Design and build automated workflows for risk management and compliance, creating scalable systems ... Inform GRC platform strategy and implementation: in partnership with other programs, evaluate ...
Design and build automated workflows for risk management and compliance, creating scalable systems ... Inform GRC platform strategy and implementation: in partnership with other programs, evaluate ...
Senior GRC Analyst
San Francisco, CA · On-site
$113.10K - $147.90K/yr
About This Role We're seeking a GRC Analyst to support the day-to-day execution of our Governance, Risk, and Compliance program. Reporting to the Head of GRC, this role focuses on operational ...
Senior GRC Analyst
San Francisco, CA · On-site
$113.10K - $147.90K/yr
About This Role We're seeking a GRC Analyst to support the day-to-day execution of our Governance, Risk, and Compliance program. Reporting to the Head of GRC, this role focuses on operational ...
... GRC Analyst to join our growing security team. In this role you will support IXL's internal ... risk assessments. Responsibilities : • Support internal and external audits by gathering ...
... GRC Analyst to join our growing security team. In this role you will support IXL's internal ... risk assessments. Responsibilities : • Support internal and external audits by gathering ...
GRC Technical PM
Sunnyvale, CA · On-site
$85K - $140K/yr
• 8+ years of Project Management experience in GRC(Govrenance , Risk Compliance) • Managing GRC projects and has met Assessments and Remediations for Suppliers • Strong understanding of ISO 27K ...
GRC Technical PM
Sunnyvale, CA · On-site
$85K - $140K/yr
• 8+ years of Project Management experience in GRC(Govrenance , Risk Compliance) • Managing GRC projects and has met Assessments and Remediations for Suppliers • Strong understanding of ISO 27K ...
Cybersecurity GRC Manager
Mountain View, CA · Remote
$130.90K - $177K/yr
The Technology Governance, Risk, and Compliance (GRC) team at GFiber establishes the framework that ensures our technology operations manage risks effectively and align with industry best practices.
Quick apply
Cybersecurity GRC Manager
Mountain View, CA · Remote
$130.90K - $177K/yr
The Technology Governance, Risk, and Compliance (GRC) team at GFiber establishes the framework that ensures our technology operations manage risks effectively and align with industry best practices.
SAP GRC Consultant
Pomona, CA · Hybrid
Pomona, CA, Hybrid Contract Designing, building, and implementing security roles for various SAP systems - Conducting risk analysis using ARA in GRC - Managing user access and security in S/4HANA ...
SAP GRC Consultant
Pomona, CA · Hybrid
Pomona, CA, Hybrid Contract Designing, building, and implementing security roles for various SAP systems - Conducting risk analysis using ARA in GRC - Managing user access and security in S/4HANA ...
Senior GRC Analyst
San Francisco, CA · On-site
$113.10K - $147.90K/yr
About This Role We're seeking a GRC Analyst to support the day-to-day execution of our Governance, Risk, and Compliance program. Reporting to the Head of GRC, this role focuses on operational ...
Quick apply
Senior GRC Analyst
San Francisco, CA · On-site
$113.10K - $147.90K/yr
About This Role We're seeking a GRC Analyst to support the day-to-day execution of our Governance, Risk, and Compliance program. Reporting to the Head of GRC, this role focuses on operational ...
Associate GRC Security Analyst
$80K - $105K/yr
Conduct risk assessments and contribute to maintaining the organization's risk register and open ... Familiarity with GRC platforms like Vanta or Auditboard, or ticketing tools such as Jira is a plus ...
Associate GRC Security Analyst
$80K - $105K/yr
Conduct risk assessments and contribute to maintaining the organization's risk register and open ... Familiarity with GRC platforms like Vanta or Auditboard, or ticketing tools such as Jira is a plus ...
... GRC Analyst to join our growing security team. In this role, you will support IXL's internal ... risk assessments, conducting risk assessments, and maintaining audit-ready documentation.
