Hebbia AI Logo

Hebbia AI

Senior GRC Analyst

Job Posted 9 Days Ago Posted 9 Days Ago
Easy Apply
New York City, NY
Mid level
Easy Apply
New York City, NY
Mid level
The Senior GRC Analyst will lead and manage the compliance program, ensuring certification and adherence to security regulations while developing policies and guidelines. This role involves updating leadership on compliance status and maintaining trust in customer security.
The summary above was generated by AI

About Hebbia

The user interface for universal knowledge capture. We want every atom of information that our users need to be at their fingertips.

Designed to be generally capable– it can tackle even the most complex tasks, citing answers over any amount of sources.   By showing its work, Hebbia empowers users to collaborate with AI on each step and validate responses instead of blindly trusting them.  Our mission is to put capable AI in the hands of 1 billion people by 2030.

Job Description

Our business can’t function if customers don’t trust us with their data. As a skilled Security Governance, Risk & Compliance (GRC) Analyst, you will play a pivotal role in shaping the security landscape of Hebbia. Reporting directly to the Head of Security, you will contribute to the maturation of our security program by helping shift how we approach GRC. You will be crucial to the company’s SOC2 and GDPR compliance programs, as well as our client diligence obligations, ensuring we maintain clean certifications and meet our regulatory obligations not just through paperwork but by bringing an engineering mindset to bear.

This role is based out of our New York City office in Soho. 

Responsibilities

  • Lead and manage the entire compliance program, including existing frameworks and new ones, ensuring the company remains certified and in good standing regarding CCPA, SOC 2, GDPR, etc.
  • As a founding member on the security team, support the overall security program at Hebbia, including external vendor partners like penetration testing teams, adopting and architecting new security controls, etc
  • Help identify and lead future compliance initiatives such as ISO 27001
  • Develop and own security policies and guidelines in accordance with appropriate industry standards.
  • Ensure excellent customer outcomes in the security due diligence realm, including evolving into a SME on supportive process improvement initiatives
  • Provide regular updates and clear communication to leadership on the status of security initiatives, compliance, and ongoing risk management efforts.
  • Develop and maintain public-facing trust pages to demonstrate security and compliance commitment

Who You Are

  • Bachelor's degree in Information Security, Computer Science, or a related field, or equivalent practical experience.
  • 3+ years of experience in information security
  • track record of developing, implementing, and managing security programs and policies.
  • Strong understanding of regulatory frameworks such as SOC2, GDPR, ISO27001, and other relevant compliance programs, with hands-on experience in maintaining these certifications
  • Prior experience with common risk and control frameworks such as NIST CSF, 800-53, and CIS
  • Solid grasp of security best practices in corporate environments; demonstrate knowledge/proficiency in one or more fundamental security domains (e.g, infrastructure, application security, etc.)
  • Expert with GRC tools and technologies, including compliance management partners like Vanta
  • Strong communication skills, with a talent for translating complex risk concepts into actionable decisions
  • A proactive, problem-solving mindset with a passion for staying ahead of the latest security trends and technologies.


Compensation

The salary range for this position is set between $150,000 and $180,000. However, adjustments outside of this range may be considered for candidates whose qualifications significantly differ from those outlined in the job description. 

Life @ Hebbia

PTO: Unlimited

Insurance: Medical + Dental + Vision + 401K + Wellness Benefits

Eats: Catered lunch daily + doordash dinner credit 

Parental leave policy: 3 months non-birthing parent, 4 months for birthing parent

Fertility benefits: $15k lifetime benefit

New hire equity grant: competitive equity package with unmatched upside potential

Top Skills

Compliance Management Partners Like Vanta
Grc Tools

Similar Jobs at Hebbia AI

Yesterday
Easy Apply
New York City, NY, USA
Easy Apply
Senior level
Senior level
Artificial Intelligence • Legal Tech • Machine Learning • Natural Language Processing • Software • Financial Services • Generative AI
The Revenue Operations Manager will oversee various revenue operations functions, partner with teams to optimize processes, and ensure growth goals are met.
Top Skills: ApolloChili PiperChorusGongHubspotLinkedin Sales NavigatorOutreachSalesforceSalesloftZoominfo
7 Days Ago
Easy Apply
New York City, NY, USA
Easy Apply
Mid level
Mid level
Artificial Intelligence • Legal Tech • Machine Learning • Natural Language Processing • Software • Financial Services • Generative AI
The role involves executing product vision, collaborating with teams on product lifecycle, implementing technical strategies, and gathering user feedback to inform development.
Top Skills: AIFigmaLlms
7 Days Ago
Easy Apply
New York City, NY, USA
Easy Apply
Senior level
Senior level
Artificial Intelligence • Legal Tech • Machine Learning • Natural Language Processing • Software • Financial Services • Generative AI
As a Staff Applied AI Engineer, you will develop and integrate NLP systems, conduct experiments, and enhance product capabilities using LLMs while collaborating with cross-functional teams.
Top Skills: Apache TikaNlpNltkPythonSpacy

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account