Benepass is seeking a Senior GRC Analyst to help operate and mature governance, risk, compliance, audit readiness, and customer assurance programs. The role will work across security policies, internal controls, audit evidence, risk tracking, security questionnaires, and compliance operations.
Requirements
- 5+ years of experience in GRC, information security compliance, IT audit, risk management, security assurance, or a closely related field
- Hands-on experience supporting SOC 2 audits and readiness activities
- Working knowledge of ISO 27001/27002, HITRUST, NIST CSF, or similar security and compliance frameworks
- Experience maintaining security policies, controls, control narratives, evidence repositories, and audit documentation
- Excellent written communication skills, with the ability to produce clear policies, questionnaire responses, process documentation, and stakeholder updates
- Experience responding to customer security questionnaires, RFP security sections, or due diligence requests
- Familiarity with GRC, compliance automation, or audit management tools
- Experience in SaaS, fintech, benefits, healthcare, or other regulated environments
Benefits
- 95% coverage of medical, dental, and vision
- $250 WFH setup (one time)
- $500/year Learning & Development Benefit
- $150/month cell phone + internet
- $100/month Wellness
- $100/month Co-working and Commuter Benefit