Doppel Logo

Doppel

Senior GRC Analyst

Posted 11 Days Ago
Remote
Hiring Remotely in United States
120K-140K Annually
Senior level
Remote
Hiring Remotely in United States
120K-140K Annually
Senior level
Lead the certification and assurance programs for various standards, manage enterprise risks, ensure control effectiveness, and enhance customer trust through strategic communication and compliance measures.
The summary above was generated by AI

Why Join Doppel
Doppel is built to outsmart one of the great threats AI presents: mass-manufactured social engineering. Countless scams, deepfakes, and other social engineering attacks are surging across every digital channel: websites, social media, ads, encrypted messaging apps, mobile, and more.

Our mission is simple but bold: make the internet a safer place by outsmarting the world’s fastest-evolving digital threats.

Backed by top-tier investors and trusted by some of the world’s most recognized brands, Doppel is growing fast. If you’re driven to solve real-world problems with bold technology, we’d love to meet you.

What We're Looking For
We’re seeking a Senior Governance, Risk & Compliance (GRC) Analyst to lead our certification and assurance programs, owning SOC 2 end‑to‑end and driving ISO 27001, ISO 27701, and ISO 42001 audit preparation and ongoing maintenance. You’ll be the program lead partnering with Security, Engineering, IT, Legal, and Sales to keep controls effective, risks managed, and customer trust high.

What You'll Do

  • Lead audits & certifications: Own preparation, execution, and ongoing maintenance for ISO 27001, ISO 27701, ISO 42001, and SOC 2, including gap analyses, remediation, evidence collection, auditor coordination, and management system documentation.

  • Manage enterprise risk: Operate the security and enterprise risk program, maintain the risk register, perform system/vendor/AI risk assessments, and drive remediation and risk acceptance processes.

  • Ensure control effectiveness: Design and execute control testing, track exceptions and corrective actions, and streamline compliance across frameworks (ISO, SOC 2, NIST, GDPR/CPRA, PCI, HIPAA/HITRUST).

  • Oversee access governance: Lead periodic access reviews, enforce least-privilege and joiner/mover/leaver controls, and monitor privileged account usage.

  • Drive vendor & third-party risk management: Conduct due diligence, risk tiering, contract security/privacy requirements, and ongoing monitoring of critical suppliers and partners.

  • Support customer trust: Own security and privacy questionnaires, RFP responses, and Trust Center content; engage with customers and sales teams to communicate our security posture.

  • Advance governance & privacy: Maintain the policy lifecycle, role-based training, and privacy processes.

  • Enhance resilience & reporting: Support incident response exercises, business continuity/disaster recovery testing, and deliver dashboards/metrics on risks, controls, access reviews, vendor posture, and audit readiness.

Minimum Requirements

  • 5–7+ years in GRC, audit, or risk. At least 3+ years leading ISO 27001 certification/surveillance cycles and SOC 2 Type II audits; hands‑on experience with ISO 27701 and ISO 42001 or equivalent AI governance programs.

  • Proven ownership of SOC 2 programs (scope, controls, evidence, auditor management) and continuous compliance in cloud‑first environments (AWS/Azure/GCP, SaaS).

  • Strong command of management systems (ISMS/PIMS/AIMS), Trust Services Criteria, control testing, sampling, and evidence sufficiency.

  • Practical experience running access certifications, vendor risk reviews, and customer security questionnaires/RFPs at scale.

  • Familiarity with privacy and data governance (GDPR/CPRA), and secure SDLC/change management.

  • Comfortable with GRC tooling and automation, ticketing and collaboration workflows, and basic scripting/queries to pull evidence when needed.

  • Clear communicator who can instill a culture of accountability.

Join Doppel

Doppel is the first platform built to dismantle digital deception at scale. We scan over 150 million entities daily and deploy continuously adaptive AI SOC agents, paired with expert human analysts, to uncover and disrupt the infrastructure behind phishing, impersonation, and online fraud before attacks can spread. Our Threat Grid turns every customer signal into shared intelligence, making each disruption smarter, faster, and more effective.

We’re not just another cybersecurity company. We’re defining the future of social engineering defense, where trust is protected, and deception becomes unprofitable. Backed by top-tier investors and trusted by some of the world’s most recognized brands, Doppel is growing fast. If you’re driven to solve real-world problems with bold technology, we’d love to meet you.

Top Skills

AWS
Azure
Cpra
GCP
Gdpr
Hipaa
Hitrust
Iso 27001
Iso 27701
Iso 42001
Pci
Soc 2

Similar Jobs

19 Days Ago
Remote
United States
Senior level
Senior level
Software
The Senior GRC Analyst will lead compliance strategies, assist in FedRAMP certification, maintain SOC 2 compliance, and manage vendor security assessments.
Top Skills: AWSAzureCcpaCompliance Automation ToolsFedrampGCPGdprIso 27001Soc 2
21 Days Ago
Remote
USA
153K-180K Annually
Senior level
153K-180K Annually
Senior level
Security • Cybersecurity
Lead the SOx IT compliance program, coordinating audits, managing controls, documentation, and improving operational effectiveness while ensuring communication with stakeholders.
Top Skills: Cloud InfrastructureDrataIt General ControlsSaas ApplicationsServicenow
10 Minutes Ago
In-Office or Remote
Livingston, NJ, USA
122K-179K
Senior level
122K-179K
Senior level
Cloud • Information Technology • Machine Learning
As a Project Delivery Manager, you will oversee data center operations initiatives, drive technology projects, manage timelines, and ensure project success.
Top Skills: Autocad Construction CloudMaximoNetSuiteOracleProcoreSAPSunbird

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account