Upwind Security Logo

Upwind Security

GRC Senior Analyst

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in India
Mid level
Remote
Hiring Remotely in India
Mid level
The GRC Senior Analyst will enhance the organization's GRC strategy, manage compliance with regulations, conduct risk assessments, and support third-party risk management while collaborating across departments.
The summary above was generated by AI
Description

Upwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters. With industry-leading efficiency and eBPF-powered sensors, Upwind delivers comprehensive capabilities, including agentless cloud posture discovery, real-time threat protection, and integrated API security. From misconfigurations to malware defense, Upwind ensures end-to-end, cost-effective cloud infrastructure protection. At Upwind, you’ll have the opportunity to think creatively, explore new ideas, and use your skills to make a meaningful impact on our growth.

Upwind Security is seeking a highly motivated GRC (Governance, Risk, and Compliance) Analyst to join our growing Security & Compliance team. In this role, you will be responsible for supporting the implementation, operation, and continuous improvement of our GRC framework. You will help ensure our organization’s policies, procedures, and controls align with regulatory requirements and industry best practices.

Responsibilities 

  • Support the execution and enhancement of the organization’s GRC strategy, including policy governance, risk assessments, compliance monitoring, and audit support.
  • Assist in maintaining compliance with security frameworks and standards such as ISO 27001, SOC 2, NIST, and GDPR.
  • Conduct periodic risk assessments and control gap analyses across departments.
  • Track remediation of audit findings, risks, and control deficiencies, and validate completion of corrective actions.
  • Support third-party risk management activities including vendor due diligence and ongoing assessments.
  • Help maintain the GRC tool and ensure timely updates of risk registers, controls, and evidence repositories.
  • Collaborate cross-functionally with IT, Legal, Engineering, and other business units to promote a culture of security and compliance.
  • Assist in the creation and maintenance of documentation such as policies, standards, and procedures.
  • Prepare reports and dashboards for management review.
  • Stay updated on emerging regulations, standards, and security trends.
Requirements
  • Bachelor’s degree in Information Security, Risk Management, Computer Science, or a related field.
  • 4-6 years of experience in GRC, cybersecurity, risk management, or a compliance-focused role.
  • Familiarity with common regulatory and compliance frameworks (e.g., ISO 27001, SOC 2, HIPAA, PCI-DSS, NIST CSF).
  • Experience working with GRC platforms such as Vanta, Drata, OneTrust, or similar tools is a plus.
  • Excellent communication, documentation, and stakeholder engagement skills.
  • Strong attention to detail and organizational skills.
  • Relevant certifications (e.g., CISA, CISM, CRISC, ISO 27001 LA, or similar) are a plus.

Top Skills

Drata
Gdpr
Grc Platforms
Iso 27001
Nist
Onetrust
Soc 2
Vanta

Similar Jobs

4 Days Ago
Remote
Shri Bhrigukshetra, BLR, Uttar Pradesh, IND
Senior level
Senior level
Fintech • Analytics
The GRC Analyst will implement and manage the GRC platform, conduct gap analyses, support end-to-end GRC application delivery, and ensure alignment with risk and compliance strategies. The role involves liaising with various teams, training users, and optimizing platform performance.
Top Skills: APIsConfluenceGrc PlatformsJIRAPower BISQLTableau
2 Hours Ago
Remote or Hybrid
India
Mid level
Mid level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The role involves designing and implementing AI-powered workflows, collaborating with teams to enhance operational efficiency through automation platforms.
Top Skills: Ai PlatformsGemini EnterpriseJSONMcpN8NPythonRest ApisSQLTray.AiXML
4 Hours Ago
Easy Apply
Remote or Hybrid
Easy Apply
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
The Escalation Engineer - DLP will provide advanced technical support for complex DLP issues, perform root cause analysis, and collaborate with cross-functional teams to enhance Zscaler's DLP solutions.
Top Skills: AWSAzureCasbDlpGCPPowershellPythonUnix/LinuxWindows

What you need to know about the Chennai Tech Scene

To locals, it's no secret that South India is leading the charge in big data infrastructure. While the environmental impact of data centers has long been a concern, emerging hubs like Chennai are favored by companies seeking ready access to renewable energy resources, which provide more sustainable and cost-effective solutions. As a result, Chennai, along with neighboring Bengaluru and Hyderabad, is poised for significant growth, with a projected 65 percent increase in data center capacity over the next decade.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account