Post New Job

Senior Analyst or Manager – Governance, Risk, and Compliance (GRC)

Full time Lilt in IT | Telecommunications
  • Washington, United States View on Map
  • Post Date: January 13, 2021
  • Apply Before : February 12, 2021
  • Salary: Negotiable
  • View(s) 64
Email Job
  • Share:

Job Detail

  • Experience Level Associate
  • Work From Home Some times

Job Description

  • Work with the product and engineering teams to ensure common vulnerabilities and exploits (CVEs) are resolved in a timely manner by the engineering teams
  • Create, track, and report GRC metrics to the leadership team
  • Develop roadmaps for and achieve compliance for the Lilt Platform on SOC 2 Type 2, ISO 27001, FedRAMP, HIPAA, UK Cyber Essentials, and others
  • Own the documentation for standards, policies, and processes for sales collateral and internal distribution
  • Manage audits and assessments with internal and external stakeholders
  • Handle compliance and audit requests in conformance with GDPR for EU customers and employees
  • Serve as the compliance subject matter expert to the business


  • 3+ years of program/project management experience
  • 3+ years of information security experience
  • Extensive knowledge of GRC best practices for SaaS organizations
  • Successful delivery of compliance for an SaaS product to one or more security standards (SOC 2, ISO 27001, and NIST 800, for example)
  • Familiarity with security standards and US and EU privacy laws (HIPAA, CCPA and GDPR)
  • Experience delivering on multi-stakeholder projects
  • Familiarity with SaaS architectures, software development, and deployment to cloud providers

Preferred Qualifications

  • Previous experience as an Information Systems Security Officer (ISSO)
  • Successful obtainment of ATOs from at least one government agency

We are committed to equality and diversity within our company. Lilt does not discriminate on gender, gender identity, skin color, national origin, sexual orientation, religion, age or disability.

Other jobs you may like