Verified current Job

Information Security Analyst, GRC

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Information Security Analyst, GRC based in France

Job Remote Full source details
Jobgether Source published Sep 15, 2026 Verified 8 hours ago
✓ 100% verification score · Source: jobgether (lever) · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentFull-time
Work modeRemote / location-flexible

Overview

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Information Security Analyst, GRC based in France

Full job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Information Security Analyst, GRC based in France. Join a remote-first security team operating at the intersection of cybersecurity, AI, compliance, and risk management. You’ll help strengthen the organization’s security and trust function while supporting customers and prospects through complex security reviews. The role combines technical security knowledge with governance, risk, compliance, and third-party risk management. You’ll work closely with IT, Security, Engineering, Legal, Sales, and Customer teams to communicate security controls and manage risk effectively. Your work will contribute to maintaining compliance with leading frameworks while improving how risks are identified, assessed, documented, and remediated. You’ll also have opportunities to streamline and automate GRC processes as the organization scales. This individual contributor role offers significant ownership and the potential to grow into a broader risk and compliance leadership scope.

Support customers and prospects by completing technical security questionnaires, risk assessments, due-diligence requests, and security reviews. Partner with Sales and Customer teams to clearly explain security controls, architecture, compliance posture, and risk management practices. Assess and manage security risks associated with third-party vendors, SaaS providers, and service partners. Investigate and resolve compliance alerts and support ongoing compliance activities using GRC tooling such as Vanta. Maintain and continuously improve risk assessment frameworks, methodologies, processes, and supporting documentation. Track identified risks through remediation in collaboration with relevant internal stakeholders. Contribute to compliance initiatives aligned with frameworks and standards including SOC 2, FedRAMP 20x, ISO 27001, and ISO 42001. Maintain accurate and well-structured risk registers, security policies, evidence, and other compliance documentation. Coordinate risk management sessions and support ongoing risk governance processes. Identify opportunities to simplify, streamline, and automate risk and compliance activities as the organization grows. Support internal assurance activities, audits, customer reviews, and other security-related assessments. Collaborate across IT, Security, Engineering, Legal, Sales, and Customer teams to ensure security and compliance requirements are understood and addressed. Help strengthen the overall security and trust function through practical, scalable, and risk-based processes. Requirements 7+ years of experience in information security, risk, compliance, security assurance, or a related discipline. Hands-on experience in a technical environment such as Engineering, IT, operational security, or a comparable function. Proven experience completing or reviewing technical security questionnaires, customer security assessments, and due-diligence requests. Strong knowledge of security, compliance, and data protection frameworks such as SOC 2, ISO 27001, NIST, GDPR, and HIPAA. Practical experience conducting or supporting third-party and vendor security risk assessments. Strong written and verbal communication skills, with the ability to explain complex security concepts clearly to both technical and non-technical audiences. Highly organized and detail-oriented, with a pragmatic approach to identifying and managing risk. Comfortable working independently and taking ownership in a fast-moving, remote-first startup environment. Familiarity with modern AI tools and the ability to use them productively while appropriately managing associated risks. Strong analytical and problem-solving skills, with the ability to balance security requirements against business priorities. Experience in a SaaS or cybersecurity-focused organization is advantageous. Experience handling GDPR Subject Access Requests is a plus. Security or risk certifications such as CRISC or CISSP are valued. Knowledge of cloud security best practices is beneficial. Benefits Competitive compensation: Attractive salary package aligned with experience and responsibilities. Equity: Meaningful stock options providing an opportunity to participate in the organization’s growth. Remote-first: Work remotely within the eligible European region. Flexible environment: Work in a distributed environment designed to support autonomy and ownership. Career growth: Opportunity to expand your responsibilities as the risk, compliance, and security function matures. Expert collaboration: Learn from and work alongside experienced professionals in cybersecurity, AI, engineering, and security operations. Meaningful impact: Contribute to the security and compliance foundation of an organization operating at the forefront of AI-driven cybersecurity. Cross-functional exposure: Partner with teams across engineering, IT, legal, sales, customer success, and security. International collaboration: Work with a globally distributed team and have regular opportunities to connect with colleagues in person.

Tips for this job

Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

laptop-ats-crawler v3

Original authoritative source

Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

jobgether (lever) ↗

Browse current Job and Scholarship listings from jobgether (lever) →

Related opportunities

Other current verified records you may want to review.

Job

Mitarbeiter (m/w/d) Burger-Crew für Street Food-Court im Bistro von “Moulin Rouge! Das Musical“

Atgde Careers

Current Mitarbeiter (m/w/d) Burger-Crew für Street Food-Court im Bistro von “Moulin Rouge! Das Musical“ opening at Atgde Careers in Hamburg. Full...

Job

Assistenz / Stellv. Teamleitung für Street-Food-Court „Bistro“ von "Moulin Rouge! Das Musical"

Atgde Careers

Current Assistenz / Stellv. Teamleitung für Street-Food-Court „Bistro“ von "Moulin Rouge! Das Musical" opening at Atgde Careers in Hamburg. Full...

Job

Recruiter:in / Personalreferent:in – Teilzeit 20h / 30h(m/w/d)

Assentio Careers

Current Recruiter:in / Personalreferent:in – Teilzeit 20h / 30h(m/w/d) opening at Assentio Careers in Leipzig. Full employer-published role secti...

Job

Personalberater / 360° Recruiter (m/w/d)

Assentio Careers

Current Personalberater / 360° Recruiter (m/w/d) opening at Assentio Careers in Leipzig. Full employer-published role sections have been imported...

Job

Infrastructure Technical Program Manager, Global Connectivity Infrastructure Delivery - Fiber Deployment

Amazon Data Services, Inc. · United States

AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we’re the people...

Job

Infra-Delivery Install Technician, Infrastructure Delivery

Amazon Data Services, Inc. · United States

AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we’re the people...

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books