Demo

Senior Analyst, Governance, Risk and Compliance (Denver, Los Angeles and/or Indiana)

Formstack
Formstack Salary
Los Angeles, CA Full Time
POSTED ON 12/5/2024
AVAILABLE BEFORE 2/5/2025

Who You Are:


The Senior Analyst, Governance, Risk, and Compliance (GRC) is a key member of the Information Security team responsible for managing, monitoring, and advancing Formstack’s compliance with various security and privacy regulations and frameworks. This individual will play a pivotal role in ensuring that Formstack’s operations, products, and services are compliant with industry standards while helping to mitigate risks and support governance initiatives.


What You Will Do:


- Lead and manage Formstack’s compliance initiatives related to regulations such as HIPAA, SOC 2, GDPR, ISO 27001, PCI-DSS, CCPA, and others.

- Collaborate with internal teams (product, legal, IT, and engineering) to develop, implement, and maintain Formstack’s security policies, controls, and procedures.

- Perform risk assessments and conduct security audits across departments to ensure compliance with regulatory and industry standards.

- Assist in the preparation and facilitation of external audits and certifications (e.g., SOC 2 audits, ISO 27001 certification processes).

- Maintain and enhance Formstack's risk management framework, including the identification, assessment, and mitigation of operational, legal, and regulatory risks.

- Monitor security compliance trends, changes in regulatory requirements, and new compliance frameworks relevant to Formstack’s operations.

- Develop, maintain, and update internal documentation, including security policies, standards, and guidelines, to ensure they reflect current regulatory requirements and best practices.

- Manage the vendor risk management program, including the review and monitoring of vendor compliance with Formstack’s security standards.

- Support security awareness training programs across the organization to ensure that all employees are knowledgeable about GRC policies.

- Provide guidance on governance initiatives and best practices to help improve organizational alignment with compliance and risk management standards.

- Ensure incident response plans and business continuity plans are up to date and regularly tested through internal tabletops.

- Collaborate on data privacy initiatives and ensure that Formstack’s practices align with privacy regulations like GDPR and CCPA.

- Act as a liaison between external regulatory bodies, auditors, and internal teams.


What We Are Looking For:


- 5 years of experience in Governance, Risk, and Compliance (GRC) or a related field, ideally within a SaaS, technology, or healthcare-related environment.

- Strong knowledge of industry standards and frameworks, including NIST, SOC 2, or ISO 27001.

- Demonstrated experience conducting risk assessments, security audits, and managing compliance projects.

- Hands-on experience with cloud security and compliance in environments like AWS.- Strong understanding of cybersecurity principles.

- Experience with third-party vendor risk management and compliance monitoring.

- Excellent written and verbal communication skills, with the ability to translate complex regulatory requirements into actionable guidance.

- Ability to work cross-functionally with legal, IT, and engineering teams.

- Strong organizational skills, attention to detail, and the ability to manage multiple projects in a fast-paced environment.


Bonus Points:


- Bachelor’s degree in a relevant field (e.g., Information Security, IT, Business, Law, Engineering).

- Certifications such as CISSP, CISA, CISM, or CRISC.

- Familiarity with frameworks such as COBIT or ISO 31000.

- Experience in the technology or SaaS industry, with a focus on product compliance.

- Knowledge of secure software development practices and DevSecOps.

- Experience working in an agile or DevOps environment.

- Strong knowledge of industry standards and frameworks, including HIPAA, GDPR, PCI-DSS and CCPA.

\n


\n
$140,000 - $180,000 a year
\n

Salary : $140,000 - $180,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior Analyst, Governance, Risk and Compliance (Denver, Los Angeles and/or Indiana)?

Sign up to receive alerts about other jobs on the Senior Analyst, Governance, Risk and Compliance (Denver, Los Angeles and/or Indiana) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$91,142 - $116,690
Income Estimation: 
$116,347 - $154,557
Income Estimation: 
$150,417 - $183,047
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Formstack

Formstack
Hired Organization Address Denver, CO Full Time
What You Will Do: The Customer Support Specialist, Tier 1, will be among the first line of support for our Document and ...
Formstack
Hired Organization Address Indianapolis, IN Full Time
Formstack improves people’s lives with practical solutions to their everyday work. We are looking for the next Stacker t...
Formstack
Hired Organization Address Indianapolis, IN Full Time
Formstack improves people’s lives with practical solutions to their everyday work. We are looking for the next Stacker t...

Not the job you're looking for? Here are some other Senior Analyst, Governance, Risk and Compliance (Denver, Los Angeles and/or Indiana) jobs in the Los Angeles, CA area that may be a better fit.

Governance, Risk, Compliance Analyst

The TCW Group, Los Angeles, CA

AI Assistant is available now!

Feel free to start your new journey!