Easy Apply
Easy Apply
The GRC Analyst supports the GRC program, assisting in policy development, risk assessments, compliance monitoring, and audit coordination.
At WHOOP, we're on a mission to unlock human performance and healthspan. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.
As a GRC Analyst, you will play a crucial role in supporting the development, implementation, and maintenance of our Governance, Risk, and Compliance (GRC) program. Working under the guidance of the GRC Senior Manager you will assist in various activities, including policy development, risk assessments, compliance framework implementation and monitoring, and audit coordination. Step into a role that empowers you to build a well-rounded foundation in GRC, explore multiple facets of the field, and sharpen your skills in specialized areas such as risk management or standards program management. Your sharp eye for detail and strong analytical mindset will play a pivotal role in strengthening our security and compliance initiatives.
RESPONSIBILITES:
- Assist in the development and implementation of the GRC framework to support business objectives, aligned with industry best practices and regulatory requirements.
- Assist in conducting risk assessments, supporting the development and adherence of risk mitigation strategies, and maintaining the risk register.
- Support ongoing compliance monitoring activities to ensure adherence to internal policies, relevant regulations, standards, and contractual obligations.
- Assist in evaluating and managing risks associated with third-party vendors and service providers through vendor risk assessment processes.
- Provide support in incident response activities, including documentation, coordination, and post-incident analysis as directed.
- Assist in the development and delivery of security awareness and training programs to educate employees on security policies, procedures, and best practices.
- Support audit activities by gathering evidence, conducting preliminary assessments, and assisting in the remediation of audit findings.
- Manage and resolve GRC support tickets promptly and efficiently.
- Participate in the review, development, and maintenance of security policies, standards, and procedures to ensure compliance with regulatory mandates and industry standards.
- Maintain and update GRC standard operating procedures to ensure consistency and efficiency. Identify areas for process improvement within the GRC program and assist in implementing enhancements to improve effectiveness and efficiency.
QUALIFICATIONS:
- Bachelor's degree in Information Security, Computer Science, or relevant certifications (e.g., CompTIA Security+, CISSP, CISA, CISM, GRC certifications) a plus.
- Minimum of 2 years of experience in information security, risk management, audit, or compliance roles.
- Strong understanding of GRC concepts, principles, and practices.
- Familiarity with relevant regulations, standards, and frameworks (e.g., GDPR, SOC2, ISO 27001, NIST Cybersecurity Framework).
- Excellent analytical and problem-solving skills with attention to detail.
- Effective communication and interpersonal skills, with the ability to establish relationships and collaborate with cross-functional teams.
- Detail-oriented with superior organizational and time-management skills - balancing multiple projects, deadlines, and requests.
- Proven ability to navigate ambiguity and complexity, turning uncertainty into clarity and actionable insights.
- Driven with a pro-active and results-oriented approach, demonstrating a can-do attitude and determination to succeed.
This role is based in the WHOOP office located in Boston, MA. The successful candidate must be prepared to relocate if necessary to work out of the Boston, MA office.
Interested in the role, but don’t meet every qualification? We encourage you to still apply! At WHOOP, we believe there is much more to a candidate than what is written on paper, and we value character as much as experience. As we continue to build a diverse and inclusive environment, we encourage anyone who is interested in this role to apply.
WHOOP is an Equal Opportunity Employer and participates in E-verify to determine employment eligibility. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Top Skills
Compliance
Gdpr
Grc Frameworks
Iso 27001
Nist Cybersecurity Framework
Risk Management
Soc2
WHOOP Boston, Massachusetts, USA Office
1 Kenmore Sq, Boston, MA, United States, 02215
Similar Jobs at WHOOP
Fitness • Hardware • Healthtech • Sports • Wearables
As a Senior iOS Engineer, you'll develop features for our healthcare app, collaborating with teams and mentoring junior developers, focusing on user engagement and health insights.
Top Skills:
AutolayoutCocoapodsConfluenceFastlaneFirebaseGitInterface BuilderJIRARestful ApiSwiftSwift Package ManagerSwiftuiUikitXcodeXctest
22 Hours Ago
Easy Apply
Easy Apply
Fitness • Hardware • Healthtech • Sports • Wearables
As a Sensor Intelligence Engineer, you will design and optimize machine learning algorithms for embedded devices, enhancing diagnostic tools and ensuring accurate physiological data analysis.
Top Skills:
CPythonPyTorchScikit-LearnTensorflow LiteTinyml Frameworks
Fitness • Hardware • Healthtech • Sports • Wearables
Lead the development of business systems capabilities while improving processes, performance metrics, and collaborating with cross-functional teams.
Top Skills:
AmplitudeNetSuiteSalesforceSigmaSQL
What you need to know about the Boston Tech Scene
Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.
Key Facts About Boston Tech
- Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
- Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
- Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
- Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories