1

Grc Auditor Jobs in Puerto Rico (NOW HIRING)

PR · On-site

If you are dedicated and eager to grow your auditing career, we will provide you with a supportive ... Maintain assessment documentation within GRC tools (e.g., ServiceNow) * Stay current with evolving ...

Grc Auditor information

What is a GRC auditor?

A GRC Auditor is a professional responsible for evaluating an organization's Governance, Risk Management, and Compliance (GRC) processes. They assess whether the organization is following relevant laws, regulations, and internal policies, and help identify areas of risk or non-compliance. GRC Auditors often conduct audits, review documentation, and provide recommendations to improve controls and ensure the organization meets its regulatory and operational requirements.

What are the key skills and qualifications needed to thrive as a GRC auditor?

To thrive as a GRC Auditor, you need a strong understanding of governance, risk management, compliance frameworks, and auditing principles, often supported by a degree in accounting, finance, or a related field. Familiarity with audit management tools, GRC platforms (such as RSA Archer or MetricStream), and certifications like CISA, CRISC, or CISSP are commonly required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills to excel in this role. These competencies ensure comprehensive risk assessments, regulatory compliance, and effective reporting, which are critical for organizational integrity and security.

What are the main challenges GRC auditors face when ensuring compliance across multiple departments?

GRC Auditors often encounter challenges in standardizing compliance processes across diverse departments, each with their own workflows and risk profiles. Coordinating with various teams to gather accurate data and evidence can be time-consuming, especially when systems are not integrated. Communication and collaboration are crucial, as auditors must often explain regulatory requirements and best practices to non-technical staff. Proactively building strong relationships and clear processes helps overcome these hurdles and ensures smoother audits.

What is the difference between Grc Auditor vs Compliance Analyst?

AspectGrc AuditorCompliance Analyst
CertificationsISO 27001 Lead Auditor, CISA, CISMCertified Compliance & Ethics Professional (CCEP), CCEP-I
Work EnvironmentAudit firms, corporate compliance departmentsCorporate compliance teams, regulatory agencies
Industry UsageRisk management, IT, financeRegulatory adherence, policy enforcement

Grc Auditors focus on evaluating an organization’s governance, risk, and compliance frameworks through audits, often requiring certifications like CISA. Compliance Analysts primarily monitor and ensure adherence to regulations and policies, with certifications like CCEP. While both roles operate within compliance, Grc Auditors typically conduct formal audits, whereas Compliance Analysts focus on ongoing compliance monitoring.

What are popular job titles related to Grc Auditor jobs in Puerto Rico?

For Grc Auditor jobs in Puerto Rico, the most frequently searched job titles are:

What job categories do people searching Grc Auditor jobs in Puerto Rico look for?

The top searched job categories for Grc Auditor jobs in Puerto Rico are:

What cities in Puerto Rico are hiring for Grc Auditor jobs?

Cities in Puerto Rico with the most Grc Auditor job openings:

Infographic showing various Grc Auditor job openings in Puerto Rico as of June 2026, with employment types broken down into 94% Full Time, 3% Part Time, 2% Contract, and 1% Nights. Highlights an 80% Physical, 6% Hybrid, and 14% Remote job distribution.

Director of Governance, Risk & Compliance (GRC)

Inkit

San Juan, PR • On-site

Full-time

Re-posted 18 days ago


Job description

Why Inkit?
At Inkit, we're on a mission to provide privacy and protection for the world's data.
At Inkit, we're on a mission to safeguard the world's data while transforming how organizations generate, manage, and secure their most critical documents. Our File Intelligence Platform is trusted by leading commercial enterprises and government agencies alike - with certifications like DoD Impact Level 4 and 5 under our belt and a roadmap toward even broader compliance. This is an exciting time to join our team and build the next generation of secure, reliable infrastructure.
About the Role
We're looking for a Director of Governance, Risk & Compliance (GRC) to lead our GRC strategy and execution across Inkit. This person will own our Vanta compliance program, define and operationalize the frameworks that keep us compliant (both commercially and with government security standards), and partner with internal and external stakeholders to embed best-in-class risk and compliance practices. You'll be a strategic driver and tactical executor - shaping where we're going next and ensuring we stay audit-ready every day.
What You'll Do
  • Define and maintain a unified GRC strategy aligned with Inkit's business goals and growth trajectory.
  • Evaluate, select, and operationalize compliance frameworks and controls for both commercial and government requirements (e.g., SOC 2, ISO, FedRAMP, NIST, DoD IL standards).
  • Own and operate our Vanta compliance platform - including controls implementation, automated evidence collection, gap closure, and audit readiness.
  • Continuously improve our GRC tooling and evidence pipeline to support internal needs and external assurance requests.
  • Lead enterprise risk assessments and mitigation planning.
  • Establish, document, and maintain governance policies, risk registers, control matrices, and associated procedures.
  • Partner with engineering, product, legal, security operations, and business teams to ensure consistent control execution and risk visibility.
  • Serve as the primary GRC liaison for internal executives and external auditors, assessors, and partners.
  • Translate complex compliance topics into clear insights for technical and non-technical audiences alike.
  • Deliver regular risk and compliance reporting to leadership and key stakeholders.
  • Prepare for internal and external audits, readiness reviews, and certification assessments.
  • Coordinate evidence requests, remediation activities, and audit responses.

What We're Looking For
Required
  • Proven experience leading GRC functions in a B2B SaaS or secure software environment.
  • Hands-on experience with compliance platforms (e.g., Vanta) and a strong understanding of relevant frameworks.
  • Strong communicator who can collaborate effectively across teams and with external parties.
  • Demonstrated ability to build repeatable risk and compliance processes at scale.

Bonus
  • Experience with government compliance frameworks (FedRAMP, NIST 800-53, DoD IL standards).
  • Prior experience in regulated environments (government contracts, defense, financial services).

Why This Role Matters
As Inkit continues to grow its footprint with enterprise and government customers, we need a GRC leader who can both think strategically and execute operationally. You'll define how we build trust with customers, stay aligned with evolving regulatory expectations, and make confident compliance decisions - all while supporting our teams with the tools and processes they need to succeed.
Job Location
Puerto Rico