Skip to content
← Back to job listings

Technical GRC Analyst (Compliance & Assurance)

jobgether · Brazil

RemoteExternal listingcontractabout 20 hours ago

About The Role

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Technical GRC Analyst (Compliance & Assurance) based in Brazil.

As a Technical GRC Analyst, you will help strengthen trust, security, and compliance across a modern technology organization. You will work closely with Security, Engineering, Product, and business teams to evaluate technical controls, validate evidence, assess risks, and improve assurance practices. The role combines hands-on technical understanding with practical, risk-based compliance and offers the opportunity to contribute to AI governance and emerging technology initiatives. You will help turn compliance data into actionable insights while identifying opportunities to automate and streamline processes. Your work will also support customer assurance, internal assessments, and external audits. This is an impactful opportunity for someone who enjoys solving complex problems, building strong partnerships, and helping compliance programs scale effectively

Accountabilities

Evaluate the design and operating effectiveness of technical controls, reviewing supporting evidence to confirm that controls are properly implemented, operating effectively, and appropriately documented.

Conduct technical risk assessments for new technologies, systems, and business initiatives, partnering with Engineering, Security, Product, and other stakeholders to identify and address potential risks.

Ensure technical controls are aligned with applicable compliance requirements, security practices, and industry standards while balancing regulatory expectations with practical business needs.

Support and continuously enhance the AI governance program, including AI policies, acceptable-use standards, risk assessments, vendor evaluations, and security controls aligned with ISO 42001.

Transform compliance and assurance data into meaningful metrics, dashboards, and insights that improve visibility into technical risks, control effectiveness, and overall program maturity.

Identify and implement opportunities to automate compliance activities, improve evidence collection, and increase the efficiency and scalability of assurance processes.

Support internal assessments, customer due diligence activities, and external audits by coordinating high-quality technical evidence and providing clear, reliable assurance.

Requirements

8+ years of experience in technical security, Security GRC, regulatory compliance, or a related discipline, with hands-on experience evaluating technical controls and validating supporting evidence.

Proven experience performing technical risk assessments and collaborating effectively with cross-functional teams within technology organizations and modern cloud or enterprise environments.

Highly desirable exposure to FedRAMP authorization activities, including NIST 800-53 control implementation, System Security Plan (SSP) development, evidence collection, POA&M management, or readiness assessments.

Working knowledge of several relevant technical areas, including cloud and security architecture, vulnerability and risk management, secure software development and DevSecOps, data protection and encryption, AI governance and emerging technologies, and dashboard development, reporting, analytics, or automation.

Strong ability to understand technical concepts, ask thoughtful questions, and translate complex technology topics into practical compliance and risk discussions.

Sound judgment and analytical thinking when evaluating controls, validating evidence, assessing risk, and balancing compliance requirements with business priorities.

Collaborative and relationship-oriented approach, with strong communication skills, ownership, process-improvement mindset, and the ability to thrive in a fast-paced startup environment.

Benefits

  • Opportunity to work in a hands-on Technical GRC role with broad exposure to security, engineering, compliance, AI governance, and emerging technologies.
  • Remote work opportunity based in Brazil.
  • Exposure to modern cloud and enterprise technology environments and cross-functional collaboration.
  • Opportunity to contribute to the development and scaling of an AI governance program aligned with ISO 42001.
  • Meaningful impact on technical risk visibility, compliance maturity, customer assurance, and operational efficiency.
  • Professional growth through involvement in compliance automation, analytics, technical assurance, and emerging technology initiatives.

This is an external listing. JobSpring does not represent or verify the employer. Report this listing