GRC Analyst - SecOps - Bright Defense

GRC Analyst II

Governance — Security Policy, Risk & Compliance

Full-Time Remote Governance 2–3 Years Experience

You’ll play a critical role in helping our customers establish and implement robust security governance programs — serving as their trusted point of contact for policy development, gap reviews, compliance readiness, and clear communication of security requirements from day one.

About the role

As a GRC Analyst II on our Governance Team, you’ll work directly with clients to support customer onboarding, policy development, gap reviews, and compliance readiness. You’ll explain governance frameworks and security requirements clearly to non-technical stakeholders, coordinate cross-functional handoffs with SecOps and Offensive Security, and help clients build the governance foundation they need to pass audits and maintain strong security postures.

Key responsibilities

Governance & policy

Gap assessment & audit readiness

Cross-functional coordination

Cross-functional collaboration

Requirements

Experience & frameworks

Communication & availability

Nice to have

Tools & platforms

Relevant certifications

ISO 27001 Lead Implementer, CISA, CISSP (Associate), CompTIA Security+, CISM, CC (Certified in Cybersecurity), ISACA Cybersecurity Fundamentals

Why you’ll love this role

Compensation & perks