GRC Compliance Analyst

Posted 16 Days Ago
Be an Early Applicant
Hiring Remotely in Hungary
Remote
Mid level
Software
The Role
Coordinate audits across multiple frameworks (ISO 27001, SOC 2, PCI, HIPAA, NIS2, SOX, C5), perform control assessments and testing, partner with engineering/security to translate architectures into audit-ready narratives, automate evidence collection using AI and tooling, and administer/enhance GRC platforms and dashboards to track compliance and remediation.
Summary Generated by Built In

Where you’ll work:

Remote (Hungary)

Security at GoTo 

Everyone deserves to work in a safe and secure environment. That's why we're passionate about delivering secure, remote workforce products and services that prioritize the protection of business assets, customer data, and employee information. We're committed to creating products that are not only secure but also user-friendly and accessible to all. 
We thoughtfully infuse AI into our tools, leveraging it as a powerful resource to deliver genuine, practical value and address real security challenges. Join us and help create a future where security meets simplicity and AI-powered innovation.    

Your Day to Day

The Compliance Analyst sits within the Security Governance, Risk, and Compliance (GRC) team, reporting to the Director of GRC in the CISO org. You'll own audit coordination, control testing, and risk assessment work while actively pushing how assurance gets done through technology and automation.

As a GRC Compliance Analyst, you would be working on:

  • Coordinating audits across ISO 27001, SOC 2, PCI-DSS, HIPAA, NIS2, SOX, and C5, including managing auditor relationships, driving evidence collection, and tracking remediation activities to completion.

  • Performing control assessments and testing across technical and administrative domains, partnering with engineering and security teams to evaluate control design and effectiveness.

  • Partnering with Engineering, Security, IT, and Product stakeholders to understand technical architectures and translate them into audit-ready control narratives.

  • Leveraging AI tools, automation, and emerging technologies to streamline evidence collection, control testing, and reporting activities.

  • Administering and enhancing GRC platforms while developing metrics and dashboards that provide visibility into compliance posture and control effectiveness.

What We're Looking For

As a GRC Compliance Analyst, your background will look like:

  • 3+ years of experience in information security compliance, audit, or risk management within a technology environment.

  • Strong understanding of cloud architecture, IAM, infrastructure, and SDLC controls, enabling effective collaboration and communication with technical teams.

  • Experience working with one or more compliance frameworks, such as ISO 27001, SOC 2, PCI-DSS, HIPAA, NIST 800-53, and NIS2.

  • Strong audit communication skills: you know how to manage auditors, push back when evidence requests are out of scope, and defend a control position when you're right.

  • Interest in leveraging technology and AI tools to improve productivity and streamline compliance activities.

Bonus Qualifications

  • Experience with compliance automation, continuous monitoring initiatives, or GRC platform development.

  • Experience with platforms such as Thoropass, AuditBoard, or Drata.

  • Experience building AI-driven workflows or automations that reduce compliance toil.

  • Experience integrating GRC tooling with engineering, cloud, identity, or monitoring platforms.

  • Experience implementing continuous assurance capabilities.


What We Offer 

At GoTo, we care about helping our people succeed at work and feel supported in life. Our employee benefits and programs are designed to support your well-being, growth, and sense of belonging. Here's what you can expect as part of our team:

  • Comprehensive health benefits
  • Generous paid time off, including paid holidays, volunteer days, quarterly self-care days, and company-designated no-meeting days 
  • Tuition reimbursement and access to instructor-led and on-demand learning and development programs
  • The Thrive Global Wellness Program, a confidential Employee Assistance Program (EAP), a wellness app and one-on-one wellness coaching 
  • Employee-led communities and programs, including Employee Resource Groups (ERGs), GoTo Gives, and charitable matching

We work hard to create an environment where everyone feels welcome, respected, and able to contribute. Building a culture of belonging isn't just something we talk about - it's part of how we work every day.

Specific benefits and offerings may vary by country in line with local regulations and market practices.


At GoTo, you’ll find the flexibility, resources, and support you need to thrive—at work, at home, and everywhere in between. You’ll work towards a shared goal with an open-minded, cohesive team that’s greater than the sum of its parts. We’re committed to creating an inclusive space for everyone, because we know unique perspectives make us a stronger company and community. Join us and be part of a company that invests in your future, where together we’ll Be Real, Think Big, Move Fast, Keep Growing, and stay Customer Obsessed. Learn more.

Skills Required

  • 3+ years of experience in information security compliance, audit, or risk management within a technology environment
  • Strong understanding of cloud architecture, IAM, infrastructure, and SDLC controls
  • Experience with one or more compliance frameworks such as ISO 27001, SOC 2, PCI-DSS, HIPAA, NIST 800-53, NIS2, SOX, or C5
  • Strong audit communication skills, including managing auditors and defending control positions
  • Interest in leveraging technology and AI tools to streamline compliance activities
  • Experience with compliance automation, continuous monitoring, or GRC platform development
  • Experience with platforms such as Thoropass, AuditBoard, or Drata
  • Experience building AI-driven workflows or automations to reduce compliance toil
  • Experience integrating GRC tooling with engineering, cloud, identity, or monitoring platforms
  • Experience implementing continuous assurance capabilities
  • Administering and enhancing GRC platforms and developing compliance metrics and dashboards

GoTo Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about GoTo and has not been reviewed or approved by GoTo.

  • Healthcare Strength Public benefit descriptions highlight comprehensive medical, dental, and vision options alongside HSA/FSA, life/AD&D, and disability coverage. Employer-verified details indicate coverage begins at hire and the program includes wellness support.
  • Leave & Time Off Breadth Offerings include generous PTO, paid sick days and holidays, bereavement leave, paid volunteer time, and quarterly Self Care Days. Generous parental leave is also promoted across materials.
  • Wellbeing & Lifestyle Benefits A wellness program (Thrive), Employee Assistance Program, and gym reimbursement reinforce a focus on wellbeing. Remote-centric flexibility and monthly or quarterly self-care days further support work-life balance.

GoTo Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Boston, MA
1,926 Employees

What We Do

Making IT easy, anywhere. Since day one, we’ve helped people and businesses do their best work – simply and securely – from anywhere. Today, work and life are intertwined. At GoTo, we help you focus on the things that matter most throughout the day: your projects, your professions, and even your personal passions.

Similar Jobs

Drata Logo Drata

Corporate Counsel

Security • Software • Cybersecurity • Automation
Remote
26 Locations
600 Employees
111K-137K Annually

GitLab Logo GitLab

Marketing Manager

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
27 Locations
2500 Employees

GitLab Logo GitLab

Business Development Representative

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
28 Locations
2500 Employees

Carbon Robotics Logo Carbon Robotics

Performance Quality Technician

Artificial Intelligence • Computer Vision • Hardware • Machine Learning • Robotics • Software • Agriculture
Easy Apply
Remote or Hybrid
26 Locations
350 Employees
75K-85K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account