2

Remote Grc Jobs in Colorado (NOW HIRING)

GRC/IT Compliance Analyst

Denver, CO · On-site +1

$96K - $97K/yr

While we are mostly a remote company, travel is required for some team meetings and cross function ... Experience with GRC software implementation; * Experience with FDA regulatory submissions and SaMD ...

Effectively use GRC platforms (Drata, Anecdotes, Hyperproof) to implement and manage Compliance ... remote and hybrid options What's in it for you: - Working with an industry leader : Be part of a ...

Senior DevSecOps Engineer

Denver, CO · Remote

$117K - $161K/yr

Senior DevSecOps Engineer (Remote-based role that requires US-citizenship) About us Hyperproof is on a mission to transform the Governance, Risk, and Compliance (GRC) world with a powerful new ...

Remote Grc information

See Colorado salary details

$21

$26

$35

How much do remote grc jobs pay per hour?

As of Aug 22, 2026, the average hourly pay for remote grc in Colorado is $26.47, according to ZipRecruiter salary data. Most workers in this role earn between $23.99 and $26.54 per hour, depending on experience, location, and employer.

What is a Remote GRC?

A Remote GRC (Governance, Risk, and Compliance) job involves managing an organization's regulatory compliance, risk assessment, and policy enforcement from a remote location. Professionals in this role ensure that the company adheres to industry standards, identifies potential risks, and implements security controls. Responsibilities may include conducting audits, developing compliance programs, and advising on best practices. Remote GRC roles are common in industries such as finance, healthcare, and technology, where data security and regulatory adherence are critical. Strong analytical skills, knowledge of compliance frameworks (such as ISO 27001, NIST, or SOC 2), and experience with risk management tools are typically required.

What does a Remote GRC do?

A Remote GRC professional is responsible for developing and maintaining risk management policies, conducting audits, and ensuring regulatory compliance across the organization. They may also evaluate internal controls, coordinate with IT and legal teams, and facilitate responses to compliance assessments or incidents. Regular tasks often include preparing detailed reports, monitoring changes in regulations, and providing training or guidance to staff. Collaboration is done via virtual meetings and digital tools, making strong communication skills essential for effective teamwork in a remote environment.

What are the key skills and qualifications needed to thrive in the Remote GRC position, and why are they important?

To thrive as a Remote GRC professional, you need strong knowledge of governance, risk, and compliance frameworks (such as ISO 27001, NIST, or SOX) plus experience in risk assessments and policy development. Familiarity with GRC platforms (like RSA Archer, ServiceNow, or LogicGate) and certification such as CISA, CISM, or CRISC is often required. Excellent communication, self-motivation, and time-management skills help remote GRC specialists succeed in a distributed environment. These abilities are critical for maintaining security posture, ensuring regulatory compliance, and effectively supporting business goals from a remote setting.

Can a remote GRC analyst work remotely?

Yes, a remote GRC (Governance, Risk, and Compliance) analyst can work remotely, as many organizations offer remote positions in this field. These roles typically require strong knowledge of compliance frameworks, risk management tools, and communication skills, and often involve using collaboration software and security protocols to perform duties effectively from a remote location.

Is remote GRC still in demand?

Remote GRC (Governance, Risk, and Compliance) roles remain in demand as organizations prioritize cybersecurity, regulatory compliance, and risk management. These positions often require knowledge of frameworks like ISO, NIST, or GDPR, and can be performed effectively with skills in policy development, audits, and compliance tools. The shift to remote work has increased opportunities for GRC professionals across various industries.

What are the most commonly searched types of Grc jobs in Colorado?

The most popular types of Grc jobs in Colorado are:

What are popular job titles related to Remote Grc jobs in Colorado?

For Remote Grc jobs in Colorado, the most frequently searched job titles are:

What job categories do people searching Remote Grc jobs in Colorado look for?

The top searched job categories for Remote Grc jobs in Colorado are:

What cities in Colorado are hiring for Remote Grc jobs?

Cities in Colorado with the most Remote Grc job openings:

Infographic showing various Remote Grc job openings in Colorado as of August 2026, with employment types broken down into 1% As Needed, 90% Full Time, 3% Part Time, 1% Temporary, and 5% Contract. Highlights an 75% Physical, 10% Hybrid, and 15% Remote job distribution, with an average salary of $55,057 per year, or $26.5 per hour.

GRC/IT Compliance Analyst

Cleerly

Denver, CO • On-site, Remote

$96K - $97K/yr

Full-time

Posted 6 days ago


Job description

About Cleerly

We're Cleerly – a healthcare company that's revolutionizing how heart disease is diagnosed, treated, and tracked. We were founded in 2017 by one of the world's leading cardiologists and are a growing team of world-class engineering, operations, medical affairs, marketing, and sales leaders. We raised $223M in Series C funding in 2022 which has enabled rapid growth and continued support of our mission. In December 2024 we received an additional $106M in a Series C extension funding. Most of our teams work remotely and have access to our offices in Denver, Colorado, New, York, New York, Dallas, Texas, and Lisbon, Portugal with some roles requiring you to be on-site in a location.

