Senior GRC Analyst

Benevity

Not Interested
Bookmark
Report This Job

profile Job Location:

Denver, CO - USA

profile Monthly Salary: Not Disclosed
Posted on: 17 days ago
Vacancies: 1 Vacancy

Job Summary

Meet Benevity

Benevity is the way the world does good providing companies (and their employees) with technology to take social action on the issues they care about. Through giving volunteering grantmaking employee resource groups and micro-actions we help most of the Fortune 100 brands build better cultures and use their power for good. Were also one of the first B Corporations in Canada meaning were as committed to purpose as we are to profits. We have people working all over the world including Canada Spain Switzerland the United Kingdom the United States and more!

Benevity is the way the world does good providing companies (and their employees) with technology to take social action on the issues they care about. Through giving volunteering grantmaking employee resource groups and micro-actions we help most of the Fortune 100 brands build better cultures and use their power for good. Were also one of the first B Corporations in Canada meaning were as committed to purpose as we are to profits. We have people working all over the world including Canada Spain Switzerland the United Kingdom the United States and more!

Benevity is seeking a Senior Governance Risk & Compliance (GRC) Analyst to elevate our security governance risk privacy and regulatory this senior role you will drive the execution innovation and continuous improvement of Benevitys GRC program. You will lead compliance activities conduct risk assessments contribute to third-party risk management respond to client due diligence requests support FINTRAC/AML obligations and influence policies and controls that strengthen trust with our clients partners and stakeholders.

As a trusted advisor across teams you will help ensure Benevity aligns with leading standards privacy laws and regulatory requirements while fostering a culture of security compliance and accountability. Youll also mentor junior members of the team helping to grow Benevitys next generation of security and compliance professionals with a focus on developing proactive and innovative approaches to GRC challenges.

What youll do:

  • Contribute to the development and maintenance of security and privacy policies standards and control frameworks aligned with ISO 27001 SOC 2 NIST PCI DSS GDPR PIPEDA FINTRAC and other global regulations
  • Support policy approvals exception handling and attestation processes while identifying opportunities for automation and process improvements
  • Lead and execute enterprise risk assessments including vendor and process-level reviews
  • Maintain and enhance the enterprise risk register track remediation efforts and support risk treatment planning
  • Support Benevitys Third-Party Risk Management program including vendor assessments monitoring and remediation tracking
  • Lead readiness and response efforts for ISO 27001 SOC 2 PCI DSS GDPR and other audits and certifications
  • Coordinate evidence collection control validation and engagement with auditors and external assessors
  • Use GRC platforms to streamline audit privacy and compliance workflows
  • Support Sales by responding to client inquiries RFPs and third-party risk requests related to security and privacy
  • Partner with Sales and Client Success to deliver accurate timely information that builds client trust and confidence
  • Support cross-jurisdictional privacy compliance initiatives (GDPR PIPEDA CCPA/CPRA) in collaboration with Legal and Data Governance
  • Assist with FINTRAC-related requirements including AML/ATF risk assessments and reporting
  • Monitor privacy AML and financial crime regulations and contribute to process alignment and compliance readiness
  • Partner with business and technical teams to embed risk and compliance into key initiatives
  • Deliver executive-ready reports dashboards and risk insights to inform leadership decision-making
  • Lead the Security Awareness & Training program including campaigns training modules and phishing simulations
  • Create documentation training and awareness activities that promote a strong culture of security privacy and compliance
  • Mentor junior team members by providing guidance feedback and knowledge sharing to support their development

What youll bring:

  • 5 years of experience in cybersecurity governance risk compliance or privacy ideally in a SaaS or high-growth environment.
  • Strong knowledge of security privacy and regulatory frameworks including ISO 27001 NIST SOC 2 PCI DSS GDPR PIPEDA FINTRAC and CCPA/CPRA.
  • Hands-on experience with GRC tooling (e.g. OneTrust Hyperproof SecurityPal AuditBoard Drata) to manage policies risks audits privacy and vendor risk workflows.
  • Proven success in conducting risk assessments managing vendor risk/TPRM maintaining risk registers and driving remediation.
  • Experience supporting client due diligence processes (security questionnaires RFPs TPRM).
  • Ability to clearly communicate risk security privacy and regulatory concepts to both technical and non-technical stakeholders.
  • Strong organizational and project management skills with experience leading cross-functional initiatives.
  • A demonstrated interest and track record in leveraging automation and AI to streamline GRC processes and enhance efficiency.
  • Certifications such as CISM CRISC CISSP CISA or CIPM/CIPP are highly valued.

