Governance, Risk, and Compliance Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

DLB Associates · 7 hours ago

Governance, Risk, and Compliance Analyst

DLB Associates is a premier engineering and consulting firm specializing in innovative solutions across various sectors. They are seeking a Governance, Risk, and Compliance Analyst to support compliance efforts, manage security policies, and coordinate with internal stakeholders to ensure effective implementation of controls.

Association
check
Growth Opportunities
badNo H1Bnote

Responsibilities

Support ongoing compliance efforts for SOC 2 Type II and ISO/IEC 27001, including audits, evidence collection, and remediation tracking
Draft, review, and maintain security policies, standards, procedures, and supporting documentation
Coordinate with internal stakeholders (IT, Security, Engineering, HR, Legal) to ensure controls are implemented and documented
Manage and respond to vendor and customer security questionnaires (SIG, CAIQ, custom questionnaires, etc.)
Assist with vendor risk management, including risk assessments and documentation review
Support risk assessments and maintain a risk register
Map controls and manage audit evidence across compliance frameworks
Track audit findings, remediation efforts, and compliance metrics
Help maintain compliance artifacts, audit evidence repositories, and control mappings
Stay current on relevant compliance and security best practices
Performs other related duties as assigned

Qualification

SOC 2 complianceISO/IEC 27001Audit management platformsSecurity policies creationVendor risk managementRisk assessmentsMultiple compliance efforts managementFrameworksRelevant certificationsWritten communicationCross-functional collaboration

Required

Hands-on experience supporting SOC 2 and/or ISO/IEC 27001 programs
Experience creating and maintaining security policies and procedures
Familiarity with vendor risk management and security questionnaire processes
Strong written communication and documentation skills
Ability to work cross-functionally and manage multiple compliance efforts simultaneously
Experience with audit management platforms (e.g., Vanta, Drata, Secureframe, Tugboat Logic)
Familiarity with additional frameworks (NIST 800-53/171, CIS, HIPAA)
Relevant certifications (ISO 27001 Lead Implementer/Auditor, CRISC, CISA, Security+)
2+ years of experience in a GRC, compliance, or information security role

Preferred

Experience working in a remote environment

Benefits

Choice of comprehensive medical plans (including two PPO-style plans and a HDHP w/ HSA option)
Flex spending accounts (FSA)
Dental and vision plans
Comprehensive medical, dental and vision benefits extended to spouse / domestic partner and dependent children up to age 26
401k with company match and self-directed brokerage account option
PTO including additional paid time off during the last week of the year
Company paid life insurance coverage for employees and their eligible dependents
Short and long-term disability, AD&D coverage
Professional development opportunities, tuition reimbursement and professional licensing assistance
Paid parental leave after one year of employment

Company

DLB Associates

twittertwittertwitter
company-logo
DLB Associates is an engineering consulting company - rendering and design for residential and commercial sectors.

Funding

Current Stage
Growth Stage
Total Funding
unknown
2025-12-16Acquired
Company data provided by crunchbase