CareerPlanGet AI match score →

Governance, Risk & Compliance Analyst

San Francisco💼 Full-time🗓 2026-07-08 → 2026-07-31

Core

Design and implement governance, risk, and compliance frameworks (SOC2, ISO 27001, HIPAA, GDPR, CCPA, CPRA) and build internal GRC tooling to mitigate data security and compliance risks.

Role type

Senior GRC Analyst (AI/Cloud Security)

Builds

Internal GRC platform, audit management processes, and compliance documentation systems

Domain

High-tech / Cloud-native / AI Safety

Deliverable

production ML models | infrastructure

Required skills

SOC2, ISO 27001, HIPAA, GDPR, CCPA, CPRA, risk assessment, audit management, policy writing, AI regulatory standards, cloud-native environments, automation using AI agents

Preferred skills

cross-functional collaboration, project completion, translating complex requirements into actionable work-streams

Technologies

SOC2, ISO 27001, HIPAA, GDPR, CCPA, CPRA, AI agents

Responsibilities

Implement and lead compliance frameworks (SOC2, ISO 27001, HIPAA); Ensure compliance with privacy regulations (GDPR, CCPA, CPRA); Design scalable audit management processes; Build internal GRC platform and tooling; Conduct risk assessments and mitigate data security risks; Write and update policies for security, privacy, and AI safety; Follow and shape AI regulatory landscape

Sourced via ashby · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.
Apply on Ashby ↗