Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security GRC Analyst image - Rise Careers
Job details

Security GRC Analyst

In 2012, Lambda started with a crew of AI engineers publishing research at top machine-learning conferences. We began as an AI company built by AI engineers. That hasn't changed. Today, we're on a mission to be the world's top AI computing platform. We equip engineers with the tools to deploy AI that is fast, secure, affordable, and built to scale. Whether they need powerhouse GPU hardware on-site or the flexibility of cloud-based solutions, we've got the horsepower to make it happen. Lambda’s AI Cloud has been adopted by the world’s leading companies and research institutions including Anyscale, Rakuten, The AI Institute, and multiple enterprises with over a trillion dollars of market capitalization. Our goal is to make computation as effortless and ubiquitous as electricity.


If you'd like to build the world's best deep learning cloud, join us. 


*Note: This position requires presence in our San Francisco office location 4 days per week; Lambda’s designated work from home day is currently Tuesday.

What You’ll Do 

  • Support company-wide security awareness training

  • Perform vendor security assessments in order to minimize risk from third-party services

  • Maintain and improve vendor security program while working closely with Security, Legal, IT and other internal stakeholders

  • Ensure vendor security issues are identified, communicated, and remediated to an acceptable level of risk

  • Conduct periodic reviews of the Vendor Security program to identify areas for improvement and automation and help ensure alignment with key business risks, regulatory requirements, and industry frameworks; revise program documentation as required and communicate program changes to key stakeholders to achieve buy-in

  • Drive accurate program metrics through timely updates and thorough documentation of each completed assessment and coaching team members on the same

  • Perform control design walkthroughs and operating effectiveness testing for products and business lines against security frameworks such as ISO 27001, SOC 2, PCI-DSS, and others

  • Work with control and process owners to understand key processes and controls. Support  these process owner in preparation for and execution of internal and external audits

  • Collaborate with key stakeholders to support, track, and report on remediation efforts

  • Communicate with technical and non-technical stakeholders on cybersecurity risk and control topics and program-specific reporting

You 

  • Experience supporting cybersecurity controls management programs with in-depth knowledge and experience of cybersecurity frameworks including ISO 27001, PCI-DSS, SOC 2, and other regulatory requirements

  • Experience collaborating closely with engineers, business teams, and security partners, including incident response, red teams, and architects to seamlessly incorporate cybersecurity controls and risk management processes into their day-to-day operations

  • Excellent verbal and written communication skills with the ability to document, communicate, and report security assessments as well as the status of the implementation, effectiveness, and remediation of cybersecurity controls with product and business leaders

  • Strong project management skills with the ability to lead and execute security assessment projects and initiatives on time with multiple stakeholders

Nice to Have

  • Minimum of 7 years in Information Technology (IT) or Information Security (IS) compliance and controls programs in a global organization with in-depth knowledge and experience of cybersecurity frameworks such as ISO 27001, PCI-DSS, SOC 2, and other regulatory requirements

  • Experience in performing controls monitoring testing and supporting complex audit projects in a cloud-centric environment with a strong aptitude to understand emerging technologies to assure regulatory and compliance requirements are met

  • CISM, CISA, CISSP, CCSP, CASP, Security+, CRISC, CGEIT, GSEC, QSA, or other relevant certifications

Salary Range Information 

Based on market data and other factors, the annual salary range for this position is $125,000 - $180,000. However, a salary higher or lower than this range may be appropriate for a candidate whose qualifications differ meaningfully from those listed in the job description.

About Lambda

  • Founded in 2012, ~350 employees (2024) and growing fast

  • We offer generous cash & equity compensation

  • Our investors include Andra Capital, SGW, Andrej Karpathy, ARK Invest, Fincadia Advisors, G Squared, In-Q-Tel (IQT), KHK & Partners, NVIDIA, Pegatron, Supermicro, Wistron, Wiwynn, US Innovative Technology, Gradient Ventures, Mercato Partners, SVB, 1517, Crescent Cove.

