Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
GRC  Analyst image - Rise Careers
Job details

GRC Analyst

Mercury is looking for a GRC Analyst to build resilience and improve governance within the organization amidst their rapid growth.

Skills

  • Familiarity with security frameworks like NIST and PCI-DSS
  • Strong analytical skills
  • Understanding of cloud services

Responsibilities

  • Collaborate with engineering to enhance security posture
  • Apply GRC principles to engineering initiatives
  • Implement and maintain security frameworks
  • Automate security controls to minimize risks

Education

  • Degree in IT, Cybersecurity, or related field

Benefits

  • Base salary
  • Equity (stock options)
  • Competitive benefits package
To read the complete job description, please click on the ‘Apply’ button
Mercury Glassdoor Company Review
4.3 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Mercury DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Mercury
Mercury CEO photo
Unknown name
Approve of CEO

Average salary estimate

$169850 / YEARLY (est.)
min
max
$151000K
$188700K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About GRC Analyst, Mercury

At Mercury, we're on the lookout for a proactive GRC Analyst to join our innovative teams in San Francisco, New York, Portland, or even as a remote member of our talented family in Canada or the United States. In this essential role, you'll be at the forefront of shaping our organization's security posture, applying your extensive knowledge of Governance, Risk, and Compliance (GRC) principles to various engineering initiatives. As you collaborate with our engineering team, you will enhance the reliability and security of our business operations. Your responsibilities will range from implementing and monitoring security frameworks aligned with industry regulations like NIST and PCI to conducting gap analyses and developing strategic plans to address identified vulnerabilities. Strong analytical and problem-solving skills will be essential as you maneuver through high-stress situations while maintaining composure. Our ideal candidate will not only possess familiarity with various security frameworks and practices but also exhibit a solid understanding of cloud services, as Mercury is a fully cloud-native financial technology company. Expect to leverage a range of tools such as AWS Config, GitHub, and specialized GRC tools to automate security controls and bolster our overall resilience. Join us in this exciting journey of growth and expansion, and help us build robust guardrails that ensure our business continuity and resilience in an ever-evolving digital landscape.

Frequently Asked Questions (FAQs) for GRC Analyst Role at Mercury
What are the primary responsibilities of a GRC Analyst at Mercury?

A GRC Analyst at Mercury is responsible for collaborating with the engineering team to enhance the organization's security posture. This includes applying GRC principles to engineering initiatives, implementing and monitoring security frameworks, and conducting gap analyses to ensure compliance with regulatory standards.

Join Rise to see the full answer
What qualifications do I need to become a GRC Analyst with Mercury?

Candidates for the GRC Analyst position at Mercury should possess strong problem-solving and analytical skills, familiarity with security frameworks such as NIST and PCI-DSS, and a fundamental understanding of security practices. Additionally, having knowledge of cloud services is essential, as Mercury operates using a cloud-native approach.

Join Rise to see the full answer
How does Mercury support professional development for GRC Analysts?

Mercury offers competitive compensation packages alongside opportunities for growth and skill enhancement. GRC Analysts can expect to engage in ongoing training and exposure to cutting-edge frameworks and tools, fostering their professional development within the evolving compliance landscape.

Join Rise to see the full answer
Can a GRC Analyst at Mercury work remotely?

Yes! Mercury offers remote work options for the GRC Analyst role, making it accessible for candidates based in Canada or the United States. We value diverse talent and are committed to creating an inclusive work environment.

Join Rise to see the full answer
What tools will I be using as a GRC Analyst at Mercury?

As a GRC Analyst at Mercury, you will utilize a variety of tools including AWS Config, GitHub, Vanta, and GRC-specific tools to automate security controls and enhance the organization's overall security resilience.

Join Rise to see the full answer
Common Interview Questions for GRC Analyst
What is your understanding of GRC principles?

In addressing your understanding of GRC principles, you should highlight the integration of governance, risk management, and compliance in enabling organizations to enhance their security posture. Discuss how these principles guide decision-making and operational integrity in business.

Join Rise to see the full answer
Can you provide an example of a risk assessment you've conducted?

Share a specific instance that illustrates your approach to risk assessments, detailing the methods used to identify vulnerabilities, assess risk levels, and formulate effective mitigation strategies while emphasizing collaboration with stakeholders.

Join Rise to see the full answer
How do you stay current with industry regulations and compliance frameworks?

Emphasize your commitment to continuous learning, whether through formal education, certifications, or active participation in webinars and networking with industry professionals. Mention specific resources or organizations that you utilize to keep abreast of changes.

Join Rise to see the full answer
Describe a time when you encountered a compliance challenge.

Articulate a challenging scenario in which you had to navigate compliance hurdles, highlighting your problem-solving approach and the outcome achieved through your analytical reasoning and collaborative efforts with your team.

Join Rise to see the full answer
What strategies would you implement to improve our organization's security posture?

