-->

Senior GRC Analyst Jobs in United States

Senior GRC Analyst Jobs in United States

Benepass, a well-known fintech platform making local and international employee benefits simple, is looking for an experienced and detail-oriented Senior GRC Analyst in the United States (US). 


Benepass gives companies the tools to design customizable benefits plans for their hybrid and remote-first workforce. 


After raising about $75 million in equity capital from big investors like Centana Growth Partners and Threshold Ventures, Benepass is growing fast.


 If you're skilled in security policies, risk management, and compliance operations, this remote-first company offers a great career opportunity.



Salary, Location, and Employment Type


Based on Benepass’s corporate framework and the US fintech market, here’s what you need to know about this role:


Job Location: United States (100% Remote / Virtual Workspace)


Organization: Benepass


Role Title: Senior GRC Analyst


Employment Type: Full-time (Permanent, individual contributor track)


Salary & Compensation: $130,000 - $160,000 per year + Equity (depends on your experience and interview performance)


Travel Requirements: 3 to 4 company-wide on-site events per year and occasional office travel if needed



Job Summary and Responsibilities


As a Senior GRC Analyst, you’ll make Benepass’s governance, risk, compliance, audit readiness, and customer assurance programs more mature and secure. You’ll report to the Head of Infosec & GRC and work alongside a lean security team.


Governance, Compliance, and Audit Readiness


Compliance Operations: Manage and improve the company’s security frameworks and internal controls.


Audit Documentation: Always keep evidence and documents ready and organized for SOC 2 and other regulatory audits.


Policy Management: Review, update, and help implement security and compliance policies across the whole company.



Risk Management and Customer Assurance


Risk Tracking: Identify enterprise risks and vulnerabilities, track them in the risk register, and develop risk mitigation plans.


Security Questionnaires: Support the Sales and Customer Success teams when large enterprise clients send security questionnaires or compliance assessments before deals.


Cross-Functional Partnership: Work closely with Engineering, IT, Legal, People, and Product teams to make sure compliance protocols don’t slow down the business.



Qualifications and Requirements


We’re looking for a pragmatic and organized professional who can bring structure to tough or unclear situations.



Required Experience & Technical Skills


Professional Experience: Solid senior-level experience in GRC (Governance, Risk, and Compliance) or IT Audit, ideally in a fast-growing startup or tech environment.


Framework Knowledge: Practical experience with SOC 2 compliance, ISO 27001, or regulatory controls related to fintech.


Communication Skills: Strong ability to talk about compliance matters with both technical software engineers and non-technical stakeholders.


Analytical Mindset: Skill in risk assessment and in putting data security policies into practice for business needs.


Nice-to-Haves


GRC professional certifications like CISA, CRISC, CISM, or CISSP are a huge plus.


Prior background in legal or data privacy compliance for fintech, digital payments, or healthcare/benefits platforms.



Role Details


FeatureDetails
Product UniverseFintech Platform, Employee Benefits, & Digital Perks
Funding Status$75M Raised, Backed by Centana & Gradient Ventures
Work Architecture100% Remote (US/Canada Base) with Seasonal On-sites
Market RecognitionListed on Inc. Magazine's Best Workplaces of 2023



What We Offer (Company Benefits)


Benepass provides an inclusive and collaborative work environment, with a strong focus on your health and career growth. 


In this role, you'll earn a top salary between $130,000 and $160,000, plus company equity (shares). On top of that, you get remote work flexibility, excellent healthcare benefits, a personalized perks card, and full support for professional development.



How to Apply


If you're a GRC professional based in the United States who fits these criteria and wants to work remotely, visit the official Benepass candidate resource page to apply online.



Apply Now



Professional Advice


When updating your resume, highlight your experience in tech or fintech startups with clear headings. Make sure you show how you handled SOC 2 audits or improved security questionnaire response times in past jobs. 


Benepass is building a lean team where you'll need to execute tasks yourself, so don't forget to include "hands-on execution" and "cross-functional collaboration" in your resume with real examples.