  • We are experiencing extremely high demand for our systems, with quarter over quarter, year over year profitability

  • Our research papers have been accepted into top machine learning and graphics conferences, including NeurIPS, ICCV, SIGGRAPH, and TOG

  • Health, dental, and vision coverage for you and your dependents

  • Commuter/Work from home stipends for select roles

  • 401k Plan with 2% company match (USA employees)

  • Flexible Paid Time Off Plan that we all actually use

A Final Note:

You do not need to match all of the listed expectations to apply for this position. We are committed to building a team with a variety of backgrounds, experiences, and skills.

Equal Opportunity Employer

Lambda is an Equal Opportunity employer. Applicants are considered without regard to race, color, religion, creed, national origin, age, sex, gender, marital status, sexual orientation and identity, genetic information, veteran status, citizenship, or any other factors prohibited by local, state, or federal law.

Lambda Glassdoor Company Review
3.4 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Lambda DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Lambda
Lambda CEO photo
Stephen Balaban
Approve of CEO

Average salary estimate

$152500 / YEARLY (est.)
min
max
$125000K
$180000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security GRC Analyst, Lambda

Join Lambda as a Security GRC Analyst and play a pivotal role in fortifying our commitment to security and compliance in AI computing! At Lambda, launched by AI engineers with a vision, we aim to provide robust AI solutions that are both secure and scalable, catering to world-class firms and institutions. Your mission will involve supporting company-wide security awareness training, conducting vendor security assessments, and enhancing our vendor security program by collaborating with various internal teams like Security, Legal, and IT. You'll also perform control design walkthroughs aligned with security frameworks such as ISO 27001 and PCI-DSS to ensure compliance and mitigate risks effectively. With your experience, you’ll help enhance the security culture in a way that resonates with both technical and non-technical audiences. You’ll thrive in this fast-paced role based in San Francisco, where you'll engage with dynamic teams and drive initiatives that protect our innovative AI solutions. If you're ready to elevate the security landscape within a growing AI powerhouse, Lambda is the place for you!

Frequently Asked Questions (FAQs) for Security GRC Analyst Role at Lambda
What are the responsibilities of a Security GRC Analyst at Lambda?

As a Security GRC Analyst at Lambda, your key responsibilities will include supporting the organization’s security awareness training initiatives, conducting thorough vendor security assessments, and enhancing vendor security programs. You will work closely with various teams, including Security, Legal, and IT, ensuring vendor security risks are well-identified and monitored. Additionally, you'll be performing control design walkthroughs and ensuring compliance with frameworks such as ISO 27001 and SOC 2.

Join Rise to see the full answer
What qualifications are required for the Security GRC Analyst position at Lambda?

To qualify for the Security GRC Analyst role at Lambda, you should possess substantial experience in cybersecurity controls management programs, demonstrating an in-depth understanding of regulations such as PCI-DSS and ISO 27001. A minimum of 7 years in Information Technology or Information Security compliance is required. Certifications such as CISM, CISA, or CISSP are highly valued and will enhance your candidacy.

Join Rise to see the full answer
How does the Security GRC Analyst role contribute to Lambda's mission?

The Security GRC Analyst plays a crucial role in Lambda’s mission by ensuring that security measures and compliance protocols are correctly integrated into the AI solutions offered. By minimizing risks associated with vendor security and enhancing the overall security framework, the analyst supports Lambda's objective to provide a seamless and secure AI computing experience to clients, ultimately fostering trust and reliability in our innovative services.

Join Rise to see the full answer
What are the common challenges faced by Security GRC Analysts at Lambda?

Security GRC Analysts at Lambda often face challenges related to balancing security compliance with agile business processes. As they work with multiple stakeholders, it can be tricky to ensure that security protocols are both effective and do not hamper operational efficiency. Additionally, keeping pace with evolving regulatory requirements and emerging technologies poses ongoing challenges that require continuous learning and adaptation.

Join Rise to see the full answer
What is the work environment like for a Security GRC Analyst at Lambda?

At Lambda, the work environment for a Security GRC Analyst is collaborative and dynamic. With a focus on innovation and technology, you will interact with diverse teams in a vibrant office in San Francisco. Expect a culture that values security, communication, and teamwork, where your contributions are integral to the company's commitment to excellence in AI computing products.

