San Francisco, CA, New York, NY, Portland, OR, or Remote within Canada or United States
In 2001, a prominent corporate fraud scandal led to the Sarbanes-Oxley Act (SOX) of 2002, which introduced strict regulations on financial reporting and internal controls. While SOX was primarily focused on corporate governance, it became a foundational moment for IT controls and complianceforcing companies to establish stronger audit trails, risk management processes, and accountability in IT systems.
2017, In one of the most infamous data breaches in history, the personal information of 147 million people was exposed due to an unpatched vulnerability. The breach wasnt just a technical failureit was a breakdown in governance and risk management. A known vulnerability had been disclosed, but it wasnt properly tracked or remediated, showing a lack of strong risk and compliance processes.
2021, a single compromised password led to a ransomware attack that shut down fuel supplies across the U.S. East Coast, causing widespread panic and economic impact. Investigations found poor governance over identity management and a lack of segmented networks, making it easier for attackers to escalate their access.
Each of these cases demonstrates why GRC is the backbone of security. GRC professionals dont just enforce rulesthey prevent breaches, protect data, and enable business continuity. Whether its through risk assessments, compliance frameworks, vendor oversight, or incident response planning, a strong GRC function ensures security isnt just a technical concern but an integrated business priority.
Risk management isnt just about IT or security its about business resilience. Strong governance over identity access, network segmentation, and incident response can prevent catastrophic failures.
Mercury is growing rapidly, and as we expand beyond, we must continue to build resilience and improve governance. We have a solid foundation but the expansion, renovation, and exploration that come next needs guardrails all along the way. We are looking for a GRC analyst to help build the battens and transoms that will lift up our business continuity and resilience.
As part of this role, you and your team will:
The ideal candidate for the role:
Your Day to Day:
In this role, you will be a tech-savvy professional who excels in communicating governance, risk, and compliance requirements for various technologies. Your immediate responsibilities will include conducting a gap analysis on various frameworks. You will create a comprehensive plan to address and close these gaps, engaging relevant stakeholders throughout the process.
Tools and Technologies:
* Mercury is a financial technology company, not a bank. Banking services provided through Choice Financial Group, Column N.A., and Evolve Bank & Trust; Members FDIC.
The total rewards package at Mercury includes base salary, equity (stock options), and benefits. Our salary and equity ranges are highly competitive within the SaaS and fintech industry and are updated regularly using the most reliable compensation survey data for our industry. New hire offers are made based on a candidates experience, expertise, geographic location, and internal pay equity relative to peers.
Our target new hire base salary ranges for this role are the following:
Mercury values diversity & belonging and is proud to be an Equal Employment Opportunity employer. All individuals seeking employment at Mercury are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, sexual orientation, or any other legally protected characteristic. We are committed to providing reasonable accommodations throughout the recruitment process for applicants with disabilities or special needs. If you need assistance, or an accommodation, please let your recruiter know once you are contacted about a role.
We use Covey as part of our hiring and / or promotional process for jobs in NYC and certain features may qualify it as an AEDT. As part of the evaluation process we provide Covey with job requirements and candidate submitted applications. We began usingCovey Scout for Inbound on January 22, 2024. Please see the independent bias audit report covering our use of Coveyhere .
#LI-AC1
*
indicates a required field
First Name *
Last Name *
Email *
Phone *
Resume/CV *
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
LinkedIn Profile
Website
Upload anything
Accepted file types: pdf, doc, docx, txt, rtf
Will you now or at any time in the future require visa sponsorship? * Select...
From where do you intend to work? *
Please list city and state/province ( San Francisco, California, Toronto, Ontario, etc.)
#J-18808-Ljbffr...built the leading digital-first custom dental appliance manufacturer. As we go through our next level of scale, Dandy is building a world class Machine Learning & Computer Vision team to enhance our 3D dental platform and automate many of the human-driven processes in...
...radius of Eau Claire, WI. The Outside Plant Construction Specialist is responsible for coordinating, planning, and supervising... ...required by this job include close vision, distance vision, color vision, peripheral vision, depth perception, and ability to adjust...
...Specialist? The Resolution Specialist position works with our clients to assist them in... ...9am - 3pm. Fridays are earned work-from-home days. New Employees Receive: ~ A MacBook... ...associated with technical issues. ~ A weekly pay schedule to ensure you have a reliable,...
Job Description We are committed to ensuring equal employment opportunities for all job applicants and employees. Employment decisions are based upon job-related reasons regardless of an applicant's race, color, religion, sex, sexual orientation, gender identity, age...
...focused on work/life balance, mental health, and the overall wellness of our employees Position Summary The Associate Tax Consultants will assist team members in performing Transaction Tax overpayment/audit reviews, tax research, and additional consulting...