
Policy Analyst
San Francisco, CAJobSeen 1 day agoSeen in employer's feed 1 day ago
Most applications go out cold — see where you stand first. No sign-up to start.
Watch jobs like this. New roles like this one near San Francisco, CA, by email.
Don't just apply. Show up ready.
Olive works from this exact posting.
At a glance
Olive lists jobs from US employers, including remote roles you can work from the United States.
Job overview
The Security Governance team modernizes security policies, standards, requirements, and controls. This role supports a large‑scale governance modernization initiative, assessing, rewriting, and enhancing security governance content while aligning with the Common Controls Framework and major industry security frameworks.
Skills & qualifications
Skills
Qualifications
Full job description
Job Description
The Security Governance team is responsible for maintaining and modernizing security policies, standards, requirements, and controls framework. This role will support a large-scale governance modernization initiative focused on assessing, rewriting, and enhancing security governance content while ensuring alignment across the Common Controls Framework (CCF) and major industry security frameworks.
Skills and Requirements
Must-Haves
-
5+ years of Security GRC, Information Security, or Security Governance experience
-
Security policy, standards, and controls development
-
NIST 800-53 expertise
-
Security controls mapping and framework harmonization
-
Gap analysis and remediation planning
-
Experience with multiple frameworks:
-
ISO 27001
-
FedRAMP
-
PCI DSS
-
SOC 2
-
NIST CSF
-
CIS Controls
-
Policy, standards, or controls modernization experience
-
Technical writing and governance documentation
-
Common Controls Framework (CCF) experience
-
GRC platform experience (Archer, ServiceNow GRC, OneTrust, LogicGate, Salesforce eGRC, etc.)
-
Cross-functional stakeholder management (Security, Compliance, Risk, Engineering, Legal) Preferred Qualifications
-
CISSP, CGRC, CISA, CISM, or CRISC
-
SaaS, Cloud, or Enterprise Technology experience
-
FedRAMP or Public Sector compliance experience
-
Audit readiness and external assessment support
-
AI Governance or Responsible AI experience Salesforce platform familiarity
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to [email protected].
Similar jobs, posted recently
Open roles like this one, listed in the last 30 days.
Sr. GRC Analyst, Policy OperationsSalesforce · Seattle, WA · $117–177K/yrPosted 4 days agoPosted 4 days ago
Policy Research, Strategic AdvisoryAnthropic · San Francisco, CA (Hybrid) · $230–265K/yrPosted 1w agoPosted 1w ago
InterdisciplinaryU.S. Army Corps of Engineers · San Francisco, CA · $126–164K/yrPosted 2w agoPosted 2w ago
IMMIGRATION OFFICERCitizenship and Immigration Services · Salt Lake City, UT · $102–187K/yrPosted 1 day agoPosted 1 day ago
Program AnalystTransportation Security Administration · San Francisco, CA · $112–145K/yrPosted 5 days agoPosted 5 days ago
You've read the whole posting — now see how you match it.