... GRC Analyst to join our growing security team. In this role, you will support IXL's internal ... risk assessments, conducting risk assessments, and maintaining audit-ready documentation.
Senior Security Risk Manager
San Francisco, CA · On-site
$146.40K - $235.38K/yr
Leverage modern GRC platforms and automation (e.g., ServiceNow IRM, OneTrust) to scale risk management processes * Serve as a trusted advisor to leadership on security risk posture and decisions
Senior Security Risk Manager
San Francisco, CA · On-site
$146.40K - $235.38K/yr
Leverage modern GRC platforms and automation (e.g., ServiceNow IRM, OneTrust) to scale risk management processes * Serve as a trusted advisor to leadership on security risk posture and decisions
Senior GRC Lead
San Francisco, CA · On-site +1
$134.90K - $185K/yr
What you'll do Brex's Governance, Risk, and Compliance function is at an exciting and pivotal point ... As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us ...
Senior GRC Lead
San Francisco, CA · On-site +1
$134.90K - $185K/yr
What you'll do Brex's Governance, Risk, and Compliance function is at an exciting and pivotal point ... As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us ...
Cybersecurity GRC Manager
Sunnyvale, CA · On-site
$130.30K - $176K/yr
They will be responsible for transforming governance, risk, and compliance practices into proactive ... Utilize automation and GRC platforms to optimize gathering and maintenance of audit readiness ...
Cybersecurity GRC Manager
Sunnyvale, CA · On-site
$130.30K - $176K/yr
They will be responsible for transforming governance, risk, and compliance practices into proactive ... Utilize automation and GRC platforms to optimize gathering and maintenance of audit readiness ...
Senior Security Risk Manager
San Francisco, CA · Hybrid
$146.40K - $235.38K/yr
Leverage modern GRC platforms and automation (e.g., ServiceNow IRM, OneTrust) to scale risk management processes * Serve as a trusted advisor to leadership on security risk posture and decisions
Senior Security Risk Manager
San Francisco, CA · Hybrid
$146.40K - $235.38K/yr
Leverage modern GRC platforms and automation (e.g., ServiceNow IRM, OneTrust) to scale risk management processes * Serve as a trusted advisor to leadership on security risk posture and decisions
GRC Lead
Los Angeles, CA · On-site
Job Summary The GRC Lead drives the execution and continuous improvement of AEG's Governance, Risk ... Enterprise Risk Management (ERM): * Own and continuously enhance the enterprise risk management ...
GRC Lead
Los Angeles, CA · On-site
Job Summary The GRC Lead drives the execution and continuous improvement of AEG's Governance, Risk ... Enterprise Risk Management (ERM): * Own and continuously enhance the enterprise risk management ...
Job Summary The GRC Lead drives the execution and continuous improvement of AEG's Governance, Risk ... Enterprise Risk Management (ERM): * Own and continuously enhance the enterprise risk management ...
Job Summary The GRC Lead drives the execution and continuous improvement of AEG's Governance, Risk ... Enterprise Risk Management (ERM): * Own and continuously enhance the enterprise risk management ...
Cybersecurity Governance, Risk & Compliance (GRC) Lead
$123.50K - $166.90K/yr
We are seeking a highly skilled and motivated Cybersecurity Governance, Risk & Compliance (GRC) Lead . This position reports to the Cybersecurity GRC Product Owner. The mission of this role is to ...
Cybersecurity Governance, Risk & Compliance (GRC) Lead
$123.50K - $166.90K/yr
We are seeking a highly skilled and motivated Cybersecurity Governance, Risk & Compliance (GRC) Lead . This position reports to the Cybersecurity GRC Product Owner. The mission of this role is to ...
GRC Lead
Los Angeles, CA · On-site
Job Summary The GRC Lead drives the execution and continuous improvement of AEG's Governance, Risk ... Enterprise Risk Management (ERM): * Own and continuously enhance the enterprise risk management ...
