14h ago

Senior GRC Analyst

Cambridge, MA USA

$88k-$121k / year

full-timemidbiotech

๐Ÿ›  Tech Stack

๐Ÿ’ผ About This Role

You'll own day-to-day execution of the GRC system of record in Jira, maintaining control records and coordinating audit evidence across HITRUST, ISO 27001, and SOC 2 frameworks. You'll run TPRM assessments end-to-end and build automation using AI tools like Claude and Zapier. This is a hands-on execution role in a fast-moving biotech environment.

๐ŸŽฏ What You'll Do

  • Maintain GRC records and compliance status in Jira
  • Run TPRM assessments from intake to approval
  • Coordinate audit evidence collection across frameworks
  • Build GRC automation using AI tools (Claude, Zapier)

๐Ÿ“‹ Requirements

  • 3-6 years of hands-on GRC experience
  • Direct experience using Jira as a compliance/GRC tool
  • Working knowledge of at least two: HITRUST, ISO 27001, NIST 800-171, SOC 2, HIPAA
  • Experience running vendor risk assessments end-to-end

โœจ Nice to Have

  • CISA, CRISC, CISM certification
  • Familiarity with Drata or Vanta
  • Experience supporting multi-entity compliance

๐ŸŽ Benefits & Perks

  • ๐Ÿ–๏ธ Unlimited PTO
  • ๐Ÿ’ต Salary range $88k-$121k
  • ๐Ÿฅ Health insurance
  • ๐Ÿ“ˆ Equity grants
  • ๐Ÿงฌ Work on cutting-edge biotech

๐Ÿ“จ Hiring Process

Estimated timeline: 2-3 weeks ยท AI estimate

  1. 1Recruiter Phone Screenยท 30 min
  2. 2Hiring Manager Interviewยท 45 min
  3. 3Technical/Case Interviewยท 60 min
0 0 0