Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
GRC Policy Analyst image - Rise Careers
Job details

GRC Policy Analyst

SHEIN is a global online fashion retailer seeking a full-time GRC Policy Analyst I to implement and maintain policy frameworks. The ideal candidate has a strong understanding of compliance & risk management.

Skills

  • Policy writing
  • Risk management
  • Data privacy regulations
  • Collaboration
  • Communication

Responsibilities

  • Draft security and privacy policies
  • Develop supporting documentation
  • Maintain policy cross references to relevant industry standards
  • Manage policy exceptions
  • Establish relationships with stakeholders

Education

  • Bachelor’s degree in information security, writing, or related field

Benefits

  • Bonus and RSU eligible
  • Healthcare coverage
  • 401(k) with company match
  • Paid time off
  • Employee discounts
To read the complete job description, please click on the ‘Apply’ button

Average salary estimate

$120350 / YEARLY (est.)
min
max
$92000K
$148700K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About GRC Policy Analyst, SHEIN

At SHEIN, we're not just setting trends in fashion; we’re also pioneering the path to robust security and compliance in the e-commerce world. As a GRC Policy Analyst at our Los Angeles office, you'll play a key role in shaping our governance, risk, and compliance policies. We’re seeking someone enthusiastic about maintaining a comprehensive policy framework and lifecycle while collaborating with our dynamic team of experts. Your day-to-day will involve drafting security and privacy policies that reflect industry best practices and account for the evolving threat landscape. Your opinions will matter as you partner with legal and tech teams to ensure our compliance needs are met globally. If you have a passion for tech and a knack for writing detailed policies that shield SHEIN’s data assets, this might be the perfect fit for you! With over 15,000 dedicated employees worldwide, we value innovation and collaboration. In addition, you’ll enjoy a supportive workplace culture featuring flexible benefits, a dog-friendly atmosphere, and plenty of perks that reflect SHEIN's commitment to its workforce.

Frequently Asked Questions (FAQs) for GRC Policy Analyst Role at SHEIN
What are the key responsibilities of a GRC Policy Analyst at SHEIN?

As a GRC Policy Analyst at SHEIN, your main responsibilities will include drafting and implementing security and privacy policies in line with legal and regulatory requirements, developing supporting documentation to facilitate policy communication, and maintaining cross-references to industry standards. You’ll work closely with stakeholders to manage the entire policy lifecycle, ensuring our policies evolve with changing regulations and the threat landscape.

Join Rise to see the full answer
What qualifications are needed for the GRC Policy Analyst position at SHEIN?

To qualify for the GRC Policy Analyst role at SHEIN, you should ideally have a bachelor’s degree in information security or a related field, along with at least 5 years of technical policy writing experience. Familiarity with security certifications such as CISSP or CISM is desirable, and you should possess a strong understanding of data privacy laws and regulations including GDPR and CCPA.

Join Rise to see the full answer
What kind of experience is preferred for the GRC Policy Analyst role at SHEIN?

For the GRC Policy Analyst position at SHEIN, experience in developing and deploying policy management programs is preferred, especially in an e-commerce or technology-driven environment. International experience can be a significant advantage, alongside a solid understanding of security standards such as ISO 27000 and NIST guidelines.

Join Rise to see the full answer
How does SHEIN support the development of its GRC Policy Analysts?

SHEIN is committed to the professional growth of its employees. As a GRC Policy Analyst, you’ll have opportunities for continuous learning, access to security certifications, and the chance to engage with experienced professionals. Additionally, our collaborative work culture fosters an environment for sharing insights and best practices.

Join Rise to see the full answer
What benefits does SHEIN offer to its GRC Policy Analysts?

SHEIN offers an array of benefits designed to support the well-being of our GRC Policy Analysts, including healthcare coverage, a 401(k) plan with discretionary match, flexible spending accounts, wellness programs, and unique perks like free catered lunches, gym access, and employee discounts. We believe in creating a vibrant work-life balance for our team members.

Join Rise to see the full answer
Common Interview Questions for GRC Policy Analyst
Can you describe your experience with drafting security policies?

When answering this question, consider detailing specific instances where you developed security policies, the methodologies used, and how your policies helped mitigate risks. Highlight any challenges you faced and how you overcame them to build effective policies.

Join Rise to see the full answer
How do you stay current with changes in compliance regulations?

Discuss your strategies for keeping up-to-date with compliance regulations, such as following industry blogs, attending webinars, and participating in professional organizations. Mention any certifications you hold that require ongoing education.

Join Rise to see the full answer
What role should stakeholder engagement play in policy development?

