GRC & Privacy Analyst

 Posted 10 hours ago
     
 $115K - $125K per year
  
โญ 2-5 years experience
Apply Now

Please mention DailyRemote when applying

?/100
Resume Match Score

Match your resume skills with our AI powered skill match!

Get professional review

AI Summary

The GRC & Privacy Analyst will own and operationalize compliance programs while managing audit cycles across various security frameworks. They will also embed privacy-by-design principles and leverage automation tools to maintain continuous control monitoring.


Thrive Global is seeking a detail-oriented GRC (Governance, Risk, and Compliance) and Privacy Analyst to strengthen our security, compliance, and data privacy posture. In this role, you will own and operationalize compliance programs, manage audit cycles, and help embed privacy-by-design principles across a health-focused, data-sensitive organization. This is an ideal position for someone who thrives at the intersection of security frameworks, privacy regulation, and modern automation tooling.


How Youโ€™ll Contribute

  • Administer and optimize compliance automation platforms such as Vanta, maintaining continuous control monitoring and evidence collection.
  • Lead and support audits across multiple frameworks, coordinating with internal stakeholders and external assessors.
  • Maintain and mature compliance programs mapped to SOC 2, ISO 27001, ISO 27701, ISO 42001, HITRUST, HIPAA, NIST 800-53, and the NIST AI Risk Management Framework (AI RMF).
  • Interpret and apply privacy standards including HIPAA and GDPR, ensuring data handling practices meet regulatory obligations.
  • Conduct risk assessments, track remediation efforts, and manage evidence and control documentation.
  • Apply project management discipline to compliance initiatives โ€” setting timelines, coordinating cross-functional owners, and driving deliverables to completion.
  • Leverage AI tools to improve efficiency in evidence review, policy drafting, risk analysis, and reporting workflows.

Qualifications & Skills

  • Demonstrated experience with GRC and compliance automation applications, particularly Vanta.
  • Working knowledge of key security and privacy frameworks: SOC 2, ISO 27001, ISO 27701, ISO 42001, HITRUST, HIPAA, NIST 800-53, and NIST AI RMF.
  • Strong understanding of privacy regulations, including HIPAA and GDPR.
  • Proven experience managing or supporting audits and applying structured project management practices.
  • Comfort and fluency with AI tools and a willingness to integrate them into daily workflows.
  • Excellent written and verbal communication skills, with strong attention to detail.
  • Relevant certifications (e.g., CISA, CIPP, ISO 27001 Implementer).
  • Experience in a healthcare, wellness, or otherwise regulated data environment.
  • Familiarity with AI governance and emerging AI compliance requirements.


โœจ What We Offer:

  • ๐ŸŒ Mission-Driven Impact: Be part of a company thatโ€™s truly making a difference in peopleโ€™s lives around the world.
  • ๐Ÿš€ Career Growth: Develop within the company and help shape our growth strategy.
  • ๐Ÿ’™ Human-Centric Culture: Thrive in a supportive environment with a range of wellness perks and benefits.
  • ๐Ÿ’ฐ Competitive Compensation: Enjoy a comprehensive and rewarding total compensation package.
  • ๐Ÿฉบ Health & Financial Benefits: Medical, dental, and vision coverage plus a 401(k) program with company match.
  • ๐ŸŒด Time to Recharge: Generous paid time-off programs designed to help you rest, reset, and recharge โ€” including Thrive Time, a benefit unique to Thrive that gives employees additional paid time off after major projects or intense periods of work to truly recharge and recover.


Compensation:

Total target compensation for this role will be $115,000 - $125,000.

  • Please note: We provide a competitive mix of salary, performance bonus, and equity. The final offer amount will depend on factors like experience, expertise, and may differ from the range above. This range also excludes additional benefits, such as 401(k), and medical, dental, or vision insurance.

Thrive is deeply committed to creating a safe and welcoming work environment free of discrimination and harassment so that all employees can bring their whole selves to work.


Thrive is proud to ensure equal employment opportunity (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, disability, genetics, gender, gender identity, gender expression, sexual orientation, age, marital status, family or parental status, veteran status, or any other characteristic protected by applicable federal, state or local law.


Thrive is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. Please inform Thriveโ€™s Recruiting team if you need any assistance completing any forms or to otherwise participate in the application process.

Similar Jobs

See all Remote Others jobs โ†’

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Others

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified