FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior GRC Analyst
Garner Health. Manage and support compliance certifications, including SOC 2, HITRUST, and ISO 27001 audits .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in managing compliance certifications such as SOC 2, HITRUST, and ISO 27001, while effectively communicating compliance posture to senior leadership. Proficient in leveraging AI and automation to enhance GRC functions and streamline compliance processes.
Highest-signal resume keywords
GRC ManagementSOC 2 AuditHITRUST ComplianceISO 27001 CertificationCloud-Native Engineering
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Control DesignEvidence CollectionRemediationRisk IdentificationControl Testing
Soft Skills
Adaptable Communication
Tools & Technologies
AWSOktaDatadogRetoolGitLabVantaClaude
Certifications & Qualifications
CISACISMCISSPCRISCISO 27001 Lead Auditor
Industry Keywords
Compliance FrameworksAudit LifecycleRisk RegisterCompliance PoliciesSecurity and Privacy
Tech Stack
Tools & technologiesAWSCloud
About the role
Key responsibilities & impact- Manage and support compliance certifications, including SOC 2, HITRUST, and ISO 27001 audits
- Run control testing across the audit lifecycle
- Serve as the company subject matter expert on compliance frameworks
- Serve as primary point of contact for external auditors and assessors
- Manage Garner’s Security and Privacy trust center
- Maintain the risk register and drive risk identification, scoring, and reporting
- Manage compliance policies, standards, and procedures
- Report compliance posture to senior leadership
- Scale the GRC function with AI and automation, building quick wins and scoping requirements for Engineering
Requirements
What you’ll need- 5+ years of experience in GRC, IT audit, or information security compliance
- Prior experience with HITRUST, SOC 2, and ISO 27001 audits
- Hands-on experience with control design, evidence collection, and remediation in a cloud-native engineering environment
- Proven ability to adapt communication style across engineers, operators, and executives
- Prior experience using scripting and LLMs to automate repetitive tasks
- Industry certifications such as CISA, CISM, CISSP, CRISC, or ISO 27001 Lead Auditor preferred
- Technologies: AWS, Okta, Datadog, Retool, GitLab, Vanta, Claude
- Unable to sponsor or take over sponsorship of an employment visa
Benefits
Comp & perks- Equity incentive plan
- Flexible PTO
- Medical plan options
- Dental plan options
- Vision plan options
- 401(k)
- Teladoc Health