Cleerly has created a new standard of care for heart disease through value-based, AI-driven precision diagnostic solutions with the goal of helping prevent heart attacks. Our technology goes beyond traditional measures of heart disease by enabling comprehensive quantification and characterization of atherosclerosis, or plaque buildup, in each of the heart arteries. Cleerly's solutions are supported by more than a decade of performing some of the world's largest clinical trials to identify important findings beyond symptoms that increase a person's risk of heart attacks.

At Cleerly, we collaborate digitally and use a wide variety of systems. Our people use Google Workspace (GMail, Drive, Docs, Sheets, Slides), Slack, Confluence/Jira, and Zoom Video, prior experience in these areas is a plus. Role or department specific technology needs may vary and will be listed as requirements in the job description.

While we are mostly a remote company, travel is required for some team meetings and cross function projects typically once per month or once per quarter, for some roles like sales or external facing roles travel could be up to 90% of the time.
Cleerly is committed to providing safe and effective medical software that meets customer needs and our intended use. The adherence to all applicable regulatory and statutory requirements establishes a clear framework for setting measurable quality objectives. Our commitment to continually improving our products and processes proactively manages risks, ensuring ongoing compliance throughout the entire software lifecycle. Understanding this role's relevance and importance is critical to achieving Cleerly's quality objectives.

About the Opportunity

Our Information Security team is growing, and we have an immediate opening for a GRC and IT Compliance Analyst to help support and execute Cleerly's security and compliance objectives. Reporting to the Director of Information Security, this role will be a multi-faceted specialist function that focuses on GRC, IT compliance, and risk management, as well as executing on core security-related audits and control assessments. The ideal candidate is a self-motivated individual who is great at task and time management and is willing to learn and adapt to changing regulatory environments.

Responsibilities

You will work closely with our Information Security leadership and cross-functional teams to drive GRC initiatives and ensure the continuous monitoring of security controls. On any given day, you will be:

  • Build and implement a new enterprise risk assessment platform to streamline compliance workflows;
  • Continuously monitor and update the risk platform to reflect evolving threats and regulatory requirements;
  • Participate in risk analysis and features development processes to proactively identify risks to our regulated products;
  • Continuously monitor and evaluate internal controls for areas of improvement;
  • Conduct user access reviews to applications and services;
  • Periodically review policies and procedures for compliance with best practices and compliance frameworks;
  • Assist in owning and drafting documents for FDA regulatory submissions.

Requirements

  • 5-7 years of experience in security or compliance analysis, IT risk assessment, risk management, or assurance/advisory experience over IT/IS general controls;
  • BS degree in Management Information Systems, Computer Science, Accounting with ITGC experience, Engineering, Cybersecurity, Bio-Medical Engineering, or a related field;
  • Experience with GRC software implementation;
  • Experience with FDA regulatory submissions and SaMD (Software as a Medical Device) regulations;
  • Proven experience in enterprise risk management (ERM) frameworks, risk identification, and qualitative/quantitative risk assessment methodologies;
  • Previous experience working within a startup environment;
  • Experience with Agile/Scrum environments and integrating security/compliance into the SDLC;
  • Strong understanding of internal controls necessary to meet compliance frameworks such as ISO 27001, HITRUST, and SOC 2;
  • Excellent verbal and written communication skill sets for addressing security concerns from internal stakeholders within the company.

Impress us more

  • CISA, CISM, CISSP, CRISC, or related certifications;
  • Experience in the digital healthcare industry;
  • Experience with open-source GRC tooling such as CISO Advisor or Eramba is a plus.

Compensation

The base salary range for this role varies by location and is aligned to market benchmarks.

  • Candidates located in higher-cost labor markets, including California, Washington, New York, New Jersey, Connecticut, Massachusetts, and Washington, DC represent the middle to high end of the range, while candidates located in all other U.S. locations represent the low to middle end of the range.
  • Final compensation is determined based on location, experience, skills, and internal equity.

This role is eligible for a XX% target annual bonus, resulting in the following base salary and Total Target Compensation (TTC) ranges:

  • Base Salary: $108,000 - $130,000
  • TTC: $118,800 - $143,000

*Total Target Compensation (TTC): Total Cash Compensation (including base pay, variable pay, commission, bonuses, etc.) Additionally, stock options, paid benefits, and employee perks are part of your total rewards.

Working at Cleerly takes HEART. Discover our Core Values:

  • H: Humility- be a servant leader
  • E: Excellence- deliver world-changing results
  • A: Accountability- do what you say; expect the same from others
  • R: Remarkable- inspire & innovate with impact
  • T: Teamwork- together we win

Don't meet 100 percent of the qualifications? Apply anyway and help us diversify our candidate pool and workforce. We value experience, whether gained formally or informally on the job or through other experiences. Job duties, activities and responsibilities are subject to change by our company.

OUR COMPANY IS AN EQUAL OPPORTUNITY EMPLOYER. We do not discriminate on the basis of race, color, national origin, ancestry, citizenship status, protected veteran status, religion, physical or mental disability, marital status, sex, sexual orientation, gender identity or expression, age, or any other basis protected by law, ordinance, or regulation.

For more information see our Privacy Policy (https://cleerlyhealth.com/privacy-policy). All official emails will come from @cleerlyhealth.com email accounts.

#Cleerly