Prosper Logo

Prosper

Sr. GRC Analyst

Posted 10 Days Ago
Remote
Hiring Remotely in United States
136K-169K Annually
Senior level
Remote
Hiring Remotely in United States
136K-169K Annually
Senior level
Lead automation-focused GRC work: monitor and audit controls against PCI-DSS, NIST CSF, and SOC frameworks; automate evidence collection and compliance workflows using scripting and AI; oversee IAM reviews; collaborate with engineering, DevOps, and product to embed compliance into CI/CD and cloud infrastructure.
The summary above was generated by AI
Your role in our mission

Prosper is seeking a detail-oriented, highly motivated, and automation-focused security compliance professional to support, promote, and further mature the company's Governance, Risk, and Compliance program. In this position, you will blend standard GRC practices (PCI DSS, NIST, SOC 1/2) with a technical mindset, leveraging GRC platforms, scripting and AI tools to automate manual compliance workflows, audit trails, and data gathering.

You will use your strong analytical and technical skills to identify security gaps and build efficient, scalable processes. We are looking for self-driven candidates who want to be part of an innovative FinTech company with a mission to improve the financial well-being of its customers.

How you’ll make an impact

  • Automated Compliance Monitoring: Review, audit, and monitor security compliance programs against frameworks like PCI-DSS, NIST CSFv2, and SOC 1/2, leveraging automation tools to continuously assess control health
  • Process Optimization & AI Integration: Identify opportunities to leverage AI tools and LLMs to accelerate risk assessments, summarize complex regulatory requirements, and streamline process improvements
  • Code-Assisted Evidence Collection: Lead and automate evidence collection for external audits (SOC 1, PCI Level 1), reducing manual overhead for engineering and product teams
  • Identity & Access Management (IAM): Oversee user access management and quarterly user access reviews, exploring ways to automate provisioning audits and detect anomalies
  • Cross-Functional Collaboration: Build and cultivate positive working relationships with engineering, DevOps, and product stakeholders to bake compliance directly into the CI/CD pipeline and cloud infrastructure

Skills that will help you thrive

  • Education: B.S. degree in Computer Science, Information Systems, Cyber Security, or a related technical field
  • Experience: 5–7 years of GRC or Security Engineering experience, ideally within a SaaS, FinTech, or Cloud-native company
  • Solid understanding of Cloud Security compliance (AWS/Azure/GCP)
  • Technical & Scripting Skills: Hands-on working experience with command line and scripting languages (Python, Bash, Powershell, etc) to parse logs, query APIs, and automate repetitive GRC tasks
  • AI Savvy: Familiarity with utilizing AI productivity tools, prompt engineering, or LLMs to optimize documentation, drafting, or data analysis
  • Framework Fluency: Experience with security standards/frameworks such as PCI-DSS, NIST (800-53/CSF), and SOC 1/2 Type II
  • Soft Skills: Strong ability to clearly articulate technical risk to non-technical stakeholders and strategically collaborate cross-functionally
  • Certifications: CISSP, CISA, CISM, CCSP, or similar security certifications are a plus

Resources to help you prosper

  • A connected experience: We prioritize high-touch collaboration and flexibility. Whether you are working from our San Francisco or Phoenix offices or joining us as a fully remote team member, we provide the digital-first tools and intentional culture to keep you synced and supported
  • Invested in your future: A competitive salary and a 401(k) with a 5% company match to help you build long-term financial security
  • Holistic well-being: We provide the resources you need to thrive, from flexible time off and paid parental leave to an annual wellness allowance and comprehensive health coverage
  • Professional & personal growth: Take advantage of a suite of premium perks, including Udemy access, childcare assistance, pet insurance, and a bevy of additional savings through Beneplace

Interview process

  • Recruiter Call: A brief screening to discuss your experience and initial questions
  • Department Interview: Deeper dive into technical skills and project alignment with the Hiring Manager or team member
  • Team/Virtual Interview: Meet team members for collaborative discussions, problem-solving, or technical exercises

#LI-RC1#LI-remote

Similar Jobs

8 Days Ago
In-Office or Remote
106K-222K Annually
Senior level
106K-222K Annually
Senior level
Events • Analytics • Consulting
Conduct research and deliver strategic advice on risk management and cyber risk quantification. Develop and maintain risk artifacts (standards, procedures, appetite, registry), produce 6–8 research projects yearly, consult with clients, collaborate across Forrester teams, advise vendors, publish insights, and present externally. Support C-suite and risk leaders and travel up to 20%.
Top Skills: Grc Platforms
24 Days Ago
Remote
United States
Senior level
Senior level
Big Data • Healthtech
The Senior GRC Analyst will enhance compliance programs, respond to security inquiries, conduct audits, review contracts, and optimize processes using AI.
Top Skills: AIAutomationCloud SecurityFedramp)HipaaHitrustRegulatory Compliance Frameworks (Nist
8 Days Ago
Remote
U.S.
130K-160K Annually
Senior level
130K-160K Annually
Senior level
HR Tech • Payments • Software • Financial Services
The Senior GRC Analyst will manage governance, risk, compliance, and audit readiness programs, ensuring security policies and compliance frameworks are adhered to, while collaborating with various teams across the company.
Top Skills: Compliance Automation ToolsGrc PlatformsHitrustIso 27001Nist CsfSoc 2

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account