Red Canary Logo

Red Canary

Principal Governance Risk & Compliance Analyst

Sorry, this job was removed at 06:20 p.m. (MST) on Monday, Jan 13, 2025
Easy Apply
Remote
130K-150K Annually
Easy Apply
Remote
130K-150K Annually

Who We Are

Red Canary was founded to create a world where every organization can make its greatest impact without fear of cyber threats. We’re a cyber security company who protects, supports and empowers organizations to make better security decisions so they can focus on their mission without fear of cyber threats.


The combination of our market-defining technology and expertise prevents breaches every day and sets a new standard for partnership in the industry. We’re united in our commitment to customers and grounded in our values, which earned us a place on Built In's 2025 Best Places to Work list. If our mission resonates with you, let’s talk.


What We Believe In

- Do what’s right for the customer

- Be kind and authentic

- Deliver great quality

- Be relentless


Challenges You Will Solve

At Red Canary, the protection of our customers and employees is of the utmost importance. Red Canary’s Governance, Risk & Compliance (GRC) team provides oversight to ensure that our people, platforms, and data remain secure in compliance with our policies and applicable laws. 


As a Principal GRC Analyst, you will help ensure that our controls, policies, and procedures are designed, implemented, and tested to deliver the best possible outcomes for Red Canary and our customers. Reporting to the General Counsel, the Principal GRC Analyst is responsible for activities and improvements across the entire scope of Red Canary’s GRC programs.

What You'll Do

  • Lead governance, risk, and compliance initiatives.
  • Lead regular reviews to ensure that policies and controls are effective, while aligning them to company values and all applicable compliance requirements; identify potential improvements and manage their implementation.
  • Identify, design, and lead projects to automate the collection and presentation of auditing data for internal and external consumption.
  • Lead internal audits and risk assessments of the Red Canary environment; identify potential improvements and manage their implementation.
  • Schedule, prepare for, and lead annual external audits against SOC 2 Type II, ISO 27001, ISO 27701, and other standards.
  • Maintain security and compliance certifications; identify and manage new certification initiatives.
  • Lead the vendor risk management function for evaluating Red Canary’s vendors and partners to identify potential risks; identify potential improvements and manage their implementation.
  • Lead the response to questions and questionnaires from customers, potential customers, and partners regarding security and compliance; identify potential improvements and manage their implementation.
  • Support the sales team in vetting security and compliance terms in customer contracts.
  • Help oversee security awareness training that is both relevant and instructive.
  • Lead relevant and engaging business continuity and incident response exercises. 

What You'll Bring

  • 5+ years of experience with SOC 2 Type II and ISO 27001 audits. Experience with audits under ISO 27701, FedRAMP, and CMMC experience is a plus.
  • 5+ years of managing or performing security questionnaires and vendor assessments.
  • Experience addressing security and compliance terms in commercial contracts.
  • The ability to articulate and shift between various compliance and regulatory frameworks.
  • An understanding of the unique risks presented by cloud-native architecture and compliance and audit strategies for environments heavily reliant on SaaS.
  • Strong experience interacting with auditors and gaining their confidence as a source of truth.
  • Expertise in designing and managing strategies to identify, articulate, and mitigate risks.
  • Experience in designing and implementing automation to the collection and presentation of audit data.
  • Outstanding written and verbal communication skills.
  • A practical mindset that can balance compliance and business needs.
  • The ability to lead multiple projects simultaneously.
  • A patient and positive attitude.

The targeted base salary for this role is $130,000 - $150,000 per year. This role is eligible for a grant of stock options, subject to the approval of the company's board of directors. This role is also eligible for participation in the company's bonus program. The application deadline is March 21st, 2025.



Why Red Canary?

Red Canary is where people embody our mission to improve security outcomes for all. People work hard to maintain a culture that encourages authenticity in order to do your best work. Our people are driven and committed to finding the best security outcomes, delivering real and actionable answers, and being transparent along the way. 


At Red Canary, we offer a very rich benefits program to our full-time team members so they can focus on their families and improving our customers’ security. For a full list of benefits, please review our Benefits Summary:

https://resource.redcanary.com/rs/003-YRU-314/images/RedCanary_2025BenefitsSummary.pdf?version=0


Individuals seeking employment at Red Canary are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation.

HQ

Red Canary Denver, Colorado, USA Office

Our state-of-the-art HQ is located in the brand new McGregor Square centered in Denver's historic LoDo. From inception we have been hybrid workforce.

Similar Jobs at Red Canary

2 Days Ago
Easy Apply
Remote
USA
Easy Apply
126K-145K Annually
Junior
126K-145K Annually
Junior
Cloud • Security • Software • Cybersecurity
As a Rails engineer at Red Canary, you will build and enhance the platform for threat detection, ensuring code quality and performance while addressing customer feedback.
Top Skills: AWSDockerHamlJavaScriptPostgresRedisRspecRuby On RailsSidekiq
2 Days Ago
Easy Apply
Remote
USA
Easy Apply
150K-170K Annually
Senior level
150K-170K Annually
Senior level
Cloud • Security • Software • Cybersecurity
As a Senior Software Engineer, you'll develop and enhance high-quality SaaS products, collaborating with teams and addressing system issues in a fast-paced environment.
Top Skills: AWSDockerHamlPostgresReactRedisRspecRuby On RailsSidekiq
6 Days Ago
Easy Apply
Remote
USA
Easy Apply
Entry level
Entry level
Cloud • Security • Software • Cybersecurity
Red Canary is seeking enthusiastic candidates to join their revenue team. This is a pipeline role aimed at matching future applicants with potential openings in a rapidly growing cyber security company, with focus on excellent customer service and authentic workplace culture.

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account