GRC Analyst supporting WHOOP's third-party vendor risk program. Manage vendor risk assessments, triage intakes, perform reviews and remediation tracking, and identify workflow improvements across Security, Legal, and other teams. Requires 2+ years GRC experience and knowledge of compliance frameworks.
Salary not listed
On-site2+ YOEOther
About the role
Responsibilities
Support day-to-day third-party vendor risk assessments – manage and triage GRC third-party vendor assessment intakes and accurate tracking through resolution.
Perform vendor risk reviews, reassessments, partner coordination, remediation tracking, and cross-functional follow-up with Security, Legal, Privacy, Procurement, IT, Finance, and business owners.
Assist with third-party risk program management activities.
Use intake and ticketing data to identify workflow trends, recurring questions, handoff gaps, and opportunities to improve guidance, templates, reporting, automation, and stakeholder experience.
Requirements
2+ years of experience in GRC.
Understanding of Cybersecurity compliance frameworks and cybersecurity compliance controls – ISO 27001, NIST CSF, COSO, SOC 2, PCI-DSS.
Highly organized with strong operational discipline ensuring clear and expedient escalations with informed recommendations to management.
Team player able to work to achieve common goals in a dynamic setting.
Bachelor’s degree in any discipline (Computer science, cyber security, risk or technology degrees preferred).
Nice-to-Haves
Third-party risk management experience.
Skills
GRCthird party risk managementISO 27001nist csfcosoSOC 2pci-dsscybersecurity compliance
Similar roles
Operations Analyst, Safety
Thinking Machines LabSan Francisco, CA
Operations Analyst responsible for daily review of flagged content and safety escalations in AI products, while building policy, tooling, and automation to improve moderation efficiency and embed safety into product design. Requires 2+ years in trust & safety or content moderation with direct queue ownership and experience using AI tools for operations.
190k – 300k/yr
On-site2+ YOEOther
Change Manager
NavanUnited States
The Change Manager engages internal Global Operations & Service colleagues at Navan to adopt changes from product, project, or organizational initiatives. They develop bespoke change plans, communications, and strategies to drive high engagement, adoption, and a culture of change resiliency while minimizing disruption.
Salary not listed
On-site2+ YOEOther
BGC Compliance Specialist
InstacartUnited States
BGC Compliance Specialist adjudicating background checks, resolving escalations, and identifying onboarding issues to maintain Instacart platform security, safety, compliance with regulations, and operational scalability. Requires 1-2 years experience in related fields, strong communication, confidentiality, and weekend/holiday availability.
23 – 29/hr
Remote1+ YOEOther
Business Systems Analyst, Enterprise Applications
CriblUnited States
Build, configure, and maintain Salesforce and GTM systems at Cribl. Focus on declarative automation, integrations, data quality, UAT, and deploying agentic AI solutions to support Sales, Support, and CX teams. Requires 1-2+ years hands-on Salesforce experience and a builder mindset.
79k – 124k/yr
Remote1+ YOEOther
Field Operations Specialist
NODA AIAustin, TX
Field Operations Specialist supporting deployment of autonomous unmanned systems (UAS/robotics) through hands-on assembly, integration, troubleshooting, logistics coordination, and supervision of junior staff. Requires 2+ years technical experience, FAA Part 107 certification, ability to travel up to 50%, and customer-facing skills.