1

Senior Grc Analyst Jobs (NOW HIRING)

Senior GRC Analyst

Seattle, WA · Hybrid

$140K - $165K/yr

We're looking for a Senior GRC Analyst to serve as the primary architect for our expanding ISO ecosystem. As a Senior GRC Analyst at DigitalOcean, you will lead the strategic maturation of ...

Senior GRC Analyst

Boston, MA · Remote

$140K - $165K/yr

We're looking for a Senior GRC Analyst to serve as the primary architect for our expanding ISO ecosystem. As a Senior GRC Analyst at DigitalOcean, you will lead the strategic maturation of ...

Senior GRC Analyst

$115K - $145K/yr

Senior GRC Analyst Location: Remote About Compyl Compyl is a high-growth, venture-backed GRC and automated security compliance platform built by security practitioners for security practitioners.

New

Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven people who are committed to our core values of humility, innovation, and excellence. Founded in 2005 ...

Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven people who are committed to our core values of humility, innovation, and excellence. Founded in 2005 ...

Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven people who are committed to our core values of humility, innovation, and excellence. Founded in 2005 ...

Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven people who are committed to our core values of humility, innovation, and excellence. Founded in 2005 ...

Senior GRC Analyst

Boston, MA · Remote

$140K - $165K/yr

We're looking for a Senior GRC Analyst to serve as the primary architect for our expanding ISO ecosystem. As a Senior GRC Analyst at DigitalOcean, you will lead the strategic maturation of ...

Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven people who are committed to our core values of humility, innovation, and excellence. Founded in 2005 ...

The Sr. GRC Analyst will support enterprise risk assessments, evaluate control effectiveness, identify risk exposures and control gaps, track remediation efforts, and support cross-functional teams ...

Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven people who are committed to our core values of humility, innovation, and excellence. Founded in 2005 ...

Sr. GRC Analyst

Albuquerque, NM · On-site

$95K - $105K/yr

Sr. GRC Analyst About Subsplash Subsplash is an exciting award-winning team of 280+ mission-driven people who are committed to our core values of humility, innovation, and excellence. Founded in 2005 ...

Senior GRC Analyst Morgan & Morgan | Risk & Resilience Program Reports To: Director of Business Continuity Department: Information Security / Risk & Resilience Type: Full-Time The Opportunity Morgan ...

Senior GRC Analyst Morgan & Morgan | Risk & Resilience Program Reports To: Director of Business Continuity Department: Information Security / Risk & Resilience Type: Full-Time The Opportunity Morgan ...

Senior GRC Analyst

Seattle, WA · On-site

$140K - $165K/yr

We're looking for a Senior GRC Analyst to serve as the primary architect for our expanding ISO ecosystem. As a Senior GRC Analyst at DigitalOcean, you will lead the strategic maturation of ...

We are looking for a Senior GRC Analyst, HIPAA to help mature and operate HIPAA-related security and compliance programs across DoorDash. This role will support multiple ongoing HIPAA workstreams ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

The Role We Want You For Under the direction of and in collaboration with the GRC Manager, the Sr. GRC Analyst, Risk Management is the primary owner and operational steward of the Enterprise Risk ...

next page

Showing results 1-20

Senior Grc Analyst information

See salary details

$53.5K

$109.8K

$142.5K

How much do senior grc analyst jobs pay per year?

As of Jul 24, 2026, the average yearly pay for senior grc analyst in the United States is $109,846.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,500.00 and $137,000.00 per year, depending on experience, location, and employer.

What are Senior GRC Analysts?

Senior GRC Analysts are experienced professionals who oversee an organization's Governance, Risk, and Compliance (GRC) programs. They are responsible for identifying and managing risks, ensuring compliance with laws and regulations, and developing policies and controls to protect the organization. Senior GRC Analysts often lead risk assessments, design compliance frameworks, and collaborate with different departments to implement best practices. Their expertise helps organizations navigate complex regulatory environments and maintain a strong security posture.

What are the key skills and qualifications needed to thrive as a Senior GRC Analyst, and why are they important?

To thrive as a Senior GRC Analyst, you need expertise in risk management, compliance frameworks (such as SOX, GDPR, or ISO 27001), and a solid understanding of business processes, usually supported by a relevant degree or certification (e.g., CISA, CRISC). Familiarity with GRC platforms like RSA Archer or ServiceNow, as well as audit and risk assessment tools, is typically required. Strong analytical thinking, communication, and stakeholder management skills help you influence decision-making and foster organizational buy-in. These skills and qualities are crucial for effectively identifying risks, ensuring regulatory compliance, and supporting the organization's overall risk posture.