Discuss potential strategies tailored to Mercury's needs, such as conducting thorough gap analyses, implementing automation tools for compliance checks, and regularly engaging with stakeholders to foster awareness and responsibility regarding GRC.

Join Rise to see the full answer
How do you prioritize tasks during high-pressure situations?

Articulate your ability to maintain composure during stressful times, detailing techniques you use to prioritize tasks, such as evaluating their urgency and impact on compliance, and how you communicate effectively with your team to ensure clarity.

Join Rise to see the full answer
What role do you think technology plays in GRC?

Highlight the increasingly crucial role technology plays in automating risk assessments, compliance monitoring, and incident response. Discuss specific tools and technologies you favor and how they contribute to effective GRC management.

Join Rise to see the full answer
What experience do you have with cloud security frameworks?

Detail your familiarity with cloud security frameworks, emphasizing any hands-on experience you’ve had deploying or assessing compliance with these frameworks. Discuss how this aligns with the cloud-native operations at Mercury.

Join Rise to see the full answer
How would you communicate GRC policies to non-technical staff?

Illustrate your communication strategy, focusing on simplifying complex GRC concepts into digestible information, utilizing visual aids, and emphasizing the importance of compliance in protecting business interests through workshops or training sessions.

Join Rise to see the full answer
What do you find most challenging about GRC roles?

Open up about the complexities of navigating the ever-evolving landscape of compliance and risk management, while turning challenges into opportunities for proactive improvement and advocacy for GRC's pivotal role in organizational governance.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Mercury Remote San Francisco, CA, New York, NY, Portland, OR, or Remote within Canada or United States
Posted 14 days ago
Dare to be Different
Diversity of Opinions
Inclusive & Diverse
Empathetic
Take Risks
Posted 7 days ago
Globality, Inc. Hybrid Bozeman, Montana, United States
Posted 8 days ago
Photo of the Rise User
Optum Hybrid US, Sumter County, SC; South Carolina, Sumter, SC
Posted 7 days ago
Photo of the Rise User
Experian Remote Centro Corporativo el Cafetal, Heredia, Heredia, Costa Rica
Posted 5 days ago
Photo of the Rise User
City of Philadelphia Hybrid 1234 Market St, Philadelphia, PA 19107, USA
Posted 7 days ago
Photo of the Rise User
Inclusive & Diverse
Dare to be Different
Customer-Centric
Collaboration over Competition
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Maternity Leave
Paternity Leave
Flex-Friendly
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off
Paid Volunteer Time
Flexible Spending Account (FSA)
Health Savings Account (HSA)
Medical Insurance
Family Coverage (Insurance)
Brightspeed Remote 1120 S Tryon St, Charlotte, NC
Posted 4 days ago

Banking built for startups.

57 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Family FriendlyBadge Future UnicornBadge Work&Life BalanceBadge Rapid Growth
CULTURE VALUES
Dare to be Different
Diversity of Opinions
Inclusive & Diverse
Empathetic
Take Risks
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
SALARY RANGE
$151,000/yr - $188,700/yr
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
March 29, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Cincinnati just viewed Material Specialist - CVG at Allegiant
Photo of the Rise User
Someone from OH, Columbus just viewed Finance Rotation Analyst at Huntington National Bank
Photo of the Rise User
Someone from OH, Milford just viewed Content Marketing Analyst at Eurofins
Photo of the Rise User
Someone from OH, Toledo just viewed Brand Marketing Coordinator at A24
Photo of the Rise User
Someone from OH, Strongsville just viewed Used Car Buyer - Concord Toyota at Sonic Automotive
Photo of the Rise User
Someone from OH, Canton just viewed UI Designer - Website & Brand at Atlan
Photo of the Rise User
Someone from OH, Cleveland just viewed Casting: '2' at Backstage
Photo of the Rise User
Someone from OH, Cleveland just viewed Senior Client Executive - Remote at Experian
Photo of the Rise User
8 people applied to Intern/Co-op-4 at GE
Photo of the Rise User
Someone from OH, Youngstown just viewed Sales and purchase internship at B&S Group
Photo of the Rise User
Someone from OH, Dayton just viewed Data Entry Specialist, Remote at ABC Legal Services
Photo of the Rise User
Someone from OH, Columbus just viewed Internship - DEI & Social Impact at Mendix
Photo of the Rise User
Someone from OH, Akron just viewed Grad Intern - No Work Experience at Walmart
Photo of the Rise User
Someone from OH, Columbus just viewed Race & Sportsbook Office Manager at Westgate Resorts
Photo of the Rise User
Someone from OH, Columbus just viewed Technical Support Specialist at Samsara
Photo of the Rise User
Someone from OH, Canton just viewed Full Stack Web Developer at Abnormal Security
Photo of the Rise User
Someone from OH, Canton just viewed Frontend Engineer, UX at Chainlink Labs
R
Someone from OH, Toledo just viewed Global Marketing Intern at Reebok International, Ltd
Photo of the Rise User
Someone from OH, Cincinnati just viewed Immigration - E2 Visa at Upwork