Discover your purpose at work

Were not employees were Benevity-ites. From all locations backgrounds and walks of life who deserve more

Innovative work. Growth opportunities. Caring co-workers. And a chance to do work that fills us with a sense of purpose.

If the idea of working on tech that helps people do good in the world lights you up ... If you want a career where youre valued for who you are and challenged to see who you can become

Its time to join Benevity. Were so excited to meet you.

Where We Work

At Benevity we embrace a flexible hybrid approach to where we work that empowers our people in a way that supports great work strong relationships and personal well-being. For those located near one of our offices while theres no set requirement for in-office time we do value the moments when coming together in person helps us build connection and collaboration. Whether its for onboarding project work or a chance to align and bond as a team we trust our people to make thoughtful decisions about when showing up in person matters most.

Join a company where DEIB isnt a buzzword
Diversity equity inclusion and belonging are part of Benevitys DNA. Youll see the impact of our massive investment in DEIB daily from our well-supported employee resources groups to the exceptional diversity on our leadership and tech teams.

We know that diverse backgrounds experiences skills and passions are what move our business and our people forward so were committed to creating a culture of belonging with equal opportunities for everyone to shine.

That starts with a fair and accessible hiring process. If you want to feel seen heard and celebrated you belong at Benevity.

Candidates with disabilities who may require accommodations throughout the hiring or assessment process are encouraged to reach out to .

Discover your purpose at work

Were not employees were Benevity-ites. From all locations backgrounds and walks of life who deserve more

Innovative work. Growth opportunities. Caring co-workers. And a chance to do work that fills us with a sense of purpose.

If the idea of working on tech that helps people do good in the world lights you up ... If you want a career where youre valued for who you are and challenged to see who you can become

Its time to join Benevity. Were so excited to meet you.

Where We Work

At Benevity we embrace a flexible hybrid approach to where we work that empowers our people in a way that supports great work strong relationships and personal well-being. For those located near one of our offices while theres no set requirement for in-office time we do value the moments when coming together in person helps us build connection and collaboration. Whether its for onboarding project work or a chance to align and bond as a team we trust our people to make thoughtful decisions about when showing up in person matters most.

Join a company where DEIB isnt a buzzword

Diversity equity inclusion and belonging are part of Benevitys DNA. Youll see the impact of our massive investment in DEIB daily from our well-supported employee resources groups to the exceptional diversity on our leadership and tech teams.

We know that diverse backgrounds experiences skills and passions are what move our business and our people forward so were committed to creating a culture of belonging with equal opportunities for everyone to shine.

That starts with a fair and accessible hiring process. If you want to feel seen heard and celebrated you belong at Benevity.

Candidates with disabilities who may require accommodations throughout the hiring or assessment process are encouraged to reach out to


Required Experience:

Senior IC

Meet BenevityBenevity is the way the world does good providing companies (and their employees) with technology to take social action on the issues they care about. Through giving volunteering grantmaking employee resource groups and micro-actions we help most of the Fortune 100 brands build better c...
View more view more

Key Skills

  • Splunk
  • IDS
  • Microsoft Access
  • SQL
  • Cybersecurity
  • Intelligence Experience
  • Malware Analysis
  • Tableau
  • Analysis Skills
  • SAS
  • Data Analysis Skills
  • Analytics

About Company

Company Logo

Benevity's corporate purpose software offers the only integrated suite of community investment, employee, customer and nonprofit engagement solutions.

View Profile View Profile