Hiring.Camp

GRC Specialist

Avid

·

Yesterday

Location
Remote - Philippines
Workplace
Remote
Type
Full-time
Experience
2+ years
Source
Workday

Description

It's fun to work in a company where people truly BELIEVE in what they're doing!

We're committed to bringing passion and customer focus to the business.

ABOUT AVID

Avid makes technology and collaborative tools so creators can entertain, inform, educate and enlighten the world. Our customers are the visionaries behind the most inspiring feature films, television programs, news broadcasts, televised sporting events, music recording and live concerts.

To learn how Avid powers greater creators or for more information, visit www.avid.com.

JOB SUMMARY

Come and join our team as a GRC Specialist — driving compliance, risk management, and security assurance.

The subject matter expert on various compliance and risk management topics; GRC Specialist supporting Avid's security team with customer and partner security questionnaire responses, primary ownership of third-party risk management (TPRM), NIST/SSDF self-assessment and evidence collection, and audits.

This role is based in the Philippines and follows a remote work setup with a scheduled shift from 6:00 PM to 3:00 AM (Manila Time).

WHAT YOU WILL DO:

  • Respond to and maintain customer and partner security questionnaires.
  • Own Avid's third-party risk management (TPRM) program: vendor and third-party risk intake, assessment, and risk determination in partnership with security leadership.
  • Perform Vendor Security Assessments for new and existing third-party relationships.
  • Maintain the Risk Register: log new risk acceptances, track renewal dates, and keep the register current.
  • Run self-assessment worksheets against NIST 800-53 and NIST CSF control families.
  • Map security pipeline evidence to NIST SSDF and OWASP control practices.
  • Complete periodic data security reviews and help track remediation of findings.
  • Maintain and review Security Policy documentation and other compliance records and documentation.
  • Own coordination of Avid's current security audit efforts (auditor liaison, evidence collection, remediation tracking) and any future third-party compliance audits.
  • Support Legal with technical security input for contract and data protection reviews.

WHO YOU ARE:

  • 2-3+ years of experience in security compliance, audit support, or GRC-adjacent work.
  • Familiarity with NIST 800-53, NIST CSF, or SSDF (exposure through coursework, certification study, or prior role experience).
  • Exposure to SOC 2 or similar third-party audit processes preferred; hands-on audit coordination experience not required.
  • Comfortable working with AI agents, spreadsheets and collaboration tools for tracking and documentation.
  • Strong English written/verbal communication skills, able to draft accurate questionnaire responses with minimal editing.
  • Able to manage multiple parallel workstreams and coordinate with both technical and non-technical stakeholders.
  • Preferred certifications: ISC2 Certified in Cybersecurity (CC), CompTIA Security+, ISO/IEC 27001 Foundation, GIAC GSEC, CCSK, or AWS Cloud Practitioner.
  • Certifications such as CISSP, CISM, CISA, CRISC, CGEIT, CGRC, GRCP, or ISO 27001 Lead Auditor/Implementer are a plus.

What to look forward to? 

  • Join a global team and experience a dynamic, collaborative work environment that fosters innovation and growth.

  • Remote work model offering flexibility to balance work and life.

  • Access to development programs with strong support and mentoring to help you grow and advance within the company.

  • Equal opportunity employer committed to diversity, inclusivity, and creating a welcoming environment for all employees.

  • Attractive benefits package including health & life insurance, referral rewards, and generous leave policies to ensure a healthy work-life balance

Avid is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

#LI-Remote, LI-NR1

If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

Skills

AWSCybersecuritySOCRisk ManagementComplianceSOC 2ISO 27001CISSPCompTIA

Similar Jobs

23

GRC Specialist

Aisle · Prague, Czech Republic · Onsite

2 weeks ago

GRC Specialist

Cohere · Toronto +3 · Remote

3 months ago

IT GRC Specialist

Peopleservices · GB Cambridge, United Kingdom · Hybrid

4 days ago

Senior GRC Specialist

Airwallex · MX - Mexico City · Hybrid

1 week ago

IT Domain GRC Specialist - Back-Office

Aveva · Hyderabad, India +1 · Hybrid

2 weeks ago

ServiceNow GRC Specialist

Crowe Careers · Hyderabad, India

3 weeks ago

Senior GRC Specialist

Fireworksai · San Mateo, CA +1

4 weeks ago

Cybersecurity Specialist (GRC)

Northrop Grumman · A601 AUS - SA - Edinburgh, Australia · Hybrid

1 month ago

Cybersecurity Specialist (GRC)

Northrop Grumman · Edinburgh, SA,AU, AU · Hybrid

1 month ago

Cybersecurity Governance, Risk & Compliance (GRC) Specialist

Ithr 360 Consulting Fze · Dubai · Remote, Hybrid, Onsite

1 month ago

Security GRC Specialist

Profound · New York, New York · Onsite

3 months ago

Senior SAP GRC Specialist

Swift · Kuala Lumpur, Malaysia · Remote, Hybrid

3 months ago

GRC Configuration Specialist - Open Pages

Wells Fargo · 102462-AZ-B Building, Chandler Campus, United States of America +2 · Hybrid

1 month ago

SAP GRC & Security Specialist

Paylocity · Los Alamos, NM

3 months ago

Technology Specialist Cyber GRC

C4Isolutions · Melbourne

5 months ago

Technology Specialist Cyber GRC

C4Isolutions · Sydney · Onsite

8 months ago

Technology Specialist Cyber GRC

C4Isolutions · Canberra · Onsite

9 months ago

GRC Cibersecurity Senior Specialist

Ferrovial · ESP - FERROVIAL - HQ RdL (Madrid), Spain

1 month ago

IT GRC Governance Compliance Specialist

Ntt Data 5 · Johannesburg

1 month ago

I&T GRC Information Security Specialist

Dssmith · Krakow Global Business Services Center - IP (POL), Poland · Hybrid

2 months ago

GRC and Infosec Specialist (Technical)

Anybill · Herndon, VA

1+ year ago

Programa recién graduados GRC (Sostenibilidad-Riesgos-Control interno) - Specialist

Pwc · Madrid - Paseo de la Castellana 259 B, Spain · Remote

9 months ago

Informacijos saugos specialistė (-as) (GRC sritis)

EPSO-G · Vilnius, Vilnius County, Lithuania · Hybrid

Today