What are some common challenges faced by Senior GRC Analysts, and how can applicants prepare to address them?

Senior GRC Analysts often encounter challenges such as navigating evolving regulatory requirements, managing cross-departmental collaboration, and ensuring that risk management processes align with business objectives. To succeed, applicants should be prepared to communicate effectively with stakeholders at all levels, stay updated on relevant compliance frameworks, and be proactive in identifying and mitigating potential risks. Gaining experience with industry-standard tools and frameworks, as well as honing project management skills, can help candidates excel in this dynamic and impactful role.
More about Senior Grc Analyst jobs
What cities are hiring for Senior Grc Analyst jobs? Cities with the most Senior Grc Analyst job openings:
What are the most commonly searched types of Grc Analyst jobs? The most popular types of Grc Analyst jobs are:
What states have the most Senior Grc Analyst jobs? States with the most job openings for Senior Grc Analyst jobs include:
What job categories do people searching Senior Grc Analyst jobs look for? The top searched job categories for Senior Grc Analyst jobs are:
Infographic showing various Senior Grc Analyst job openings in the United States as of July 2026, with employment types broken down into 89% Full Time, 6% Part Time, 1% Temporary, and 4% Contract. Highlights an 83% Physical, 7% Hybrid, and 10% Remote job distribution, with an average salary of $109,846 per year, or $52.8 per hour.
Senior GRC Analyst

Senior GRC Analyst

DigitalOcean

Seattle, WA • Hybrid

$140K - $165K/yr

Other

Posted 11 days ago


Job description

We're looking for a Senior GRC Analyst to serve as the primary architect for our expanding ISO ecosystem.

As a Senior GRC Analyst at DigitalOcean, you will lead the strategic maturation of DigitalOcean's compliance framework to include multiple ISO standards, such as ISO 27001, ISO 27017, and ISO 22301. You will also lead maturation efforts concerning the existing compliance program, which includes; but, is not limited to, SOC 2 and HIPAA. You will be a builder who understands the importance of balancing compliance with engineering velocity, collaborating directly with engineering and product teams to integrate compliance into existing workflows. You will partner with teams throughout the organization to weave applicable controls into the fabric of our operations, ensuring DigitalOcean remains a trusted platform for our customers. This role reports to the Manager of GRC within the Security organization.

What You'll Do:
  • Multi-Standard Strategy: Architect and lead the implementation of an Integrated Management System (IMS) that harmonizes requirements across multiple ISO standards.
  • Compliance Scope Expansion: Manage cross-functional projects required to achieve and maintain product-level compliance certifications and/or eligibility for DigitalOcean's core and emerging cloud services.
  • Risk Governance: Lead both annual and ad-hoc risk assessments; maintain a dynamic risk register and drive cross-functional remediation for identified gaps.
  • Control Innovation: Design and implement controls which meet rigorous standards without sacrificing velocity.
  • Policy: Author and maintain enterprise-level security policies, standards, and procedures that reflect current regulatory landscapes, internal risk appetite, and operational engineering realities.
  • Operational Responsiveness & Customer Trust: Act as a subject matter expert in GRC on-call rotations, directly address complex customer inquiries, and support incident response activities to ensure compliance obligations are met under pressure.
What You'll Add to DigitalOcean:
  • Expertise: You have 5+ years of experience in GRC, with a proven track record of leading multi-certification and multi-standard compliance programs, preferably at a technology company, where you directly partnered with engineering or infrastructure teams.
  • Program Maturity: You have experience building, maturing, and expanding the influence of an ISO program.
  • Risk Lifecycle Management: You have experience in risk identification, various risk assessment methodologies, discerning between appropriate risk responses, and monitoring risk treatment plans.
  • Navigating Ambiguity: You are comfortable working cross-functionally to interpret ambiguity within new standards (e.g., ISO 42001), regulations, and legislation.
  • Influence: You have the ability to translate complex legal and regulatory requirements into actionable, testable controls , for engineering, product, and IT teams.
  • Project Management: You have strong project management skills and the ability to manage complex, multi-quarter roadmaps involving dozens of stakeholders
Nice to Have:
  • Certifications: Relevant industry certifications such as a CRISC or ISO 27001 Lead Implementer
  • Privacy Knowledge: Familiarity with prominent privacy legislation (e.g., GDPR/CCPA) as it relates to ISO 27701
Compensation Range: 
  • $140,000-$165,000

*This is a hybrid role

JR: 2026-8012

#LI-Hybrid