Hiring.Camp

Sr. GRC Analyst

Garner Health

·

Today

Salary
$155k – $185k
Location
Remote
Workplace
Remote
Department
Engineering
Experience
5+ years
Visa
Not sponsored
Source
Greenhouse

Description

What you’ll be part of

Garner is on a mission to transform the U.S. healthcare system — and we’re the only proven player doing exactly that. We partner with employers to redesign how healthcare works: applying 550+ proprietary clinical metrics across 80+ specialties to a dataset of 320M+ patients to identify the best-performing doctors, then using compelling incentives to steer members to the care that helps them get healthier, faster.

The result is a rare “win win” — better care and lower costs for both members and employers. In just five years, our work has helped over 2.5 million people access higher-quality care and saved $1B in healthcare costs. We recently raised our Series E and have doubled five years running. If you've ever wanted your work to solve a problem that touches every person in this country, this is the opportunity to do exactly that. You'd be joining a team fundamentally reimagining healthcare in the U.S. — and using AI to scale that impact further and faster than anyone else can.

About the role:

We are looking for a Senior GRC Analyst to join our Technical Compliance team to ensure Garner’s compliance posture across security frameworks such as ISO 27001, SOC 2, HITRUST, and HIPAA. As a Senior GRC Analyst you will run our internal audits, guide our external assessments, and partner with teams across Engineering, Product, People, and Legal so that our controls are designed well, operating effectively, and continuously improving. Our Technical Compliance team safeguards Garner’s sensitive healthcare data and protects the trust of our members, clients, and partners by maintaining a strong control environment and regulatory compliance. The work you do here has a direct impact on our ability to win and retain enterprise customers, expand into new lines of business, and scale securely as we grow.

Where you will work:

This role is open to remote candidates across the U.S. For candidates based in New York City, the position follows a hybrid schedule with in-office work required Tuesday, Wednesday, and Thursday each week.

What you will do:

  • Manage and support our compliance certifications, including SOC 2, HITRUST, and ISO 27001 audits and run control testing across the audit lifecycle
  • Serve as the subject matter expert across the company on our compliance frameworks
  • Serve as the primary point of contact for external auditors and assessors
  • Manage Garner’s Security and Privacy trust center
  • Maintain the risk register and drive risk identification, scoring, and reporting
  • Manage the maintenance of our compliance policies, standards, and procedures
  • Report on our compliance posture to senior leadership
  • Scale our GRC function with AI and automation, building quick wins and scoping requirements for Engineering to fully automate the rest

What you will bring to the team:

  • 5+ years of experience in GRC, IT audit, or information security compliance
  • Prior experience with HITRUST, SOC 2, and ISO 27001 audits
  • Hands-on experience with control design, evidence collection, and remediation in a cloud-native engineering environment
  • Proven ability to adapt your communication style across engineers, operators, and executives
  • A GRC Engineering mindset with prior experience using scripting and LLMs to automate repetitive tasks
  • A desire to be a part of a high-performing, mission-driven team that operates with intense urgency, a strong sense of individual accountability, and a commitment to authentic feedback
  • Industry certifications such as CISA, CISM, CISSP, CRISC, or ISO 27001 Lead Auditor preferred

Technologies we use: 

  • AWS, Okta, Datadog, Retool, Gitlab, Vanta, Claude

Please note: we are unable to sponsor or take over sponsorship of an employment visa at this time.

Compensation Transparency:

The target salary range for this position is $155,000 - $185,000. Individual compensation for this role will depend on various factors, including qualifications, skills, and applicable laws. In addition to base compensation, this role is eligible to participate in our equity incentive and competitive benefits plans, including but not limited to: flexible PTO, Medical/Dental/Vision plan options, 401(k), Teladoc Health and more.

Fraud and Security Notice: 

Please be aware of recent job scam attempts. Our recruiters use getgarner.com and garnerhealth.com email domains exclusively. If you have been contacted by someone claiming to be a Garner recruiter or a hiring manager from a different domain about a potential job, please report it to law enforcement here and to [email protected].

