At SolarWinds, we’re a people-first company. Our purpose is to enrich the lives of the people we serve—including our employees, customers, shareholders, partners, and communities. Join us in our mission to help customers accelerate business transformation with simple, powerful, and secure solutions.
The ideal candidate thrives in an innovative, fast-paced environment and is collaborative, accountable, ready, and empathetic. We’re looking for individuals who believe they can accomplish more as a team and create lasting growth for themselves and others. We hire based on attitude, competency, and commitment. Solarians are ready to advance our world-class solutions in a fast-paced environment and accept the challenge to lead with purpose. If you’re looking to build your career with an exceptional team, you’ve come to the right place. Join SolarWinds and grow with us!
Summary: The GRC Analyst – Continuous Monitoring & Control Assurance plays a pivotal role in executing the organization's continuous control monitoring (CCM) program. Under the direction of GRC leadership, this role is responsible for validating the effectiveness of critical IT and security controls, driving remediation efforts, and championing evidence automation. The goal is to enhance audit readiness and ensure that daily activities are aligned with the overarching GRC assurance strategy.
Responsibilities:
- Continuous Control Monitoring Execution: Perform recurring, risk-based monitoring across critical domains such as access management, change management, segregation of duties, vulnerability management, and disaster recovery. Maintain testing schedules, coordinate evidence collection with control owners, and document exceptions using established methodologies.
- Technical Integration & Automation: Partner with Security Operations, IT, and Engineering to extract and evaluate evidence directly from operational platforms (SIEM, IAM, Cloud Security, ITSM, Jira). Identify opportunities to transition from manual collection to automated, system-generated reporting and repeatable queries.
- Deficiency Management & Technology Transitions: Analyze evidence to identify control gaps, establish root causes with control owners, and track corrective actions through validation and closure. Proactively assess and document the control impacts of technology implementations, migrations, or retirements to prevent monitoring gaps.
- Audit Support & Risk Integration: Leverage CCM activities to build a repository of reusable evidence, reducing audit fatigue for operational teams and supporting external audits (e.g., ISO, SOC 2). Identify recurring control weaknesses or material gaps and provide analysis to GRC leadership to support formal risk treatment.
- Metrics & Reporting: Prepare regular reports and dashboards highlighting monitoring completion rates, remediation aging, repeat findings, and automation coverage to provide GRC leadership with clear visibility into systemic issues and control trends.
Qualifications:
- Bachelor's degree in Information Systems, Computer Science, or a related field.
- Proven experience in IT audit, security compliance, or a related field.
- Familiarity with frameworks such as ISO, SOC 2, and their control requirements.
- Strong understanding of IT and security controls, including access management, change management, and vulnerability management.
- Experience with tools such as SIEM, IAM, Cloud Security platforms, ITSM, and Jira.
- Excellent analytical, problem-solving, and communication skills.
- Ability to work independently and collaboratively with technical and non-technical stakeholders.
- Strong organizational skills and attention to detail.
SolarWinds is an Equal Employment Opportunity Employer. SolarWinds will consider all qualified applicants for employment without regard to race, color, religion, sex, age, national origin, sexual orientation, gender identity, marital status, disability, veteran status or any other characteristic protected by law.
All applications are treated in accordance with the SolarWinds Privacy Notice: https://www.solarwinds.com/applicant-privacy-notice
Skills Required
- Bachelor's degree in Information Systems, Computer Science, or a related field.
- Proven experience in IT audit, security compliance, or a related field.
- Familiarity with ISO, SOC 2, and their control requirements.
- Strong understanding of IT and security controls, including access management, change management, and vulnerability management.
- Experience with SIEM, IAM, Cloud Security platforms, ITSM, and Jira.
- Excellent analytical, problem-solving, and communication skills.
- Ability to work independently and collaboratively with technical and non-technical stakeholders.
- Strong organizational skills and attention to detail.
SolarWinds Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about SolarWinds and has not been reviewed or approved by SolarWinds.
-
Healthcare Strength — Health coverage is described as comprehensive, with some locations covering healthcare, dental, and vision at 100% and generally well-regarded plan quality. Feedback suggests wellness resources, counseling, and fitness reimbursements further strengthen the offering.
-
Leave & Time Off Breadth — Paid time off, holidays, and a sabbatical after five years are part of the package. Feedback suggests global parental leave minimums add meaningful family support to the overall time-off mix.
-
Pay Growth & Progression — Compensation is considered solid by many, with consistent raises noted alongside base pay. Feedback suggests bonuses and structured increases contribute to a sense of ongoing pay growth.
SolarWinds Insights
What We Do
SolarWinds is a leading provider of powerful and affordable IT management software. Our products give organizations worldwide—regardless of type, size, or complexity—the power to monitor and manage their IT services, infrastructures, and applications; whether on-premises, in the cloud, or via hybrid models. We continuously engage with technology professionals—IT service and operations professionals, DevOps professionals, and managed services providers (MSPs)—to understand the challenges they face in maintaining high-performing and highly available IT infrastructures and applications. The insights we gain from them, in places like our THWACK® community, allow us to solve well-understood IT management challenges in the ways technology professionals want them solved. Our focus on the user and commitment to excellence in end-to-end hybrid IT management has established SolarWinds as a worldwide leader in solutions for network and IT service management, application performance, and managed services.








