Demo

Security Governance, Risk, Compliance Analyst

Saicon
San Jose, CA Contractor
POSTED ON 8/1/2026
AVAILABLE BEFORE 10/26/2026

Job Description:
Reporting to the Director Information Security, Governance, Risk, and Compliance, the GRC analyst will contribute to the development and operational execution of the program, including risk management and compliance with standards and regulations such as ISO27001, ISO 42001, EU GDPR, and EU AI Act, and transforming the program through intelligent automation, AI agents, and data-driven solutions.

Responsibilities:
•    Support the GRC operating model and the service-oriented customer engagement model.
•    Support GRC capabilities, such as enterprise security risk management, compliance and audit management, policy management, security awareness training, third party risk management, and metrics and reporting.
•    Assist to manage security compliance programs and activities that support various compliance regulations.
•    Perform risk assessments that address security threats, changes to systems and/or applications, process improvement initiatives, supplier assessments (including downstream outsourcers) and other requests from the business.
•    Collaborate with various operational and business teams to complete assessments and drive remediation items to closure. Maintain accurate reporting of remediation activities to bring appropriate visibility to stakeholders and leadership.
•    Monitor the security risk profiles and events of our suppliers to objectively determine high risk suppliers that require additional review and treatment plans.
•    Design, build, and deploy AI-powered solutions (including agents) to scale GRC processes including but not limited to Security questionnaires, Risk assessments, Evidence collection and control testing
•    Develop automated workflows and pipelines using APIs, scripting, or low-code platforms
•    Apply LLMs/NLP to analyze policies, audit findings, and regulatory requirements
•    Extract insights from large GRC datasets to build and maintain AI-driven risk scoring and prioritization models.
•    Partner with security, engineering, and data teams to productionize AI use cases.
•    Ensure secure, compliant, and governed use of AI aligned with ISO 42001 and EU AI Act.
•    Establish and maintain security metrics and reporting including automating KRI/KPI generation and reporting pipelines, deliver real-time visibility into security risk posture that aligns with operational/business risk areas and corporate risk.
•    Measure and report efficiency gains from automation (time saved, coverage increased, etc.)
•    Respond to customer security/compliance questionnaires.
•    Act as security risk management “ambassador” to internal customers.
Accountable for
•    The use of defined risk methodologies and best practices to perform IT/Security assessments. Responsible for the planning, scoping, tracking, and execution of these assessments.
•    Driving remediation activities from identification, remediation plan and closure. Hold owners accountable to delivery of remediation solution within the agreed upon/reasonable SLA.
•    Operations and improvements of security audit and compliance programs to support various compliance regulations.
•    Own the AI/automation roadmap for GRC processes
•    Delivery of measurable efficiency improvements (e.g., % reduction in manual effort) 
•    Deployment of production-grade AI/automation solutions
•    Automation of metrics and reporting to continually report on meaningful security, risk and compliance metrics for operational and executive management.

Qualifications:
•    Candidate must have 4 years working in governance, risk and compliance and/or information security and risk management.
•    Functional knowledge of some CISSP security domains and information security industry standard and best practices.
•    Functional knowledge of applicable security regulatory requirements (SOX, GDPR, AI Act).
•    Functional knowledge of ISMS governance models (i.e. ISO 27001, NIST, CAIQ), information security roles, security controls.
•    Functional knowledge of common security certifications (i.e. ISO 27001, ISO 42001, SOC1, SOC2) and ability to glean significance from findings identified in these reports.
•    Ability to communicate risk methodologies and concepts to business units and IT teams.
•    Demonstrated experience with controls definition, development, implementation and assessment.
•    Hands-on experience building or customizing AI/automation solutions, including LLM-based workflows, agents, or copilots, API integrations, scripting (e.g., Python), or low-code platforms.
•    Ability to translate GRC use cases into scalable automation solutions.
•    Understanding of AI risks, controls, and governance frameworks (ISO 42001, AI Act).
•    Strong interpersonal skills and ability to work effectively with diverse and distributed teams.
•    Strong attention to detail, project management and organizational skills.
•    Self-starter with the ability to effectively manage independent workloads asynchronously with stakeholders across multiple time zones.

Hourly Wage Estimation for Security Governance, Risk, Compliance Analyst in San Jose, CA
$54.00 to $66.00
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Governance, Risk, Compliance Analyst?

Sign up to receive alerts about other jobs on the Security Governance, Risk, Compliance Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Saicon

  • Saicon Washington, DC
  • Education Requires paralegal certificate, or JD, or currently attending an ABA-accredited law school, having completed at least one year of study, or an eq... more
  • 2 Days Ago

  • Saicon Denver, CO
  • Job Description: The IT Quality Assurance plans, executes, and completes the analysis of IT-quality-related issues along the Software Development Life Cycl... more
  • 2 Days Ago

  • Saicon Tullahoma, TN
  • Job Description: Our client has an exciting opportunity for a Project Engineer, Electrical Engineering, supporting TOS II, at Arnold Engineering Developmen... more
  • 2 Days Ago

  • Saicon Tullahoma, TN
  • Job Duties: Instrumentation and Controls Design Engineers design, evaluate, analyze, and assist in the fabrication and installation of process system instr... more
  • 2 Days Ago


Not the job you're looking for? Here are some other Security Governance, Risk, Compliance Analyst jobs in the San Jose, CA area that may be a better fit.

  • Obsidian Security Palo Alto, CA
  • Obsidian Security is the leading SaaS security platform, trusted by global enterprises like Snowflake, T-Mobile, and Algolia. We protect 200 organizations ... more
  • 2 Days Ago

  • asteralabs San Jose, CA
  • Astera Labs (NASDAQ: ALAB) provides rack-scale AI infrastructure through purpose-built connectivity solutions. By collaborating with hyperscalers and ecosy... more
  • 5 Days Ago

AI Assistant is available now!

Feel free to start your new journey!