Equal Employment Opportunity:

Garner Health is proud to be an Equal Employment Opportunity employer and values diversity in the workplace. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics.

Garner Health is committed to providing accommodations for qualified individuals with disabilities in our recruiting process. If you need assistance or an accommodation due to a disability, you may contact us at [email protected]. 

Skills

AWSGitLabSOCComplianceSOC 2HIPAAISO 27001CISSP

Similar Jobs

30

Senior GRC Analyst

Litmos·India +1

2w ago

Senior Analyst, GRC

Jeffersonhealth·1100 Virginia Drive, US

3w ago

Senior GRC Analyst

Encore·CA - San Diego, US

3w ago

Senior GRC Analyst

Preply·Barcelona·Hybrid

1mo ago

Senior GRC Analyst

Preply·London·Hybrid

1mo ago

Senior GRC Analyst

Bcbsla·Remote-LA, US·Remote

1mo ago

Senior Analyst, GRC

Veterinaryemergencygroupst·VEG Headquarters, NY

2mo ago

Senior GRC Analyst

We are hiring!·Krakow, Poland

2mo ago

Senior GRC Analyst

Whoop·Boston, MA·Onsite

2mo ago

Sr GRC Analyst

The Future of Health Starts with You·Mississauga, ON·Hybrid

3mo ago

Sr. GRC Analyst

Subsplash·Remote·Remote

4mo ago

Senior GRC Analyst

Nextracker·Hyderabad, Telangana - IND

8mo ago

Senior GRC Analyst

Audinate·Manila·Hybrid

1y+ ago

Senior Security GRC Analyst

Turo Careers·San Francisco, US

5d ago

Senior Cyber GRC Analyst

Reagroup·Richmond, Melbourne VIC

6d ago

Sr. GRC Analyst, Common Control Framework

Salesforce·Washington - Bellevue, US +2·Onsite

1w ago

Sr. GRC Analyst, Policy Operations

Salesforce·Washington - Seattle, US +2·Onsite

1w ago

Senior Cybersecurity GRC Analyst (3 -4 years)

Danaher·IND - Bangalore - Beckman Coulter India Private Limited·Onsite

1w ago

GRC & Internal Audit Data Analyst Associate/Senior Associate

Pwc·Athens - Kifisias Av. 65, Greece

1w ago

Senior GRC Analyst - Central or Eastern time, US or Canada

Shift Technology·Canada - Remote, Canada - Toronto·Remote

2w ago

Senior Analyst, Cyber Governance, Risk and Compliance (GRC)

Higcapital·Coral Gables, US·Hybrid

3w ago

Senior GRC Compliance Analyst - Continuous Compliance Framework (Hybrid - Seattle)

Us We·Seattle WA, US·Hybrid, Onsite

3w ago

Senior GRC Analyst, GRC Technology Lead

Integritymarketing·SSC - Dallas, TX

4w ago

Senior Security GRC Analyst

Salesforce·Washington - Bellevue, US +1·Onsite

1mo ago

Paranoids Senior Security GRC Analyst 

Ouryahoo·US - United States of America

1mo ago

Senior GRC / Third-Party Risk / Data Protection Analyst

Peraton·US·Remote

1mo ago

Senior Analyst, Enterprise Risk Management (GRC Tool Implementation & Third-Party Risk Focus)

TMX group of companies includes·Toronto - 100 Adelaide St W, Canada·Hybrid, Onsite

1mo ago

Senior GRC Programmer/Analyst

Huntington·Easton Ops Cols C Oh, US +8·Onsite

2mo ago

Analyst-Cyber GRC, Sr.

Tallgrass Energy·Lakewood, CO

2mo ago

HQ - GRC Senior Analyst

Jobandtalent·Madrid HQ, ES·Remote

2mo ago