GRC Lead
Los Angeles, CA · On-site
Job Summary The GRC Lead drives the execution and continuous improvement of AEG's Governance, Risk ... Enterprise Risk Management (ERM): * Own and continuously enhance the enterprise risk management ...
Analyst, Senior GRC Information Security Analyst
Santa Ana, CA · On-site
$43.27 - $64.90/hr
Conduct regular risk assessments to identify potential threats and vulnerabilities across the ... Expert knowledge of GRC frameworks and regulations (e.g., PCI-DSS, GDPR, CCPA, GLBA, NIST, ISO ...
Analyst, Senior GRC Information Security Analyst
Santa Ana, CA · On-site
$43.27 - $64.90/hr
Conduct regular risk assessments to identify potential threats and vulnerabilities across the ... Expert knowledge of GRC frameworks and regulations (e.g., PCI-DSS, GDPR, CCPA, GLBA, NIST, ISO ...
GRC Lead
Los Angeles, CA · On-site
Job Summary The GRC Lead drives the execution and continuous improvement of AEG's Governance, Risk ... Enterprise Risk Management (ERM): * Own and continuously enhance the enterprise risk management ...
GRC Lead
Los Angeles, CA · On-site
Job Summary The GRC Lead drives the execution and continuous improvement of AEG's Governance, Risk ... Enterprise Risk Management (ERM): * Own and continuously enhance the enterprise risk management ...
Conduct regular risk assessments to identify potential threats and vulnerabilities across the ... Expert knowledge of GRC frameworks and regulations (e.g., PCI-DSS, GDPR, CCPA, GLBA, NIST, ISO ...
Conduct regular risk assessments to identify potential threats and vulnerabilities across the ... Expert knowledge of GRC frameworks and regulations (e.g., PCI-DSS, GDPR, CCPA, GLBA, NIST, ISO ...
Grc Risk information
What is the difference between Grc Risk vs Grc Analyst?
| Aspect | Grc Risk | Grc Analyst |
|---|---|---|
| Certifications | ISO 31000, CRISC, COSO | CISA, CRISC, CISSP |
| Work Environment | Risk management teams, compliance departments | IT, audit, compliance teams |
| Industry Usage | Financial, healthcare, corporate sectors | IT, finance, consulting firms |
| Primary Focus | Identifying and managing enterprise risks | Analyzing controls, assessing risks in systems |
Grc Risk professionals focus on enterprise-wide risk management strategies, while Grc Analysts typically analyze specific controls and systems to identify vulnerabilities. Both roles require similar certifications and often work within the same industries, but Grc Risk has a broader scope in risk oversight, whereas Grc Analysts concentrate on detailed control assessments.

Job description
We are seeking a GRC Automation Lead to join our GRC organization and build the technical foundation for how we scale our risk and compliance programs. In this role, you will lead the team that designs and implements automated workflows, data pipelines, and integrations that transform manual compliance processes into scalable engineering systems.
This is a greenfield opportunity to establish the team, architecture, and integrations that will define how we approach governance, risk, and compliance at Anthropic. The core challenge is a data problem: compliance information lives across dozens of systems-cloud infrastructure, identity providers, HR platforms, ticketing tools, code repositories-and your job is to design systems that bring it together, normalize it, and make it actionable. Success in this role comes from understanding how systems connect and how data flows between them, not from writing code yourself.
At Anthropic, you'll also have a unique advantage: the ability to design AI-powered workflows where Claude acts as an extension of your team, handling tasks that would traditionally require additional headcount or manual effort. You'll need ingenuity to identify where agentic AI can accelerate evidence collection, interpret unstructured data, triage compliance gaps, and augment human judgment in risk assessments. Working closely with Security, IT, and Engineering teams, you'll translate compliance and regulatory requirements into solutions that support audit programs including SOC 2, ISO, HIPAA, and FedRAMP, building systems that combine traditional automation with AI capabilities to achieve scale that wouldn't otherwise be possible.
