GRC Security Analyst

Posted Yesterday
Be an Early Applicant
Hiring Remotely in Reno, NV, USA
In-Office or Remote
114K-139K Annually
Senior level
Fintech
The Role
Maintain and enhance the organization's GRC posture by enforcing security frameworks and privacy regulations, conducting risk assessments and audits, developing policies, managing vendor security evaluations, coordinating remediation, and reporting metrics to leadership.
Summary Generated by Built In
As a GRC Security Analyst, you will serve as a fully qualified, experienced professional responsible for ensuring Clear Capital adheres to all relevant security standards, regulations, and policies within the highly regulated mortgage lending and appraisal industry. You will play a critical role in maintaining our Governance, Risk, and Compliance (GRC) posture. Working independently with review at critical points, you will assess unusual circumstances, identify root causes using sophisticated analytical techniques, and devise creative solutions to complex compliance issues. You will help to coordinate internal and external security audits, define audit scopes, act as an organizational representative for information security compliance, and effectively adapt your communication style to influence and advise internal and external partners.

What You Will Work On

  • Monitoring and enforcing compliance with critical security frameworks (such as NIST CSF, NIST RMF, ISO 27001/27002, SOC 2, ISO 42001) and industry-specific regulations (such as GLBA, CCPA, GDPR) pertinent to the financial services and real estate valuation sectors.
  • Conducting comprehensive risk assessments of diverse scope to identify security vulnerabilities, evaluating the effectiveness of existing controls, and resolving a wide range of issues using judgment and interpretation.
  • Developing, maintaining, and adapting security policies, procedures, and guidelines in alignment with industry best practices, client contractual requirements, and mortgage lending regulatory standards.
  • Leading preparation and participation for internal and external security audits, adapting existing approaches to resolve audit findings based on limited information and precedent.
  • Enhancing relationships with cross-functional teams to develop and implement remediation plans for identified security gaps and weaknesses.
  • Evaluating the security posture of third-party vendors and assessing their compliance with contractual security requirements to protect sensitive financial and property data.
  • Maintaining accurate records of compliance activities, findings, and remediation efforts, creating comprehensive reports for management, clients, and regulatory authorities as needed.
  • Defining qualitative and quantitative metrics to assess the success of the security program and provide regular reports to security and business leadership.
  • Staying abreast of emerging security threats, technologies, and regulatory changes in the financial and real estate tech space.
  • Other relevant duties as assigned. 

Who We Are Looking For

  • A minimum of 5 years of related experience in GRC, security compliance, or risk management roles with a Bachelor’s degree; or 3 years and a Master’s degree; or equivalent work experience.
  • Complete knowledge and full understanding of relevant security frameworks and standards (e.g., NIST CSF, SOC 2, ISO 27001, ISO 42001) and data privacy regulations (GLBA, GDPR, CCPA).
  • Relevant industry certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), Artificial Intelligence Governance Professional (AIGP), or equivalent.
  • Sophisticated analytical and problem-solving skills, with the ability to assess diverse, unusual, and complex security issues and develop effective solutions independently.
  • Strong communication and interpersonal skills, with a proven ability to persuade differing audiences and advise senior stakeholders on difficult compliance matters.
  • Familiarity with GRC technologies (i.e., Vanta, Drata, OneTrust, etc.), risk assessment tools, and practices specific to maintaining data integrity and confidentiality in the financial services or appraisal management industry.
  • Detail-oriented focus on accuracy and thoroughness in documentation, reporting, and policy formulation.
  • Commitment to maintaining the highest standards of confidentiality, integrity, and professionalism.
  • Capacity to understand legacy and progressive technology and security controls along with respective risks. Working knowledge of technologies such as cloud computing, DevOps, and application security is required.
  • Advanced proficiency in utilizing spreadsheets for comprehensive data analysis, audit metric tracking, and complex compliance reporting.

