nametag
Senior GRC Analyst
At a Glance
- Location
- Remote
- Work Regime
- remote
- Experience
- 5+ years
- Compensation
- or this full-time position is $120,000-$160,000, plus equity and benefits. Nam
- Posted
- 2026-03-18T16:34:39-04:00
Key Requirements
Certifications
- CISSP
- ISO
Domain Knowledge
- Regulatory
Requirements
5+ years of experience in security, compliance, or GRC, with demonstrated hands-on ownership of SOC 2 Type II programs
Experience building or running compliance programs in startup or resource-constrained environments
Strong understanding of how auditors think, ideally from auditor-side experience or running multiple audit cycles
Technical fluency to read pen test reports, understand cloud architecture, and have informed conversations with engineers
Knowledge of GRC tooling and vendors, with opinions on what's worth investing in at different company stages
Experience with identity verification, authentication, or security-focused products is a strong plus
Compensation & Benefits
The base salary range for this full-time position is $120,000-$160,000, plus equity and benefits.
Nametag is a founding member of the Open Imperative, publicly committed to pay equity in the technology industry. We post positions with ranges to encourage people of different backgrounds and experiences to apply. Every offer is benchmarked against market data to ensure fairness and consistency.
Final compensation is determined by role, level, and additional factors such as skills, experience, and education. Your recruiter or hiring manager can share more details during the hiring process.
Competitive salary
Meaningful equity ownership
Responsibilities
Nametag is seeking an experienced Senior GRC Analyst to own and evolve our security and compliance program.
This role is ideal for someone who thrives in a fast-paced startup environment, has deep experience with SOC 2 and other compliance frameworks, and is comfortable building and running programs with limited resources.
You will report directly to the Head of Engineering and partner closely with the engineering team to ensure security is built into everything we do.
As a Senior GRC Analyst, you will own the entire security and compliance function as an individual contributor, maintaining our existing certifications, driving new compliance initiatives, coordinating penetration tests, and building trust with customers and prospects.
You will work closely with engineering, product, sales, and customer success to ensure security enables the business rather than blocking it.