Browse
Employers / Recruiters

Senior Analyst, Governance, Risk and Compliance (Denver, Los Angeles and/or Indiana)

formstack · 30+ days ago
Denver, CO
$94k+
Estimation
Full-time
Continue
By pressing the button above, you agree to our Terms and Privacy Policy, and agree to receive email job alerts. You can unsubscribe anytime.
Who You Are:

The Senior Analyst, Governance, Risk, and Compliance (GRC) is a key member of the Information Security team responsible for managing, monitoring, and advancing Formstack’s compliance with various security and privacy regulations and frameworks. This individual will play a pivotal role in ensuring that Formstack’s operations, products, and services are compliant with industry standards while helping to mitigate risks and support governance initiatives.

What You Will Do:

- Lead and manage Formstack’s compliance initiatives related to regulations such as HIPAA, SOC 2, GDPR, ISO 27001, PCI-DSS, CCPA, and others.
- Collaborate with internal teams (product, legal, IT, and engineering) to develop, implement, and maintain Formstack’s security policies, controls, and procedures.
- Perform risk assessments and conduct security audits across departments to ensure compliance with regulatory and industry standards.
- Assist in the preparation and facilitation of external audits and certifications (e.g., SOC 2 audits, ISO 27001 certification processes).
- Maintain and enhance Formstack's risk management framework, including the identification, assessment, and mitigation of operational, legal, and regulatory risks.
- Monitor security compliance trends, changes in regulatory requirements, and new compliance frameworks relevant to Formstack’s operations.
- Develop, maintain, and update internal documentation, including security policies, standards, and guidelines, to ensure they reflect current regulatory requirements and best practices.
- Manage the vendor risk management program, including the review and monitoring of vendor compliance with Formstack’s security standards.
- Support security awareness training programs across the organization to ensure that all employees are knowledgeable about GRC policies.
- Provide guidance on governance initiatives and best practices to help improve organizational alignment with compliance and risk management standards.
- Ensure incident response plans and business continuity plans are up to date and regularly tested through internal tabletops.
- Collaborate on data privacy initiatives and ensure that Formstack’s practices align with privacy regulations like GDPR and CCPA.
- Act as a liaison between external regulatory bodies, auditors, and internal teams.

What We Are Looking For:

- 5+ years of experience in Governance, Risk, and Compliance (GRC) or a related field, ideally within a SaaS, technology, or healthcare-related environment.
- Strong knowledge of industry standards and frameworks, including NIST, SOC 2, or ISO 27001.
- Demonstrated experience conducting risk assessments, security audits, and managing compliance projects.
- Hands-on experience with cloud security and compliance in environments like AWS.- Strong understanding of cybersecurity principles.
- Experience with third-party vendor risk management and compliance monitoring.
- Excellent written and verbal communication skills, with the ability to translate complex regulatory requirements into actionable guidance.
- Ability to work cross-functionally with legal, IT, and engineering teams.
- Strong organizational skills, attention to detail, and the ability to manage multiple projects in a fast-paced environment.

Bonus Points:

- Bachelor’s degree in a relevant field (e.g., Information Security, IT, Business, Law, Engineering).
- Certifications such as CISSP, CISA, CISM, or CRISC.
- Familiarity with frameworks such as COBIT or ISO 31000.
- Experience in the technology or SaaS industry, with a focus on product compliance.
- Knowledge of secure software development practices and DevSecOps.
- Experience working in an agile or DevOps environment.
- Strong knowledge of industry standards and frameworks, including HIPAA, GDPR, PCI-DSS and CCPA.

Last updated on Oct 3, 2024

See more

About the company

More jobs at formstack

Analyzing

Toronto, Ontario

 · 

30+ days ago

Los Angeles, California

 · 

30+ days ago

Los Angeles, California

 · 

30+ days ago

More jobs like this

Analyzing
Multifamily Underwriting Associate (Freddie Mac)$66k+
R
rajdnwiu7c8r934thp9x1p3cy8m5bv00f9sctvg8eqkxizduzvwvbmtwwys93l1z

Dallas, Texas

 · 

30+ days ago

Global Process Risk & Compliance Analyst$89k+
R
rsjdnwc9jel4i3xyjsm3m8vnhrmayk037bphn44zg3i1bl3dcjtqhqlclsisinpr

Raleigh, North Carolina

 · 

30+ days ago

Seattle, Washington

 · 

30+ days ago

Jersey City, New Jersey

 · 

30+ days ago

Chicago, Illinois

 · 

30+ days ago

New York, New York

 · 

30+ days ago

Livonia, Michigan

 · 

30+ days ago

Risk Management Analyst$97k+
G
global-channel-management-inc

Plainfield, New Jersey

 · 

30+ days ago

Ecommerce Data Analyst$91k+
F
fvjdnwvwi7yecmymd9si3it1ointo80348emvd7mgqh749rpbe3n811jnfkeb228

Boston, Massachusetts

 · 

30+ days ago

Fraud Operations Analyst$83k+
C
csjdnws57zkoxkvjhwvudtxno118x6039fx1e6pll7vuv3kg6vefadt7v2wpuykf

Youngstown, Ohio

 · 

30+ days ago

Developed by Blake and Linh in the US and Vietnam.
We're interested in hearing what you like and don't like! Live chat with our founder or join our Discord
Changelog
🚀 LaunchpadNov 27
Create a site and sell services based on your CV.
🔥 Job search dashboardNov 13
Revamped job search UI with a sortable grid, live filtering, bookmarks, and application tracking.
🫡 Cover letter instructionsSep 27
New Studio settings give you control over AI output.
✨ Cover Letter StudioAug 9
Automatically generate cover letters for any job.
🎯 Suggested filtersAug 6
Copilot suggests additional filters above the results.
⚡️ Quick applicationsAug 2
Apply to jobs using info from your CV. Initial coverage of ~200k jobs in Spain, Germany, Austria, Switzerland, France, and the Netherlands.
🧠 Job AnalysisJul 12
Have Copilot read job descriptions and extract out key info you want to know. Click "Analyze All" to try it out. Click on the Copilot's gear icon to customize the prompt.
© 2024 RemoteAmbitionAffiliate · Privacy · Terms · Sitemap · Status