GRC Analyst Job at Doppel, New York, NY

YlIwMFBOOUY5UmUzaVJrMG5qTzlWRHRv
  • Doppel
  • New York, NY

Job Description

The Role At Doppel, we focus on building a culture where people feel respected, supported, and trusted to do meaningful work. We value clarity, collaboration, and solving real problems for our customers and teammates. We are looking for a Governance, Risk & Compliance (GRC) Analyst to lead our certification and assurance programs—owning SOC 2 end‑to‑end and driving ISO 27001, ISO 27701, and ISO 42001 audit preparation and ongoing maintenance. You’ll be the program lead partnering with Security, Engineering, IT, Legal, and Sales to keep controls effective, risks managed, and customer trust high. What You’ll Do Lead audits & certifications: Own preparation, execution, and ongoing maintenance for ISO 27001, ISO27701, ISO42001, and SOC2, including gap analyses, remediation, evidence collection, auditor coordination, and management system documentation. Manage enterprise risk: Operate the security and enterprise risk program, maintain the risk register, perform system/vendor/AI risk assessments, and drive remediation and risk acceptance processes. Ensure control effectiveness: Design and execute control testing, track exceptions and corrective actions, and streamline compliance across frameworks (ISO, SOC2, NIST, GDPR/CPRA, PCI, HIPAA/HITRUST). Oversee access governance: Lead periodic access reviews, enforce least‑privilege and joiner/mover/leaver controls, and monitor privileged account usage. Drive vendor & third‑party risk management: Conduct due diligence, risk tiering, contract security/privacy requirements, and ongoing monitoring of critical suppliers and partners. Support customer trust: Own security and privacy questionnaires, RFP responses, and Trust Center content; engage with customers and sales teams to communicate our security posture. Advance governance & privacy: Maintain the policy lifecycle, role‑based training, and privacy processes. What We’re Looking For 5–7+ years in GRC, audit, or risk—at least 3+ years leading ISO27001 certification/surveillance cycles and SOC2 TypeII audits; hands‑on experience with ISO27701 and ISO42001 or equivalent AI governance programs. Proven ownership of SOC2 programs (scope, controls, evidence, auditor management) and continuous compliance in cloud‑first environments (AWS/Azure/GCP, SaaS). Strong ability to communicate compliance jargon effectively across the business, tailoring complex requirements for technical, operational, and executive audiences. Strong command of management systems (ISMS/PIMS/AIMS), Trust Services Criteria, control testing, sampling, and evidence sufficiency. Practical experience running access certifications, vendor risk reviews, and customer security questionnaires/RFPs at scale. Why Join Doppel $120,000-$140,000USD Meaningful equity so you share in Doppel’s success Remote first culture with flexibility built in Flexible PTO, comprehensive health benefits, parental leave, and more A high growth environment where your work has immediate impact and visibility Salary Range $120,000USD-$140,000USD #J-18808-Ljbffr

Job Tags

Contract work, Immediate start, Remote work, Flexible hours

Similar Jobs

EPIC Piping

Crane Operator - Multi Positions Available Job at EPIC Piping

 ...level, whether you are just starting your career or have years of experience under your belt. WHAT YOULL DO: Operate crane under...  ...unmatched experience servicing the chemical, power, refining, offshore, and oil & gas industries. As an equal opportunity employer... 

ProCare Therapy

Middle School High School Special Ed Teacher | Hooper Bay, Alaska Job at ProCare Therapy

 ...qualifications will not be considered. A contract opportunity is available for a Special Education Teacher with expertise in autism to support a middle and high school caseload in Hooper Bay, AK. This position involves working collaboratively as part of a two-teacher... 

GATE Energy

Field Engineer I Job at GATE Energy

 ...as Field Engineer I working in the Service Department for land/offshore. Responsible for execution of tasks as assigned by the Lead...  ...Procedures (SOP) Other duties as assigned Education and Experience Four-year accredited engineering degree No experience... 

LocumTenens.com

OB/GYN Needed at Facility in Oklahoma Job at LocumTenens.com

 ..., vacuum-assisted, C-sections, Hysterectomy (TAH, LAVH), D&C, tubals, LEEP\nActive OK or IMLC Additional Job Details Case Load/PPD: Variable Support Staff: 1 CNM, 1 RN, full L&D staff Patient Population: Adults Call Ratio/Schedule: 1:2 Location Type: On... 

Panos Brands

Food Manufacturing - Batch Maker and Pre-Weigher Job at Panos Brands

 ...Farms, a division of PANOS Brands, is looking for aBatch Operator, M-F day shift, to join our production team. This role supports the manufacturing process by operating food equipment according to established formulas and quality standards. Responsibilities: Operate...