1

Grc Internship Jobs (NOW HIRING)

IT COMPLIANCE ANALYST I

Charlotte, NC ยท On-site

$91K - $92K/yr

Internship or academic experience in compliance, cybersecurity, risk, or audit * Familiarity with GRC tools (e.g., Archer, ServiceNow, OneTrust, ZenGRC) * Exposure to regulated industries, defense ...

IT COMPLIANCE ANALYST I

Charlotte, NC ยท On-site

$91K - $92K/yr

Internship or academic experience in compliance, cybersecurity, risk, or audit * Familiarity with GRC tools (e.g., Archer, ServiceNow, OneTrust, ZenGRC) * Exposure to regulated industries, defense ...

... summer internship with Paul Hastings. This role offers hands-on exposure to key areas of cybersecurity, including Security Engineering & Operations , Governance, Risk, and Compliance (GRC ...

$20/hr

This includes non-financial risk assessments, risk reviews, and supporting GRC software activities ... Internship to start Fall 2026. Competitive pay starting at $20/hr.Must be enrolled at University of ...

next page

Showing results 1-20

Grc Internship information

See salary details

$9

$17

$23

How much do grc internship jobs pay per hour?

As of Jun 9, 2026, the average hourly pay for grc internship in the United States is $17.31, according to ZipRecruiter salary data. Most workers in this role earn between $14.42 and $19.23 per hour, depending on experience, location, and employer.

What is the difference between Grc Internship vs Grc Analyst?

AspectGrc InternshipGrc Analyst
Required CredentialsTypically pursuing or recent graduate, some knowledge of GRC conceptsBachelor's degree in related field, some certifications preferred
Work EnvironmentInternship setting, learning-focused, supervisedFull-time professional role, responsible for GRC tasks
Employer & Industry UsageInternship programs in finance, consulting, or tech companiesFinancial institutions, consulting firms, large corporations

The Grc Internship is an entry-level, learning-focused position for students or recent graduates, often part of an internship program. In contrast, a Grc Analyst is a full-time role requiring some experience or education, responsible for analyzing and managing governance, risk, and compliance activities within an organization. Both roles are part of the GRC field but differ significantly in responsibilities and experience level.

What types of projects and responsibilities can I expect during a GRC internship?

As a GRC intern, you can expect to work on projects that involve assessing and improving an organization's governance, risk management, and compliance processes. Your daily tasks may include assisting with risk assessments, reviewing internal policies, supporting compliance audits, and helping to document controls and procedures. You may also collaborate with cross-functional teams such as IT, legal, and operations to understand how different departments manage risk and compliance. This hands-on experience provides valuable exposure to industry regulations and best practices, setting a strong foundation for a career in GRC.

What is a GRC internship?

A GRC internship is a temporary position for students or recent graduates to gain hands-on experience in Governance, Risk, and Compliance (GRC) within an organization. Interns assist with tasks such as risk assessments, compliance audits, policy reviews, and reporting on regulatory requirements. This role provides valuable exposure to how companies manage risks, ensure regulatory compliance, and establish internal policies. It is ideal for those interested in careers in risk management, cybersecurity, or compliance. Internships often last a few months and may lead to full-time opportunities.

What are the key skills and qualifications needed to thrive as a GRC Intern, and why are they important?

To thrive as a GRC (Governance, Risk, and Compliance) Intern, you need a foundational understanding of risk management, compliance frameworks, and basic knowledge of regulations, often supported by coursework in business, IT, or cybersecurity. Familiarity with GRC software tools (such as RSA Archer or ServiceNow), Microsoft Office Suite, and, in some cases, security certifications like CompTIA Security+ are advantageous. Strong analytical thinking, attention to detail, and effective communication skills help you interpret policies and collaborate with different departments. These abilities are crucial for supporting organizational compliance, minimizing risks, and ensuring robust governance structures.
More about Grc Internship jobs
What cities are hiring for Grc Internship jobs? Cities with the most Grc Internship job openings:
What are the most commonly searched types of Grc jobs? The most popular types of Grc jobs are:
What states have the most Grc Internship jobs? States with the most job openings for Grc Internship jobs include:
Infographic showing various Grc Internship job openings in the United States as of June 2026, with employment types broken down into 13% Internship, 5% As Needed, 11% Full Time, 68% Part Time, and 3% Temporary. Highlights an 77% Physical, 9% Hybrid, and 14% Remote job distribution, with an average salary of $35,995 per year, or $17.3 per hour.
Security Risk and Compliance Analyst

