Remotery

GRC Compliance Analyst

atGoToRemoteHU flagHungaryFull-timeComplianceMid-levelSenior

Posted Jul 19

This is a fully remote position, open to applicants in Hungary.

📋 Description

• Overseeing audits for ISO 27001, SOC 2, PCI-DSS, HIPAA, NIS2, SOX, and C5, which includes managing auditor relationships, facilitating evidence collection, and ensuring completion of remediation activities.

• Conducting assessments and testing of controls in both technical and administrative areas, collaborating with engineering and security teams to analyze control design and effectiveness.

• Collaborating with stakeholders in Engineering, Security, IT, and Product to comprehend technical architectures and convert them into audit-ready control narratives.

• Utilizing AI tools, automation, and cutting-edge technologies to enhance the efficiency of evidence collection, control testing, and reporting processes.

• Managing and improving GRC platforms while creating metrics and dashboards that offer insight into compliance status and control effectiveness.


⛳️ Requirements

• A minimum of 3 years of experience in information security compliance, auditing, or risk management within a technology setting.

• A solid grasp of cloud architecture, IAM, infrastructure, and SDLC controls, facilitating effective collaboration and communication with technical teams.

• Proven experience with compliance frameworks such as ISO 27001, SOC 2, PCI-DSS, HIPAA, NIST 800-53, and NIS2.

• Excellent communication skills in auditing: capable of managing auditors, asserting when evidence requests exceed scope, and defending a control position when justified.

• A keen interest in utilizing technology and AI tools to enhance productivity and streamline compliance operations.

• Bonus Qualifications

• Experience in compliance automation, continuous monitoring initiatives, or GRC platform development.

• Familiarity with platforms like Thoropass, AuditBoard, or Drata.

• Background in creating AI-driven workflows or automation that minimizes compliance burdens.

• Experience in integrating GRC tools with engineering, cloud, identity, or monitoring platforms.

• Knowledge in implementing continuous assurance capabilities.


🏝️ Benefits

• Comprehensive health benefits

• Generous paid time off, which includes paid holidays, volunteer days, quarterly self-care days, and designated no-meeting days by the company

• Tuition reimbursement along with access to both instructor-led and on-demand learning and development programs

• The Thrive Global Wellness Program, featuring a confidential Employee Assistance Program (EAP), a wellness app, and personalized wellness coaching

• Employee-driven communities and initiatives, including Employee Resource Groups (ERGs), GoTo Gives, and charitable matching

People also viewed

Capgemini1 day ago

FBS Regulatory Affairs

MX flagMexico OnlyFull-timeCompliance
ApplyView job
ZoomInfo1 day ago

Manager, Sox Compliance

US flagMaryland, +2 more statesFull-timeCompliance$95.2k – $149.6k/year
ApplyView job
Lifelancer1 day ago

Assistant Regulatory Affairs – LATAM

AR flagArgentina OnlyFull-timeCompliance
ApplyView job
unybrands1 day ago

Senior Global Trade Compliance Analyst

US flagUnited States OnlyFull-timeCompliance
ApplyView job
ReWorks Solutions1 day ago

Healthcare and Compliance Administrator

ZA flagSouth Africa OnlyFull-timeCompliance
ApplyView job
SGS1 day ago

Manager, Regulatory Services

US flagUnited States OnlyFull-timeCompliance
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers