Entry-level GRC Analyst

Posted 2 months ago

Are you applying to the internship?

Job Description

GRC Analyst, Entry Level | Jobright.ai

The Tone:
This is a full-time role at Jobright.ai, located remotely in the United States. Jobright is a personal AI job search agent that simplifies and accelerates the job search process for users. As an entry-level GRC Analyst, you will play a crucial role in supporting the company’s governance, risk, and compliance operations. This position offers high ownership and direct impact, contributing to the development of real, production AI agents and shaping the user experience at the intersection of AI, agents, and product.

The TL;DR
• Role: Early Career
• Type: Full-time
• Location: Remote, United States

• Mission: This person solves problems related to maintaining robust governance, risk, and compliance operations for the company’s AI-driven platform.

What You’ll Actually Do
• Maintain: Maintain risk registers, control inventories, and compliance evidence to ensure accurate and up-to-date records.
• Assist: Assist with control assessments, perform gap analyses, and track remediation efforts to address identified vulnerabilities.
• Collect: Collect and organize necessary evidence for internal and external audits, as well as customer security reviews.
• Update: Help update and refine essential policies, procedures, and security documentation across the organization.
• Track: Track findings, assigned owners, due dates, and status from inception through successful completion, and prepare clear reports in collaboration with security, legal, and operations teams.

The Must-Haves
• Background: Entry-Level professional with a foundational understanding of governance, risk, compliance (GRC), or general information security concepts.
• Experience: No specific years of experience are required. Relevant internship, coursework, certification, or project experience in security, audit, or compliance would be highly beneficial for this role.
• Skills: Demonstrated strong attention to detail, excellent organizational abilities, and clear written communication skills. The ability to accurately interpret requirements and thoroughly document evidence is essential, along with comfort in utilizing spreadsheets, tracking tools, and structured review processes. This role also requires the ability to manage priorities and tasks independently within a remote work environment.
• Bonus: Prior exposure to industry frameworks such as NIST, ISO 27001, SOC 2, or CIS Controls. Familiarity with specialized GRC, ticketing, document management, or risk tracking tools. Holding an entry-level certification like Security+ or ISO 27001 Foundation is a plus.

Related Jobs