Governance, Risk & Compliance (GRC) Analyst

Ivo Inc. · San Francisco

Spotted 4h agoFullTime
Job description

About this role

Employer-provided description, formatted for easier reading.

Why Join Ivo?

Contracts are the oldest business technology in human history. They allow us to collaborate: they define what we promise each other, how we work together, and what happens when things go wrong.

Ivo builds AI products that helps companies like Meta, Uber, IBM, Intel, DoorDash, Mitsubishi Electric, and Coinbase solve their most difficult contracting problems. We think that large language models have created an opportunity to fundamentally change how businesses collaborate with each other.

At Ivo you will work on challenging problems with colleagues who have high standards for each other, move fast, and care deeply about their craft.

The Opportunity

Ivo is seeking a detail-oriented and proactive GRC Analyst to support the company's compliance, risk management, and security assurance initiatives. This role will play a key part in maintaining and enhancing Ivo's compliance programs, including SOC 2 Type II, ISO 27001, CSA STAR, and ISO/IEC 42001.

The ideal candidate has experience supporting security audits, managing evidence collection, conducting risk assessments, maintaining policies and procedures, and partnering cross-functionally with engineering, IT, legal, HR, and business stakeholders.

This is a fully onsite role based out of Ivo's San Francisco headquarters to support close cross-functional collaboration with Security, Engineering, IT, and Operations teams.

What You'll Do

  • Support and coordinate Ivo's compliance programs including SOC 2 Type II, ISO 27001, CSA STAR, and ISO/IEC 42001.
  • Assist with annual audits, surveillance audits, and customer security assessments.
  • Coordinate evidence collection and maintain audit readiness across teams.
  • Support and maintain Ivo's Vanta GRC platform and associated compliance workflows.
  • Monitor automated compliance evidence collection and control monitoring within Vanta.
  • Perform vendor and third-party risk assessments.
  • Support enterprise risk management and risk register maintenance.
  • Maintain and update security policies, standards, and procedures.
  • Support AI governance and responsible AI compliance initiatives.

What We're Looking

  • 3–5 years of experience in Governance, Risk & Compliance (GRC), Information Security, IT Audit, or related field.
  • Hands-on experience supporting SOC 2 Type II, ISO 27001, CSA STAR, and in-depth knowledge of ISO/IEC 42001.
  • Experience administering or working extensively with Vanta or similar GRC/compliance automation platforms.
  • Experience managing and maintaining a customer-facing Trust Center, including security documentation, compliance artifacts, sub-processor disclosures, and customer assurance materials.
  • Strong understanding of information security principles and common security controls.
  • Experience with audits, evidence management, and customer security reviews.
  • Excellent written and verbal communication skills.

Nice to Haves

  • Experience working at a SaaS or AI company.
  • Familiarity with GDPR, CCPA, privacy regulations, and third-party risk management.
  • Knowledge of cloud environments such as GCP, AWS, or Azure.
  • Relevant certifications such as Security+, CISA, CRISC, CCSK, or ISO 27001 Lead Implementer/Auditor.

Ivo might be a good fit for you if you:

  • Would describe yourself as being relentlessly resourceful.
  • You have a strong internal sense of urgency. You have a bias towards doing things today , rather than tomorrow.
  • Experience working in a startup environment is preferred but not required.
  • Are excited about the adventure of building a company!

What We Offer

  • Competitive Compensation: Final offer details are determined based on experience, expertise, and overall fit.
  • Equity: Meaningful ownership in a company that's scaling fast
  • Relocation and Visa Support: We also offer relocation assistance for successful applicants moving to SF, as well as support for visa and green card applications where applicable.
  • Health & Wellness: Comprehensive medical, dental, and vision plans to suit the needs of you and your family.
  • Flexible Spending & Insurance: Access to HSA and FSA accounts, plus life insurance coverage.
  • 401(k) Program: Save for the future with our 401(k) program.
  • Commuter Benefits: We help make getting to and from the office easier and more convenient.
  • Unlimited PTO: So you can take the time you need to recharge, stay healthy, and bring your best self to work.
  • Office Perks: Enjoy a vibrant Downtown San Francisco office with catered lunch five days a week, premium snacks and coffee, an in-building gym, and a dog-friendly environment.

FAQ

  • What stage of growth is Ivo at?: We recently raised our Series B after growing 6x in 12 months.
  • Is this a chill gig?: Startups are very hard, especially if they’re growing fast. You’ll have a ton of responsibility, and there’s always an enormous amount of stuff to do. It’s hard work but the payoff is uncapped.

Ivo is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Interested in this role?Continue on Ivo Inc.'s careers page.
Apply on Ivo Inc.