Security Risk and Compliance Analyst

Asana

San Francisco, CA โ€ข On-site

Full-time

Retirement

Posted 9 days ago


Job description

Role Overview
As a Security Risk and Compliance Analyst you will play a hands-on role in maturing and operating Asana's compliance and certification programme-specifically across controls maturity, policy governance, and audit execution. This role sits at the intersection of traditional GRC work and compliance engineering: you will help maintain our control frameworks and run our audit cycles, while also contributing to the automation initiatives that make our compliance programme scalable and repeatable.
This is an excellent opportunity for someone with early-career GRC experience who is excited to grow their technical skills and help shape how a high-growth SaaS company approaches compliance automation. You will partner closely with Security Engineering, Legal, Privacy, and R&D to ensure our controls are effective, our evidence pipelines are reliable, and our certifications-SOC 2, ISO 27001, and FedRAMP-are maintained with rigour.
This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. If you're interviewing for this role, your recruiter will share more about the in-office requirements.
What You'll Achieve
Controls Maturity & Certifications
  • Support the maintenance and continuous improvement of Asana's control framework, tracking control effectiveness across SOC 2, ISO 27001, FedRAMP Moderate, and other applicable standards.
  • Proactively engage with a wide range of teams-including Engineering, IT, and People-to work through controls maturity activities, close existing gaps, and drive remediation efforts to completion with clear documentation of progress.
  • Build strong working relationships across the business so that control owners feel supported and accountability is shared, not siloed within the compliance team.
  • Contribute to controls maturity scoring and reporting, providing ongoing visibility into programme health for senior leadership.
  • Support external compliance audits end-to-end: coordinating evidence requests, liaising with auditors, and tracking findings through to closure.

FedRAMP Continuous Monitoring
  • Own the monthly FedRAMP ConMon package submission, ensuring it is accurate, complete, and delivered on time every month.
  • Track and drive completion of all timebound FedRAMP requirements by working closely with Engineering, People, and other responsible teams.
  • Maintain a clear calendar of FedRAMP deliverables and proactively flag risks to timelines, escalating where needed to ensure nothing slips.
  • Serve as a day-to-day point of contact for FedRAMP-related queries from internal teams, helping them understand their obligations and what good looks like.

Evidence Collection & Automation
  • Own evidence collection workflows within our GRC platform, ensuring controls are reliably mapped, evidence is current, and audit artefacts are ready year-round.
  • Where possible, identify opportunities to automate repetitive evidence-gathering tasks-this is a nice-to-have rather than a core requirement, but curiosity and initiative here will be valued.
  • Document evidence collection procedures so that processes are transparent, auditable, and maintainable by the broader team.
About You
  • 3+ years of experience in Governance, Risk, and Compliance (GRC), information security, or a closely related field-internships and co-ops count.
  • Foundational knowledge of security compliance frameworks such as SOC 2, ISO 27001, NIST CSF, or FedRAMP; you don't need to be an expert in all of them.
  • Comfortable engaging with a wide variety of teams-Engineering, People, IT, Legal-to explain compliance requirements, gather evidence, and build the relationships needed to close control gaps.
  • Organised and deadline-driven: you can manage multiple workstreams, track time-sensitive obligations (like monthly FedRAMP submissions), and keep audit artefacts tidy without being reminded.
  • A clear communicator who can translate compliance requirements into plain language for both technical and non-technical stakeholders.
  • Exposure to compliance automation or evidence collection tooling (GRC platforms, scripting, API integrations) is a plus, but not essential-curiosity and a willingness to grow technically matter more.
  • Curious about how modern SaaS engineering works-comfortable asking questions and learning the technical context behind a control.

At Asana, we're committed to building teams that include a variety of backgrounds, perspectives, and skills, as this is critical to helping us achieve our mission. If you're interested in this role and don't meet every listed requirement, we still encourage you to apply.
What We'll Offer
Our comprehensive compensation package plays a big part in how we recognize you for the impact you have on our path to achieving our mission. We believe that compensation should be reflective of the value you create relative to the market value of your role. To ensure pay is fair and not impacted by biases, we're committed to looking at market value, which is why we check ourselves and conduct a yearly pay equity audit.
For this role, the estimated base salary range is between $130,000-$160,000. The actual base salary will vary based on various factors, including market and individual qualifications objectively assessed during the interview process. In addition to base salary, your compensation package may include equity and benefits. Speak with your Talent Acquisition Partner to learn more.
We strive to provide equitable and competitive benefits packages that support our employees worldwide and include:
  • Mental health, wellness & fitness benefits
  • Career coaching & support
  • Inclusive family building benefits
  • Long-term savings or retirement plans
  • In-office culinary options to cater to your dietary preferences

These are just some of the benefits we offer, and benefits may vary based on role, country, and local regulations.
About Asana
Asana helps teams orchestrate their work, from small projects to strategic initiatives. Millions of teams around the world rely on Asana to achieve their most important goals, faster. Asana has been named a Top 10 Best Workplace for 5 years in a row, is Fortune's #1 Best Workplace in the Bay Area, and one of Glassdoor's and Inc.'s Best Places to Work.
We believe in supporting people to do their best work and thrive, and building a diverse, equitable, and inclusive company is core to our mission. Our goal is to ensure that Asana upholds an inclusive environment where all people feel equally respected and valued, whether they are applying for an open position or working at the company. We provide equal employment opportunities to all applicants without regard to race, colour, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by law. We also comply with the San Francisco Fair Chance Ordinance and similar laws in other locations.
#LI-Hybrid
About us
Asana is a leading platform for human + AI collaboration. Millions of teams around the world rely on Asana to achieve their most important goals, faster. Asana has been named to Fortune's Best Workplaces for 7+ years and recognized by Fast Company, Forbes, and Gartner for excellence in workplace culture and innovation. We offer an exceptional office-centric culture while adopting the best elements of hybrid models to ensure that every one of our global team members can work together effortlessly. With 13+ offices all over the world, we are always looking for individuals who care about building technology that drives positive change in the world and a culture where everyone feels that they belong.
Join Asana's Talent Network to stay up to date on job opportunities and life at Asana.