Explain that stakeholder engagement is crucial for ensuring that policies are practical and meet the needs of various business units. Provide examples of how you have effectively communicated with stakeholders to gather input and promote buy-in for policy changes.

Join Rise to see the full answer
How do you handle policy exceptions?

Discuss your approach to managing policy exceptions, including how you assess the risk of each exception, the process for obtaining necessary approvals, and how you communicate the implications of these exceptions to relevant stakeholders.

Join Rise to see the full answer
Can you discuss a time you integrated policy, compliance, and risk frameworks?

Share a specific example where you successfully integrated disparate frameworks. Describe the process you followed, collaboration with other departments, and the outcomes achieved to emphasize your ability to create a cohesive compliance strategy.

Join Rise to see the full answer
What tools and technologies do you find essential for policy management?

Mention specific tools you have used for policy management, such as compliance tracking software or documentation tools. Share your reasoning for why these tools are beneficial and how they enhance the policy management lifecycle.

Join Rise to see the full answer
What challenges do you see in the e-commerce industry regarding compliance?

Explore the challenges such as evolving data privacy laws, international compliance discrepancies, and the need to adapt quickly to new technologies. Show your understanding of these issues and suggest ways to address them.

Join Rise to see the full answer
How do you ensure effective communication of policies across teams?

Describe your strategies for effective policy communication, which may include creating clear documentation, holding training sessions, utilizing internal communication platforms, and soliciting feedback to ensure understanding and compliance.

Join Rise to see the full answer
What measures do you take to assess the effectiveness of implemented policies?

Discuss the metrics or assessments you employ to evaluate policy effectiveness, such as audits, compliance checks, or feedback from stakeholders. Provide examples showcasing how you have made adjustments based on these evaluations.

Join Rise to see the full answer
How would you approach a situation where a new regulation conflicts with existing policies?

Outline your steps for resolving conflicts between new regulations and existing policies, focusing on conducting thorough research, consulting with legal and compliance experts, and revising policies accordingly while maintaining transparency with teams.

Join Rise to see the full answer
Similar Jobs
Posted 7 days ago
SHEIN Hybrid Los Angeles
Posted 7 days ago
Withings Hybrid No location specified
Posted 6 days ago
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
ServiceNow Remote 60 Dawson Street, Dublin, Ireland
Posted 6 days ago
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
SALARY RANGE
$92,000/yr - $148,700/yr
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 19, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
T
Someone from OH, Dublin just viewed Brand Marketing Intern-Summer 2025 at Trove Brands
Photo of the Rise User
Someone from OH, Mentor just viewed Supply Planning Analyst at Avery Dennison
Photo of the Rise User
Someone from OH, Columbus just viewed Medical Expert, Fertility and Pregnancy at Carrot Fertility
Photo of the Rise User
Someone from OH, Kent just viewed Finance Year-round Intern at Sherwin-Williams
Photo of the Rise User
Someone from OH, Cincinnati just viewed Product Owner, AI at Modernizing Medicine, Inc.
Photo of the Rise User
Someone from OH, Strongsville just viewed Used Car Buyer - Concord Toyota at Sonic Automotive
Photo of the Rise User
Someone from OH, Canton just viewed UI Designer - Website & Brand at Atlan
Photo of the Rise User
Someone from OH, Dayton just viewed Data Engineer - User Platform at Spotify
Photo of the Rise User
Someone from OH, Dayton just viewed Data Engineer - #1696 at MeridianLink
Photo of the Rise User
Someone from OH, Columbus just viewed Enterprise Sales Project Associate at Array
Photo of the Rise User
Someone from OH, Akron just viewed Medical Receptionist at LifeStance Health
Photo of the Rise User
Someone from OH, Thornville just viewed Finance Rotation Analyst at Huntington National Bank
Photo of the Rise User
Someone from OH, Columbus just viewed Cashier - Sawmill Road Market District at Giant Eagle
Photo of the Rise User
Someone from OH, Cincinnati just viewed Data Scientist at Apex Systems
Photo of the Rise User
Someone from OH, Mansfield just viewed POS Install Tech at TEKsystems
Photo of the Rise User
Someone from OH, Dublin just viewed Sr. Manager UX Design Research at Visa
Photo of the Rise User
Someone from OH, Columbus just viewed Case Manager at Release Recovery
Photo of the Rise User
13 people applied to Immigration Paralegal | US at Deel
Photo of the Rise User
Someone from OH, Cincinnati just viewed Recruiting Coordinator (Contractor) at Anduril Industries
Photo of the Rise User
Someone from OH, Dublin just viewed Field Support Technicians - (Phoenix) at Nordstrom