GRC Analyst

Boston, Massachusetts, United States

Applications have closed

Aura

Aura protects your identity, finances and sensitive data. All plans include a $1M insurance policy that covers eligible losses. Try Aura 14-days free.

View company page

Aura is on a mission to create a safer internet.  In a world where our lives are increasingly online, Aura's category-defining suite of intelligent digital safety products help millions of customers protect themselves against digital threats, and that number is growing rapidly.  This is an exciting phase at Aura, and our team of over 600 people worldwide is guided by a leadership slate that's successfully grown startups into multi-billion dollar organizations. 

Come join us for the ride!

About the Role:

We are looking for a GRC Analyst to help us define, create, and manage policies and controls in support of our risk management, legal, and regulatory compliance needs. This is a hands-on role, you will be responsible for measuring day-to-day IT compliance and risk management functions, partnering closely with stakeholders to document controls and their performance over time.

Day to Day:

  • Contribute to the development and continuous improvement of the information security program objectives
  • Support and improve vendor and customer due diligence processes
  • Work with multiple departments to ensure controls are adequate, appropriate, and effective
  • Support internal and external audit processes for relevant compliance requirements
  • Support internal and external risk assessments to validate effectiveness of security controls
  • Maintain a risk register for identification, evaluation and monitoring of risk findings
  • Collaborate to define IT security policies, controls, standards, and procedures

What you bring to the table:

  • BA/BS degree or equivalent experience
  • Demonstrated ability in information security, IT audit, IT risk management, or IT compliance domains
  • Familiarity with common frameworks, such as: SOC 2, PCI, NIST CSF, CCPA, GDPR
  • Familiarity with an IT GRC platform or technology
  • Ability to adapt and learn technical knowledge quickly
  • Excellent interpersonal, written and verbal communication skills

 

 

Aura is proud to be an equal employment workplace. All qualified applicants will be considered for employment without regard to, and will not be discriminated against based on race, color, ancestry, national origin, religion, age, sex, gender, marital status, sexual orientation, gender identity, disability status, veteran status, or any protected category. Beyond equal employment opportunity, Aura is committed to being an inclusive community where all feel welcome.

Aura is dedicated to providing an accessible environment for all candidates during the application process and for employees during their employment. If you need accessibility assistance and/or a reasonable accommodation due to a disability, please let your Talent Acquisition Partner know.

Important privacy information for California job applicants can be found here.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Audits CCPA Compliance GDPR Monitoring NIST Privacy Risk assessment Risk management SOC SOC 2

Region: North America
Country: United States
Job stats:  23  2  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.