rainfocus Verified 21h ago
Senior Governance, Risk, and Compliance (GRC) Analyst (Remote)
Orem, UT Hybrid
Salary not listedPaySalary not listed
TypeFull-time
Work settingHybrid
Verified listing
JobFig found this opening at its original source and checks that it remains available.
About the role
We are seeking a highly skilled and motivated Senior GRC Analyst to join our Security and Privacy team. In this role, you will own and grow RainFocus's governance, risk, and compliance program — maintaining our control framework, leading risk assessments, supporting audits, and driving the program's maturity forward rather than simply maintaining the status quo. You will report directly to the CISO and have significant ownership from day one. As a member of the RainFocus team, you will have the opportunity to experience first-hand the impact of our platform at events around the world.
What you'll bring
- 6+ years of proven experience in GRC, IT audit, information security compliance, or a related field.
- In-depth knowledge of relevant regulations, standards, and frameworks (e.g., SOC 2, ISO 27001, PCI DSS, NIST 800-series, GDPR, and others).
- Experience running or contributing heavily to formal risk assessments — not just tracking a compliance checklist.
- Familiarity with modern security tooling such as Drata, OneTrust, Vanta, etc.
- Strong analytical and problem-solving skills, with keen attention to detail.
- Excellent communication and interpersonal skills to work effectively with technical and non-technical stakeholders.
- Ability to manage multiple projects and meet deadlines in a fast-paced environment.
- Bachelor's degree in Technology, Cybersecurity, or a related field is highly desirable.
- Professional certifications such as CISA, CRISC, CISSP, CIPP, or CIPM are highly desirable.
- Experience with cloud security and compliance frameworks is a plus.
- Experience with OneTrust or related GRC technologies is a plus.
Benefits
401(k)Paid Time Off