
Security Analyst - Governance, Risk, and Compliance
Ladders · United States
- Hybrid
- Full-time
- $150,000 / year
- United States
Job highlights
- Lead GRC security controls and risk-aware execution.
- Automate compliance tasks and track program maturity.
- Collaborate with diverse stakeholders on GRC projects.
- Influence architecture and technology for growth.
- Work in a technology-driven, enterprise environment.
About the role
Security Analyst Governance Risk And Compliance
For our client, we are seeking a Security Analyst - Governance Risk And Compliance to join the team of a leader in the Enterprise Technology space. This role will lead technical work focused on secure, reliable systems and risk-aware execution. You will work across engineering, product, operations, and business stakeholders to translate complex requirements into practical technology solutions. The position offers the opportunity to influence architecture, execution quality, and the technology capabilities that enable long-term growth within a technology-driven environment.
Responsibilities
- Collaborate with stakeholders to design and manage security controls for the GRC program
- Automate compliance tasks, such as evidence gathering and control verification
- Track program health and maturity through quantitative and qualitative metrics
- Lead continuous improvement projects related to GRC
- Document security standards, policies, and processes
- Assist with internal and external audits and assessments
- Partner with product and infrastructure teams for GRC-related engineering projects
Qualifications
- Deep knowledge of cybersecurity, privacy, and risk management
- Strong written and verbal communication skills
- Experience in collaborative project environments
- Familiarity with cloud-based SaaS, particularly AWS
- Background in organizations with high compliance needs
- Knowledge of security standards like SOC 2, ISO 27001, and privacy laws like CCPA and GDPR
- Experience with collaboration tools like Confluence, Slack, and Github
Benefits
- Health, vision, and dental insurance
- Mental health benefits
- Restricted Stock Units (RSUs)
Our client is an equal opportunity employer. We encourage you to apply even if you don’t meet every qualification—your background could be exactly what this team needs.
Key skills/competency
- Security Analyst
- Governance, Risk, and Compliance (GRC)
- Cybersecurity
- Risk Management
- Compliance Automation
- Policy Documentation
- Auditing
- Cloud Security (AWS)
- Security Standards (SOC 2, ISO 27001)
- Privacy Laws (CCPA, GDPR)
Skills & topics
- Security Analyst
- Governance
- Risk
- Compliance
- GRC
- Cybersecurity
- Risk Management
- AWS
- SOC 2
- ISO 27001
- CCPA
- GDPR
- Remote
How to get hired
- Tailor your resume: Highlight GRC experience, security standards, and cloud knowledge.
- Craft a strong cover letter: Emphasize collaboration and risk management skills for this Security Analyst role.
- Prepare for technical questions: Review GRC frameworks, AWS, and relevant privacy laws.
- Showcase collaboration: Be ready to discuss teamwork in past projects and GRC initiatives.
- Address qualifications: Apply even if you don't meet every requirement; highlight transferable skills.
Technical preparation
Behavioral questions
Frequently asked questions
- What are the key responsibilities for a Security Analyst - Governance Risk And Compliance at Ladders?
- As a Security Analyst - Governance Risk And Compliance, you will design and manage security controls for the GRC program, automate compliance tasks, track program health, lead improvement projects, document security standards, assist with audits, and partner with product/infrastructure teams for GRC engineering projects.
- What qualifications are essential for the Security Analyst - Governance Risk And Compliance role?
- Essential qualifications include deep knowledge of cybersecurity, privacy, and risk management, strong communication skills, experience in collaborative environments, familiarity with AWS, and knowledge of standards like SOC 2, ISO 27001, CCPA, and GDPR.
- Is this Security Analyst - Governance Risk And Compliance position remote?
- Yes, this Security Analyst - Governance Risk And Compliance position is fully remote, but candidates must be US-based. Visa sponsorship is not available for this role.
- What is the salary range for the Security Analyst - Governance Risk And Compliance position?
- The annual salary for this Security Analyst - Governance Risk And Compliance role ranges from $116,000 to $187,660, depending on experience and qualifications.
- What benefits are offered to a Security Analyst - Governance Risk And Compliance at this company?
- Benefits include health, vision, and dental insurance, mental health benefits, and Restricted Stock Units (RSUs).
- How important is experience with specific security standards like SOC 2 for this role?
- Knowledge of security standards like SOC 2, ISO 27001, and privacy laws like CCPA and GDPR is a key qualification for this Security Analyst - Governance Risk And Compliance role, indicating the importance of compliance expertise.
- Can I apply for the Security Analyst - Governance Risk And Compliance role if I don't meet all qualifications?
- Yes, the client encourages you to apply even if you don't meet every qualification. Your unique background might be exactly what the team needs for this Security Analyst - Governance Risk And Compliance position.