GRC Analyst

Remote Full-time
Avetta is a SaaS platform that connects leading organizations with qualified suppliers, contractors, and vendors. The GRC Analyst’s primary role is to support governance, risk, and compliance activities by performing control monitoring, risk assessments, and documentation updates. Responsibilities Assist in maintaining security and compliance policies, standards, and procedures Support updates to documentation, control mappings, and compliance workflows Help prepare reports and dashboards for leadership or auditors Support enterprise and departmental risk assessment activities by gathering data, performing initial risk scoring, and documenting findings Track remediation items and follow up with stakeholders to ensure timely completion Maintain the risk register and ensure entries remain current and accurate Collect and organize audit evidence for SOC 2, ISO 27001, PCI, and other frameworks Conduct control testing and gap assessments under the guidance of senior team members Monitor control performance and document exceptions or potential issues Maintain and update GRC platforms (e.g., Vanta, Drata, Anecdotes, OneTrust) Help maintain the centralized control library and update mappings across multiple frameworks Assist teams in understanding control requirements and preparing evidence Perform security reviews and tracking of vendors, questionnaire analysis, and documentation Assist in developing or distributing compliance training materials and reminders Help ensure employees complete required annual training Skills Bachelor's degree in Information Security, Business, Risk Management, or related field (or equivalent practical experience) 1–3 years of experience in compliance, IT audit, cybersecurity operations, risk management, or a similar field Basic understanding of security controls, audit principles, and risk management concepts Familiarity with cloud technologies (AWS, Azure, GCP) and SaaS environments Ability to review evidence, evaluate control performance, and document findings clearly Strong attention to detail and organizational skills Good communication skills and ability to collaborate with cross-functional teams Ability to manage multiple tasks and maintain accuracy under deadlines Analytical mindset with a willingness to learn and improve processes Exposure to common compliance frameworks such as SOC 2, ISO 27001, NIST CSF, SOX, HIPAA, or PCI (hands-on experience is preferred) Experience with GRC tools and ticketing systems is a plus Benefits Health, Dental, and Vision Insurance 401(k) Paid Time Off Company Overview Avetta is a software company that offers a cloud-based platform for commercial marketplaces and supply chain risk management. It was founded in 2003, and is headquartered in Lehi, Utah, USA, with a workforce of 501-1000 employees. Its website is Company H1B Sponsorship Avetta has a track record of offering H1B sponsorships, with 4 in 2025, 3 in 2024, 3 in 2022, 4 in 2021, 4 in 2020. Please note that this does not guarantee sponsorship for this specific role.
Apply Now →

Similar Jobs

Associate, Underwriting

Remote Full-time

[Remote] Data Collector (United States)

Remote Full-time

Associate Accounting Specialist

Remote Full-time

Seller Fraud Agent

Remote Full-time

[Remote] AI Trainer - Advanced Arabic Fluency (Canada)

Remote Full-time

Inside Sales Representative - Aftermarket

Remote Full-time

Relationship Manager - Shrewsbury, MA

Remote Full-time

Account Coordinator

Remote Full-time

Regional Marketing Coordinator - Go To Market

Remote Full-time

Personal Insurance Pricing Analytics - Actuarial Analyst

Remote Full-time

Remote Operations Producer II

Remote Full-time

Experienced Customer Support Specialist for Remote Position – Delivering Exceptional Service and Driving Customer Success at blithequark

Remote Full-time

**Experienced Customer Care Specialist - Remote Work Opportunity with Competitive Salary and Growth Potential**

Remote Full-time

**Experienced Customer Service Representative – Delivering Exceptional Travel Experiences for Global Travelers at blithequark**

Remote Full-time

Analyst

Remote Full-time

Experienced Full Stack Content and Client Experience Expert - Deals Enablement Program Development and Implementation

Remote Full-time

Information Security Compliance Analyst (12 Month Contract)

Remote Full-time

Experienced Data Entry Specialist – Remote Part-Time Opportunity for Detail-Oriented Individuals with Excellent Organizational Skills

Remote Full-time

Customer Product Engineering Director

Remote Full-time

Experienced Data Entry Specialist – Part-Time Weekend Remote Opportunity for Detail-Oriented Individuals in UAE

Remote Full-time
← Back to Home