Responsibilities:- Lead the team that establishes foundational GRC processes and architecture. Design and build automated workflows for risk management and compliance, creating scalable systems that enable continuous monitoring as Anthropic grows.
- Build data pipelines that aggregate risk, control, and asset information from across our technology stack. This means solving hard data integration problems: mapping disparate schemas, handling inconsistent data quality, and creating unified views of compliance posture through dashboards and reporting tools.
- Inform GRC platform strategy and implementation: in partnership with other programs, evaluate, select, and deploy tooling that meets our compliance requirements.
- Translate written policies and compliance requirements into policy-as-code-working with Engineering and Security teams to express requirements as enforceable rules, automated checks, and continuous validation rather than static documents.
- Establish feedback loops between policy and implementation: surface where technical controls diverge from written requirements, identify where policies need to evolve based on infrastructure realities, and ensure that compliance requirements are expressed in terms engineers can act on.
- Design and deploy agentic AI workflows that extend team capacity, using Claude to serve as a virtual GRC analyst to automate evidence analysis, monitor control effectiveness, draft audit responses, interpret policy documents, and handle other tasks that require reasoning over unstructured information.
- Design and maintain integrations connecting GRC tooling with cloud infrastructure, identity management systems, HRIS platforms, ticketing systems, version control, and CI/CD pipelines-working with engineers to implement integrations that enable automated evidence collection and continuous compliance validation.
- Build and lead an AI-forward GRC engineering function as we scale: hiring team members, establishing practices, and defining the technical roadmap for governance and compliance automation at Anthropic.
- Have 12+ years of total experience and 3-4+ years of experience managing technical individual contributors or systems-focused teams, with a proven track record of building or scaling small teams (2-5 people) in security, compliance, automation, or operations functions.
- Are a systems thinker first. You understand how complex environments work: how data flows between systems, where integration points exist, what breaks when systems don't talk to each other. Your strength is designing the right architecture and environment for security monitoring, not necessarily implementing it yourself.
- Have 5+ years of experience designing automated workflows, data pipelines, or system integrations, whether through traditional development, low-code platforms, GRC tools, or process automation. We care about your ability to solve integration problems more than your programming language proficiency.
- Have a relentless focus on data integration: you understand how to pull data from multiple sources, normalize it, join it meaningfully, and surface insights. You're comfortable reasoning about messy, inconsistent data and designing systems that handle edge cases gracefully.
- Understand APIs and integration patterns: REST APIs, webhooks, authentication flows, polling vs. push architectures, and can evaluate systems based on how well they expose data and support automation.
- Can work independently with minimal guidance, taking ownership of complex problems from design through implementation while managing ambiguity inherent in early-stage programs.
- Have strong analytical and problem-solving skills with attention to detail necessary for compliance work, balanced with pragmatism about risk-based prioritization in fast-paced environments.
- Experience designing or implementing AI-powered automation, agentic workflows, or LLM-based tooling in operational contexts.
- Experience with GRC platforms such as ServiceNow GRC, Vanta, Drata, OneTrust, RSA Archer, or similar tools including configuration, customization, and integration capabilities
- Familiarity with scripting languages (Python or similar) for automation tasks, API interactions, and data transformation.
- Prior experience in high-growth startup environments demonstrating ability to build scalable processes and adapt quickly to changing requirements and priorities
- Familiarity with Infrastructure as Code tools (Terraform, CloudFormation, Ansible) and DevSecOps practices including CI/CD pipeline integration and policy-as-code implementations.
- Familiarity with cloud platforms (AWS, GCP, Azure) and an understanding of how compliance-relevant data can be extracted from their APIs and logging systems.
Deadline to apply: None, applications will be received on a rolling basis.
About Anthropic
Sourced by ZipRecruiter
Company size
11 - 50 Employees
Headquarters location
Daly City, CA, US
Year founded
2021