OneTrust

Senior Information Security GRC Analyst

OneTrust · Madrid, Spain

Posted 16 days ago

or apply directly on OneTrust's site. We never take the application ourselves.

Is this posting real?

This role has been open
16 days
OneTrust's roles stay open a median of 43 days
Reposted
No
Salary listed
No
0% of OneTrust's roles list one
Ghost-job risk at OneTrust
high
45 stale, 3 reposted of 96 open
Hiring momentum
148 roles opened in the last 90 days
↑ up vs. the prior 90 days
Last confirmed on the employer's board
2026-09-17

Measured from postings appearing on and disappearing from OneTrust's own greenhouse board since 2026-08-03. Full hiring picture for OneTrust.

About this role

The Senior Information Security GRC Analyst at OneTrust will be responsible for managing customer security assurance processes, including completing security questionnaires and engaging with customers on security topics. The role involves collaborating with various internal teams to ensure accurate security responses, reviewing contracts for security compliance, and improving operational efficiency within the InfoSec GRC team. The analyst will also mentor junior staff and help streamline security processes.

Our read on this posting3.2out of 5
benefits
4/5
freshness
4/5
career value
4/5
role clarity
4/5
pay transparency
0/5

Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of OneTrust as an employer.

What you need

  • 2-5 years of relevant experience in information security, security compliance, GRC, security assurance, third-party risk, or customer trust functions
  • Demonstrated experience responding to customer security questionnaires and security due diligence requests
  • Familiarity with common frameworks and attestations: SOC 2, ISO 27001, NIST, CIS, PCI DSS, HIPAA, GDPR
  • Strong understanding of security fundamentals (e.g., access control, encryption, vulnerability management, secure SDLC, incident response, logging/monitoring, vendor risk)
  • Experience collaborating cross-functionally (Security, Legal, Privacy, Engineering, Sales)
  • Excellent written and verbal communication skills—able to translate technical controls into clear, customer-ready responses

Nice to have

  • Industry certifications such as CISA and/or CISM (or equivalent)
  • Experience reviewing/negotiating security contract terms, security addenda, and customer assurance language
  • Background in SaaS/cloud security assurance or supporting enterprise customers

What you get

  • Comprehensive healthcare coverage
  • Flexible PTO
  • Equity RSUs
  • Annual performance bonus opportunities
  • Retirement account support
  • 14+ weeks of paid parental leave

Worth weighing

  • Office-first culture with a requirement of three days a week in the office for most roles
  • No specific salary or compensation details provided
  • The role involves a high volume of concurrent requests, which may lead to a fast-paced work environment

Summarised from OneTrust's posting. Read the full original.

Listed by OneTrust on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.

More roles at OneTrust

All 96 open roles at OneTrust

Apply to a Senior Information Security GRC Analyst position at OneTrust - Jobs near me at Madrid, Spain