What You Can Expect

  • Compensation: The base salary for this position ranges from $114,000 to $139,000 annually, depending on your location, experience, and qualifications. Additional compensation offerings include company profit-sharing bonus program, communication stipends, and referral bonuses.
  • Inclusive benefits package offering:
  • Comprehensive medical, dental, and company paid vision insurance, 401(k) retirement plan with employer match, voluntary life and AD&D insurance options, voluntary supplemental insurances for accident, critical illness, and legal services, paid time off (PTO) and paid holidays, employee assistance and wellness programs, company paid short term disability coverage, company contributions to health saving funds (with participation in the high deductible health plan). We offer company paid access to Galileo for virtual primary care and Rula for virtual mental health resources.
  • Through our Anniversary Program, we celebrate the meaningful milestones and long tenure that reflect how much we value your contributions and commitment to our team.
  • Career and skill development resources to help advance your career and personal growth.
  • A mission-driven environment where your work makes a measurable impact on the real estate industry.

What We Value

  • Wherever it Leads, Whatever it Takes® -  No matter how remote, complex, or unexpected. Our commitment never wavers.
  • Hire NICE people - Skills can be taught but character shines through. We seek those who bring integrity, kindness, and grit.
  • Lift others up - We lead with empathy and strive to improve the lives of those around us.
  • Sweat the details - Excellence lives in the little things. Getting it just so is how we make a big impact.
  • Raise the bar -  We don’t settle for industry standards, we redefine them.

About Us

Clear Capital is a national real estate analytics, data solutions and valuation technology company with a simple purpose: to build confidence in real estate decisions to strengthen communities and improve lives. Our goal is to provide customers with a complete understanding of nearly every U.S. property through our AI-driven analytics, data solutions, valuation services and automated appraisal review platforms. Our commitment to excellence - wherever it leads, whatever it takes® - is embodied by our team members across our brands and has remained steadfast in this pursuit since our first order in 2001.

Clear Capital is an equal-opportunity employer.

To all recruitment agencies: Clear Capital does not accept agency resumes. Please do not forward resumes to our jobs alias, Clear Capital employees, or any other company location. Clear Capital is not responsible for any fees related to unsolicited resumes.

Skills Required

  • Minimum of 5 years related GRC/security compliance or risk management experience with a Bachelor’s degree; or 3 years with a Master’s degree; or equivalent experience.
  • Complete knowledge and understanding of security frameworks and standards (NIST CSF, NIST RMF, ISO 27001/27002, ISO 42001, SOC 2) and data privacy regulations (GLBA, GDPR, CCPA).
  • Relevant industry certifications such as CISSP, CISM, CISA, CRISC, AIGP, or equivalent.
  • Experience conducting comprehensive risk assessments, identifying vulnerabilities, and developing effective remediation plans.
  • Experience leading preparation for and participation in internal and external security audits and resolving audit findings.
  • Experience developing, maintaining, and adapting security policies, procedures, and guidelines in alignment with best practices and regulatory requirements.
  • Familiarity with GRC technologies and platforms (e.g., Vanta, Drata, OneTrust) and risk assessment tools.
  • Working knowledge of cloud computing, DevOps practices, and application security controls.
  • Advanced proficiency with spreadsheets for data analysis, audit metric tracking, and complex compliance reporting (e.g., Excel).
  • Strong communication and interpersonal skills with ability to influence senior stakeholders and adapt messaging to varied audiences.
  • Detail-oriented, high standards for documentation, confidentiality, integrity, and professionalism.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Reno, NV
563 Employees
Year Founded: 2001

What We Do

Clear Capital is a national real estate valuation technology company with a simple purpose: build confidence in real estate decisions to strengthen communities and improve lives. Our goal is to provide customers with a complete understanding of every U.S. property through our field valuation services and analytics tools, and improve their workflows with our platform technologies. Our commitment to excellence — wherever it leads, whatever it takes® — is embodied by nearly 800 team members and has remained steadfast since our first order in 2001.

Similar Jobs

Rescale Logo Rescale

Principal Security GRC Analyst

Cloud • Information Technology • Software
Remote
United States
200 Employees
150K-200K Annually

BlackLine Logo BlackLine

Artificial Intelligence Engineer

Cloud • Fintech • Information Technology • Machine Learning • Software • App development • Generative AI
Remote or Hybrid
USA
1810 Employees
128K-160K Annually

Motive Logo Motive

Head of Analyst Relations

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
171K-236K Annually

Enverus Logo Enverus

Owner Relations Agent - 25270

Big Data • Information Technology • Software • Analytics • Energy
In-Office or Remote
3 Locations
1800 Employees
43K-58K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account