Job Description
GRC Analyst — AI Fintech Scale-Up | Manhattan, New York
\n
\n
An AI company building analyst tooling for the world's largest investment banks, private equity funds and hedge funds is hiring a GRC Analyst to support its customer trust, security assurance and compliance programmes as it scales globally.
\n
\n
This is a hands-on role at a company with strong product-market fit and serious backing, at the point where enterprise customer demands are outgrowing the processes built to handle them.
\n
\n
What you'll own
\n
- \n
- Customer trust and security assurance, including responding to security inquiries and risk assessments
- Acting as a key point of contact for customer security reviews, partnering internally to give accurate, consistent and timely responses
- Maintaining and improving security documentation and response materials so they stay aligned to current systems and controls
- Working with security and engineering to understand technical controls and articulate them in a customer-facing context
- Supporting compliance across SOC 2, ISO 27001, ISO 42001, the EU AI Act, UK Cyber Essentials and GDPR, including evidence collection and audit readiness
- Spotting recurring themes and gaps in customer inquiries and feeding them back into security and compliance practice
- Streamlining trust workflows as customer volume and enterprise requirements grow
\n
\n
\n
\n
\n
\n
\n
\n
\n
What you'll need
\n
- \n
- Experience supporting customer-facing security, compliance or trust functions at a SaaS or cloud-native company
- The ability to translate technical security concepts into clear, concise written responses
- An understanding of enterprise security expectations across cloud infrastructure, access control, data protection and incident response
- Strong attention to detail, and the ability to run multiple parallel requests without dropping quality
- Sound judgment on sensitive or ambiguous security questions
\n
\n
\n
\n
\n
\n
\n
Nice to have
\n
- \n
- Security questionnaires, audits or third-party risk assessments
- Cloud security concepts (AWS/GCP, Kubernetes, IAM)
- Experience scaling trust, GRC or compliance processes in a growing organisation
- Supporting enterprise customers, particularly in financial services
\n
\n
\n
\n
\n
\n
The environment
\n
Fast-paced and high-intensity, with a small, dense team. You'd need to be comfortable with ambiguity and self-directed enough to own outcomes rather than wait for direction.
\n
\n
Based in Manhattan.
\n
\n
If this sounds like you, get in touch.
\n
\n
+1 212 970 7603
