Search jobs > Los Angeles, CA > Risk and compliance

Senior Analyst, Governance, Risk and Compliance (Denver, Los Angeles and/or Indiana)

Formstack LLC
Los Angeles, California, US
$140K-$180K a year
Full-time

Who You Are :

If your skills, experience, and qualifications match those in this job overview, do not delay your application.

The Senior Analyst, Governance, Risk, and Compliance (GRC) is a key member of the Information Security team responsible for managing, monitoring, and advancing Formstack’s compliance with various security and privacy regulations and frameworks.

This individual will play a pivotal role in ensuring that Formstack’s operations, products, and services are compliant with industry standards while helping to mitigate risks and support governance initiatives.

What You Will Do :

  • Lead and manage Formstack’s compliance initiatives related to regulations such as HIPAA, SOC 2, GDPR, ISO 27001, PCI-DSS, CCPA, and others.
  • Collaborate with internal teams (product, legal, IT, and engineering) to develop, implement, and maintain Formstack’s security policies, controls, and procedures.
  • Perform risk assessments and conduct security audits across departments to ensure compliance with regulatory and industry standards.
  • Assist in the preparation and facilitation of external audits and certifications (e.g., SOC 2 audits, ISO 27001 certification processes).
  • Maintain and enhance Formstack's risk management framework, including the identification, assessment, and mitigation of operational, legal, and regulatory risks.
  • Monitor security compliance trends, changes in regulatory requirements, and new compliance frameworks relevant to Formstack’s operations.
  • Develop, maintain, and update internal documentation, including security policies, standards, and guidelines, to ensure they reflect current regulatory requirements and best practices.
  • Manage the vendor risk management program, including the review and monitoring of vendor compliance with Formstack’s security standards.
  • Support security awareness training programs across the organization to ensure that all employees are knowledgeable about GRC policies.
  • Provide guidance on governance initiatives and best practices to help improve organizational alignment with compliance and risk management standards.
  • Ensure incident response plans and business continuity plans are up to date and regularly tested through internal tabletops.
  • Collaborate on data privacy initiatives and ensure that Formstack’s practices align with privacy regulations like GDPR and CCPA.
  • Act as a liaison between external regulatory bodies, auditors, and internal teams.

What We Are Looking For :

  • 5+ years of experience in Governance, Risk, and Compliance (GRC) or a related field, ideally within a SaaS, technology, or healthcare-related environment.
  • Strong knowledge of industry standards and frameworks, including NIST, SOC 2, or ISO 27001.
  • Demonstrated experience conducting risk assessments, security audits, and managing compliance projects.
  • Hands-on experience with cloud security and compliance in environments like AWS.
  • Strong understanding of cybersecurity principles.
  • Experience with third-party vendor risk management and compliance monitoring.
  • Excellent written and verbal communication skills, with the ability to translate complex regulatory requirements into actionable guidance.
  • Ability to work cross-functionally with legal, IT, and engineering teams.
  • Strong organizational skills, attention to detail, and the ability to manage multiple projects in a fast-paced environment.

Bonus Points :

  • Bachelor’s degree in a relevant field (e.g., Information Security, IT, Business, Law, Engineering).
  • Certifications such as CISSP, CISA, CISM, or CRISC.
  • Familiarity with frameworks such as COBIT or ISO 31000.
  • Experience in the technology or SaaS industry, with a focus on product compliance.
  • Knowledge of secure software development practices and DevSecOps.
  • Experience working in an agile or DevOps environment.

Salary : $140,000 - $180,000 a year

J-18808-Ljbffr

1 day ago
Related jobs
Promoted
Glen Park Senior Living
Glendale, California

We are looking for an experienced and compassionate Caregivers to provide excellent care and support for individuals struggling with activities of daily living due to developmental disabilities. Individuals seeking employment are considered without regard to race, color, religion, national origin, a...

Promoted
BankTalent HQ
El Segundo, California

We value our employees, and are committed to search out, recognize and create fulfilling opportunities for outstanding people within our organization, rewarding them for their contributions to our success. Zions Bancorporation and its affiliate California Bank & Trust are one of the nation's pre...

Promoted
County of Los Angeles
Los Angeles, California

A qualifying multiple choice and/or simulation assessment measuring: Achievement/Effort, Persistence, and Initiative, Leadership & Social Orientation, Cooperation & Concern for Others, Self-Control, Self-Tolerance, and Adaptability/Flexibility, Dependability, Attention to Detail, and Rule Fo...

Promoted
University of California - Los Angeles (UCLA)
Los Angeles, California

Follow all safety rules while on the job, including reporting accidents promptly, correcting minor safety hazards, and communicating with peers and management regarding any hazards identified in the workplace. Document research results and write reports of results for presentation and/or publication...

Promoted
VirtualVocations
Burbank, California

A company is looking for a Senior Ethics and Compliance Specialist to provide technical and consulting support for ethics and compliance programs. ...

Promoted
University of California - Los Angeles (UCLA)
Los Angeles, California

The Lead Organizational Change Management (OCM) Specialist, Bruin Connect & Secure defines, frames, and structures organizational change management strategies for large, significant, and complex initiatives, assuring the consistent application of OCM process, policy, and execution throughout initiat...

Promoted
Sylvan Learning of Los Angeles and Sherman Oaks
Los Angeles, California

Sylvan Learning, the industry leader in supplemental education, is seeking dedicated Tutors to join our team in the Los Angeles and San Fernando Valley area to provide tutoring on school sites. The majority of this tutoring will occur at local elementary and middle schools providing essential readin...

Promoted
ServiceNow
Los Angeles, California

Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. You will accomplish this through account planning, territory planning, researching prospect customers, using business development strateg...

Ballard Spahr LLP
Los Angeles, California

The firm encourages applications from a diverse pool of candidates, and all qualified applicants will receive consideration for employment without regard to race, ethnicity, religion, age, national origin, handicap or disability, citizenship, sex, pregnancy, childbirth or related medical condition, ...

Deloitte
Manhattan Beach, California

Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive Secure, Vigilant, and Resilient cyber risk programs. Identify and evaluate complex business and technology IAM risks, i...