Join Rise to see the full answer
Common Interview Questions for Security GRC Analyst
Can you describe your experience with security frameworks like ISO 27001 and PCI-DSS?

When answering this question, focus on specific projects or experiences where you implemented or worked with these frameworks. Illustrate your understanding of their requirements and how your actions helped achieve compliance. Mention any instances of conducting audits or assessments related to these frameworks.

Join Rise to see the full answer
How do you ensure effective communication with technical and non-technical stakeholders?

Highlight the importance of tailoring your communication style based on the audience. Provide examples where you've successfully conveyed complex security concepts to non-technical teams. Discuss your use of visuals or simplified language to bridge understanding gaps between different teams.

Join Rise to see the full answer
What strategies do you use for vendor security assessments?

Discuss methodologies you employ for conducting vendor assessments, such as risk analysis frameworks, checklists, or specific tools. Emphasize your collaborative approach with stakeholders to ensure thorough evaluations and consistent updates on security postures.

Join Rise to see the full answer
How do you handle conflicts or disagreements regarding security policies?

In your response, describe your approach to conflict resolution. Emphasize the importance of listening to all perspectives, fostering open dialogue, and focusing on the organization's security objectives to reach a consensus. Include examples from past experiences.

Join Rise to see the full answer
Can you share an instance where you improved a security program or process?

Provide a clear, structured narrative of a specific improvement project. Explain the context, your role, the challenges faced, and the measurable outcomes from the enhancement. This showcases not just your technical skills but also your initiative in driving security improvements.

Join Rise to see the full answer
What tools have you used for managing cybersecurity controls?

Mention specific tools you’ve utilized in your previous roles, such as GRC platforms or compliance management software. Discuss how these tools helped streamline processes and what features you found particularly beneficial in managing cybersecurity control assessments.

Join Rise to see the full answer
Describe your experience with internal and external audits.

Illustrate your involvement in audit preparations and the execution of findings. Talk about your role in collaborating with auditors and any successful outcomes from these initiatives, highlighting your ability to maintain compliance and address findings promptly.

Join Rise to see the full answer
How do you stay current with cybersecurity regulations and trends?

Share your methods for staying informed, such as attending webinars, participating in professional organizations, or taking relevant courses. Emphasize the importance of continuous education in the ever-evolving field of cybersecurity to enhance your effectiveness.

Join Rise to see the full answer
What metrics do you consider important in assessing vendor security?

Discuss key performance indicators (KPIs) you prioritize, such as assessment frequency, remediation timelines, or threat detection rates. Explain how tracking these metrics can impact the overall security posture and vendor relationships positively.

Join Rise to see the full answer
What do you view as the biggest cybersecurity threats today?

Provide insights based on current trends and research, discussing threats like phishing, ransomware, or insider threats. It's beneficial to relate these threats to the industry Lambda operates in, showing your understanding of the specific challenges faced by AI and technology companies.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
Posted 4 days ago
Integres, LLC Remote Baltimore, Maryland, United States
Posted 13 days ago
Photo of the Rise User
BlackStone eIT Remote No location specified
Posted 12 days ago
Posted 10 days ago
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)
Photo of the Rise User
Posted 12 days ago

Lambda provides Artificial Intelligence and Machine Learning infrastructure to companies like Apple, Intel, Microsoft, MIT, Harvard, the Federal Government, and the DOD. Were headquartered in the Dogpatch and are a short walk from the 22nd Street ...

50 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 15, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Dublin just viewed Senior Third-Party Risk Analyst at Fenergo
Photo of the Rise User
Someone from OH, Columbus just viewed US Product Designer at Praxent
Photo of the Rise User
Someone from OH, Cleveland just viewed Accounting Co-Op (Part-Time) at Avery Dennison
Photo of the Rise User
Someone from OH, North Ridgeville just viewed Product Manager at ShiftCare
Photo of the Rise User
Someone from OH, North Ridgeville just viewed Product Operations at Binance
Photo of the Rise User
Someone from OH, Mentor just viewed Sales & Service Lead - Pinecrest at Alo Yoga