The GRC Analyst will oversee audit preparations for certifications, develop compliance materials, monitor regulatory obligations, and collaborate with teams to ensure readiness.
Founded in 2015, Shield AI is a venture-backed defense technology company with the mission of protecting service members and civilians with intelligent systems. Its products include the V-BAT aircraft, Hivemind Enterprise, and the Hivemind Vision product lines. With offices in San Diego, Dallas, Washington, D.C., Boston, Abu Dhabi (UAE), Kyiv (Ukraine), and Melbourne (Australia), Shield AI’s technology actively supports U.S. and allied operations worldwide. For more information, visit www.shield.ai. Follow Shield AI on LinkedIn,X, YouTubeand Instagram.
Job Description:
We are seeking a detail-oriented GRC Analyst to support our security and compliance initiatives across the organization. This role will drive the execution of key certifications such as CMMC, ISO 27001, and other industry-related standards, ensuring readiness through audit prep, documentation, and cross-functional coordination. The analyst will develop and maintain customer-facing collateral, including standardized RFI/RFP responses and security whitepapers. They will also monitor internal controls, track remediation efforts, and help align teams with regulatory and contractual requirements. Ideal candidates have a strong understanding of compliance frameworks, excellent communication skills, and experience managing audits in fast-paced environments.
What you'll do:
- Lead audit preparation, execution, and remediation efforts for certifications such as CMMC, ISO 27001, and other industry-aligned standards.
- Develop and maintain security compliance collateral, including policies, whitepapers, and standardized RFI/RFP responses.
- Collaborate with cross-functional teams (Security, IT, Legal, Engineering) to implement and track control requirements.
- Monitor regulatory obligations and maintain audit readiness through continuous assessment and documentation.
- Support customer trust efforts by aligning compliance initiatives with business growth and contractual requirements.
Required qualifications:
- 5+ years of experience in GRC, compliance, or information security roles, with a focus on both commercial and government customer requirements.
- Proven track record of leading audit readiness and certification efforts for frameworks such as CMMC, ISO 27001, NIST 800-53, or similar.
- Strong understanding of regulatory and contractual obligations in both federal and enterprise environments.
- Exceptional communication and documentation skills, with experience developing customer-facing compliance materials.
- Ability to work independently, influence cross-functional teams, and prioritize in a fast-paced, high-growth environment.
Preferred qualifications:
- Experience leading security and compliance programs in defense, aerospace, or other highly regulated environments.
- Deep familiarity with CMMC and ISO 27001 frameworks, along with related government or industry requirements.
- Proven ability to independently interface with customers, address security inquiries, and represent the company’s posture with confidence.
- Industry certifications such as CISSP, CISM, CISA, CRISC, or Certified CMMC Professional (CCP).
- Strong influence skills—able to drive cross-functional results, overcome resistance, and align stakeholders toward compliance goals.
#LI-HM1
#LD
Full-time regular employee offer package:
Pay within range listed + Bonus + Benefits + Equity
Temporary employee offer package:
Pay within range listed above + temporary benefits package (applicable after 60 days of employment)
Salary compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, licenses and certifications, and specific work location. All offers are contingent on a cleared background and possible reference check. Military fellows and part-time employees are not eligible for benefits. Please speak to your talent acquisition representative for more information.
###
Shield AI is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, marital status, disability, gender identity or Veteran status. If you have a disability or special need that requires accommodation, please let us know.
Top Skills
Cmmc
Iso 27001
Nist 800-53
Similar Jobs
Security • Software • Cybersecurity • Automation
As a Senior GRC Analyst, you'll enhance Drata's GRC program, manage compliance frameworks, conduct risk assessments, and collaborate on product improvements.
Top Skills:
AWSAzureFedrampGCPGdprGrc PlatformsHipaaIso 27001Iso 27017Iso 27018Soc 1Soc 2Soc 3
Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Develop and implement integration solutions using WebMethods and MuleSoft, providing technical leadership and ensuring best practices while collaborating with cross-functional teams.
Top Skills:
Apache CamelApache CxfApache KafkaAWSAzureDockerEclipse MicroprofileGCPKubernetesMulesoftRed Hat FuseSpring IntegrationWebmethods
Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
The Program Manager will design and manage onboarding and offboarding programs, enhancing employee experience and retention while collaborating across teams.
Top Skills:
Hr TechnologyOnboarding TechnologyProject Management Platforms
What you need to know about the Los Angeles Tech Scene
Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.
Key Facts About Los Angeles Tech
- Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
- Key Industries: Artificial intelligence, adtech, media, software, game development
- Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
- Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering