14h ago
Senior GRC Analyst
Cambridge, MA USA
$88k-$121k / year
full-timemidbiotech
๐ Tech Stack
๐ผ About This Role
You'll own day-to-day execution of the GRC system of record in Jira, maintaining control records and coordinating audit evidence across HITRUST, ISO 27001, and SOC 2 frameworks. You'll run TPRM assessments end-to-end and build automation using AI tools like Claude and Zapier. This is a hands-on execution role in a fast-moving biotech environment.
๐ฏ What You'll Do
- Maintain GRC records and compliance status in Jira
- Run TPRM assessments from intake to approval
- Coordinate audit evidence collection across frameworks
- Build GRC automation using AI tools (Claude, Zapier)
๐ Requirements
- 3-6 years of hands-on GRC experience
- Direct experience using Jira as a compliance/GRC tool
- Working knowledge of at least two: HITRUST, ISO 27001, NIST 800-171, SOC 2, HIPAA
- Experience running vendor risk assessments end-to-end
โจ Nice to Have
- CISA, CRISC, CISM certification
- Familiarity with Drata or Vanta
- Experience supporting multi-entity compliance
๐ Benefits & Perks
- ๐๏ธ Unlimited PTO
- ๐ต Salary range $88k-$121k
- ๐ฅ Health insurance
- ๐ Equity grants
- ๐งฌ Work on cutting-edge biotech
๐จ Hiring Process
Estimated timeline: 2-3 weeks ยท AI estimate
- 1Recruiter Phone Screenยท 30 min
- 2Hiring Manager Interviewยท 45 min
- 3Technical/Case Interviewยท 60 min
0 0 0