Hybrid GRC Analyst, Privacy

Posted 1 hour ago

Apply now

About the role

  • GRC Analyst maintaining compliance by managing data requests and interpreting privacy frameworks for a tech company. Collaboration with cross-functional teams to ensure data security and compliance standards.

Responsibilities

  • Execute and optimize processes for handling data subject requests, including data deletion, opt-out from data sharing, and access inquiries, ensuring timely and accurate responses in line with legal requirements
  • Stay current with and interpret various privacy and compliance frameworks (e.g., GDPR, CCPA/CPRA, and applicable state laws) to guide company practices and ensure ongoing adherence
  • Assist in responding to security and privacy questionnaires from prospective and existing customers, with a particular focus on privacy, data protection, and compliance-related questions
  • Monitor and maintain compliance using our platform (Vanta), including uploading evidence of controls, refreshing policies as needed, and escalating technical issues to engineering teams for remediation when flagged
  • Work with our partners and vendors to identify and monitor third-party risk, and guide them to improve over time
  • Conduct regular reviews of privacy risks, contribute to internal audits, and prepare reports on compliance status for leadership
  • Work closely with legal, engineering, and customer success teams to integrate privacy-by-design principles and resolve compliance gaps efficiently

Requirements

  • Bachelor's degree in Information Security, Law, Business, or a related field; relevant certifications (e.g., CIPP, CIPM, or CISSP) are highly preferred
  • 2+ years of experience in GRC, privacy, or compliance roles, ideally in a SaaS or tech environment handling sensitive personal data
  • 2+ years of experience in managing high-volume data subject access requests (DSARs) and opt-out processes under GDPR, CCPA, and similar regulations
  • Familiarity with compliance tools like Vanta or similar platforms for evidence management and policy updates
  • Experience responding to customer security questionnaires and vendor risk assessments

Benefits

  • All employees can work for free with world-class coaches who specialize in creativity, management, and more.

Job title

GRC Analyst, Privacy

Job type

Experience level

JuniorMid level

Salary

$100,000 - $150,000 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job