Description
Base is hiring a GRC Analyst to build and operate its security governance, risk, and compliance program across software, hardware, manufacturing, field operations, and energy infrastructure. The role covers SOC 2 and ISO 27001 compliance, security policies, vendor and third-party risk, risk registers, control mapping, audits, security assessments, and remediation coordination. Candidates should have at least three years of experience in security compliance, IT audit, or GRC, including ownership of a SOC 2 cycle, along with technical control knowledge, GRC platform experience, and cross-functional coordination skills.
