identity and access management, encryption, security logging and monitoring, network architecture, software development lifecycle, and change management
- Practical experience using AI tools for research, drafting, documentation, analysis, or evidence management
- Strong cross-functional written and verbal communication skills
- Evidence-first mindset and ability to identify, collect, organize, and validate control evidence
- Ability to create scalable workflows where processes are evolving
- Organization and execution skills to manage multiple priorities, stakeholders, and deadlines
- Strategic thinking combined with hands-on execution skills
- Adaptability, independent problem-solving, and ownership
- Demonstrated ability to coordinate concurrent initiatives while meeting firm external deadlines
- Ability to work independently and establish processes without extensive direction
- Must live in the United States
- Must be a US Citizen or Green Card Holder
- Must be able to work without sponsorship
- Preferred: experience with CJIS Security Policy, FBI NGI, or criminal justice information systems
- Preferred: experience supporting government or public-sector RFPs and proposal development
- Preferred: familiarity with Vanta, Drata, or similar compliance automation platforms
- Preferred: experience working directly with government agencies or organizations subject to federal security requirements Apply Now 📊 Check your resume score for this job Improve your chances of getting an interview by checking your resume score before you apply. Check Resume Score Similar Jobs Coordinator, Governance and Network Engagement 🔥 8 hours ago WWF 1001 - 5000 🤝 Non-profit 🤲 Charity 🌍 Social Impact Website LinkedIn All Job Openings WWF International governance coordinator supporting senior leadership meetings, strategic research, and executive presentations. Managing calendars, meeting packages, documents, travel, and network governance communications. 🇺🇸 United States – Remote ⏰ Full Time 🟡 Mid-level 🟠 Senior 🎲 Risk Manager, Risk Strategy 🔥 14 hours ago SentiLink 51 - 200 🔐 Security 💳 Fintech 💸 Finance Website LinkedIn All Job Openings Manager leading model governance for SentiLink, which provides real-time identity verification and fraud-risk solutions. Building regulated model-risk processes, customer trust, and a scalable governance team. 🇺🇸 United States – Remote 💵 $210k - $240k / year 💰 $70M Series B on 2021-08 ⏰ Full Time 🟠 Senior 🔴 Lead 🎲 Risk 🦅 H1B Visa Sponsor Identity Governance & Administration Engineer, Saviynt 🔥 16 hours ago MKS Instruments 10,000+ employees 🏭 Manufacturing 💼 Consulting 🎖️ Defense Website LinkedIn All Job Openings IGA Engineer owning Saviynt identity governance, lifecycle management, integrations, and compliance for MKS, a semiconductor technology company. Automating secure access operations across enterprise systems. 🇺🇸 United States – Remote 💵 $88k - $147k / year ⏰ Full Time 🟡 Mid-level 🟠 Senior 🎲 Risk 🦅 H1B Visa Sponsor Senior Risk Manager 🔥 16 hours ago DaVita Kidney Care 10,000+ employees 🏥 Healthcare ⚕️ Healthcare Insurance Website LinkedIn All Job Openings Risk Senior Manager overseeing legal risk for DaVita, a comprehensive kidney care provider. Supporting equitable, high-quality kidney care and business risk solutions. 🇺🇸 United States – Remote 💵 $85k - $135k / year 💰 Post-IPO Debt on 2021-02 ⏰ Full Time 🟠 Senior 🎲 Risk Senior Risk Manager – Data Center 🔥 19 hours ago Accenture 10,000+ employees 💼 Consulting 🤖 Artificial Intelligence ☁️ SaaS Website LinkedIn All Job Openings Senior Risk Manager establishing OFE and General Contractor risk programs for Accenture Infrastructure & Capital Projects. Supporting data center construction, O&M, and Machine Learning ramp risk mitigation. 🇺🇸 United States – Remote 💵 $145k - $165k / year ⏰ Full Time 🟠 Senior 🎲 Risk 🦅 H1B Visa Sponsor View More Risk Manager Jobs 🌐 Worldwide Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com Search Search Jobs by country Search jobs by city Search jobs by job title Search entry-level jobs Search junior-level jobs Search senior-level jobs Search jobs by tech stack Search jobs by contract type Search remote internships Search remote part-time jobs Remote jobs Anywhere in the World Companies Hiring Anywhere in the World Companies Hiring Sales People Anywhere in the World Companies Hiring Software Engineers Anywhere in the World Resources Advice Tips for finding remote jobs Interview questions and answers Resume examples Cover letter examples Post a job Affiliates About us Is Remote Rocketship legit? Privacy policy Terms of service Job board SEO course Remote Job Search MasterClass AI Apply Copilot OpenClaw job finder Find jobs using your resume Jobs by Country Remote jobs anywhere in the world (Worldwide remote jobs) Remote jobs United States Remote jobs Australia Remote jobs Brazil Remote jobs Canada Remote jobs France Remote jobs Ireland Remote jobs Germany Remote jobs Netherlands Remote jobs Spain Remote jobs UK Popular Jobs Remote data analyst jobs Remote customer support jobs Remote executive assistant jobs Remote marketing jobs Remote product designer jobs Remote product manager jobs Remote project manager jobs Remote recruiter jobs Remote sales jobs Remote software engineer jobs Jobs by Type Remote full-time jobs Remote part-time jobs Remote contract jobs Remote internship jobs Remote entry-level jobs Remote jobs with no experience required Remote junior jobs (1-3 years of experience) Digital nomad jobs Remote jobs with no degree required Freelance remote jobs Temporary remote jobs Remote jobs hiring now Stay at home mom jobs