Paxos logo

GRC Analyst

Paxos

IndiaRemoteJobNo compensation foundPosted 3w agoChecked 1w ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
IndiaRemote
Work Authorization
Not specified

Job overview

Paxos is hiring a GRC Analyst. The GRC Analyst at Paxos supports the development, implementation, and maintenance of governance, risk management, and compliance programs, assessing security risks, monitoring compliance, coordinating audits, and ensuring appropriate controls protect business information and technology assets.

Key focus areas include Work with cross‑functional teams to identify risks and track remediation activities., Assess security risks and perform control assessments., and Monitor compliance with internal policies and external regulations..

Important skills include ISO 27001, NIST CSF, SOC 2, PCI DSS, GDPR, and Security Risk Assessments.

Skills & qualifications

RequiredNice to have

Skills

ISO 27001NIST CSFSOC 2PCI DSSGDPRSecurity Risk AssessmentsControl AssessmentsCompliance ReviewsPrivacy ReviewsAudit SupportSecurity Policy DevelopmentRisk Register ManagementControl Matrix ManagementThird‑Party Vendor Security Risk AssessmentsCross‑Functional Collaboration

Qualifications

Governance, Risk, and Compliance (GRC) ExperienceInformation Security ExperienceIT Risk Management ExperienceCybersecurity Compliance ExperienceSecurity Risk Assessment ExperienceControl Assessment ExperienceCompliance and Privacy Review ExperienceInternal and External Audit Support ExperienceSecurity Policy Development ExperienceRisk Register Management ExperienceControl Matrix Management ExperienceThird‑Party Vendor Security Risk Assessment Experience

Full job description

Applying to Paxos? Our only careers site is paxos.com/careers , and we only recruit via @ paxos.com email. Details below.


About Paxos

Today’s financial infrastructure is archaic, expensive, inefficient and risky — supporting a system that leaves out more people than it lets in. So we’re rebuilding it.

We’re on a mission to open the world’s financial system to everyone by enabling the instant movement of any asset, any time, in a trustworthy way. For over a decade, we’ve built blockchain infrastructure that tokenizes, custodies, trades and settles assets for the world’s leading financial institutions, like Mastercard, Visa, Robinhood, and PayPal.

About the team

The Governance, Risk & Compliance (GRC) Team is responsible for establishing and maintaining a strong framework to manage organizational governance, cybersecurity risks, regulatory requirements, and compliance obligations. The team works closely with business units, technology teams, and stakeholders to identify risks, implement controls, monitor compliance, and support continuous improvement of security and operational processes.

About the role

The GRC Analyst supports the development, implementation, and maintenance of governance, risk management, and compliance programs within the organization. The role involves assessing security risks, monitoring compliance with internal policies and external regulations, coordinating audits, and ensuring that appropriate controls are in place to protect business information and technology assets.

What you’ll do

The GRC Analyst works with cross-functional teams, including Information Security, IT, Legal, Privacy, Internal Audit, and Business Operations, to identify risks, track remediation activities, and improve the organization’s overall risk and compliance posture.

About you

Your experience should include:

  • Experience in Governance, Risk, and Compliance (GRC), information security, IT risk management, or cybersecurity compliance roles.

  • Hands-on experience performing security risk assessments, control assessments, compliance and Privacy reviews.

  • Experience working with security frameworks and standards such as ISO 27001, NIST CSF, SOC 2, PCI DSS, GDPR, or similar regulatory requirements.

  • Experience supporting internal and external audits, including evidence collection, control validation, and remediation tracking.

  • Experience developing, reviewing, and maintaining security policies, standards, procedures, and compliance documentation.

  • Experience managing risk registers, control matrices, audit findings, and corrective action plans.

  • Experience conducting third-party/vendor security risk assessments and reviewing supplier compliance documentation.

Important Notice for Paxos Applicants Fraudulent accounts sometimes pose as Paxos recruiters on LinkedIn and other platforms, and fake websites sometimes impersonate our careers site. These scammers attempt to deceive applicants into paying for job opportunities or providing personal financial information.

To verify a legitimate Paxos opportunity:

  • Our only official careers site is paxos.com/careers

  • We only use @ paxos.com email addresses

  • We never ask for payment or financial details to apply, interview, or work here

  • For technical roles, we do not perform a coding interview without prior screening by our engineering team

Thanks for your interest in Paxos!

You've read the whole posting — now see how you match it.