GRC SECURITY ANALYST

Clear Capital | CubiCasaReno, NV
$114,000 - $139,000

About The Position

As a GRC Security Analyst, you will serve as a fully qualified, experienced professional responsible for ensuring Clear Capital adheres to all relevant security standards, regulations, and policies within the highly regulated mortgage lending and appraisal industry. You will play a critical role in maintaining our Governance, Risk, and Compliance (GRC) posture. Working independently with review at critical points, you will assess unusual circumstances, identify root causes using sophisticated analytical techniques, and devise creative solutions to complex compliance issues. You will help to coordinate internal and external security audits, define audit scopes, act as an organizational representative for information security compliance, and effectively adapt your communication style to influence and advise internal and external partners.

Requirements

  • A minimum of 5 years of related experience in GRC, security compliance, or risk management roles with a Bachelor’s degree; or 3 years and a Master’s degree; or equivalent work experience.
  • Complete knowledge and full understanding of relevant security frameworks and standards (e.g., NIST CSF, SOC 2, ISO 27001, ISO 42001) and data privacy regulations (GLBA, GDPR, CCPA).
  • Relevant industry certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), Artificial Intelligence Governance Professional (AIGP), or equivalent.
  • Sophisticated analytical and problem-solving skills, with the ability to assess diverse, unusual, and complex security issues and develop effective solutions independently.
  • Strong communication and interpersonal skills, with a proven ability to persuade differing audiences and advise senior stakeholders on difficult compliance matters.
  • Familiarity with GRC technologies (i.e., Vanta, Drata, OneTrust, etc.), risk assessment tools, and practices specific to maintaining data integrity and confidentiality in the financial services or appraisal management industry.
  • Detail-oriented focus on accuracy and thoroughness in documentation, reporting, and policy formulation.
  • Commitment to maintaining the highest standards of confidentiality, integrity, and professionalism.
  • Capacity to understand legacy and progressive technology and security controls along with respective risks. Working knowledge of technologies such as cloud computing, DevOps, and application security is required.
  • Advanced proficiency in utilizing spreadsheets for comprehensive data analysis, audit metric tracking, and complex compliance reporting.

Responsibilities

  • Monitoring and enforcing compliance with critical security frameworks (such as NIST CSF, NIST RMF, ISO 27001/27002, SOC 2, ISO 42001) and industry-specific regulations (such as GLBA, CCPA, GDPR) pertinent to the financial services and real estate valuation sectors.
  • Conducting comprehensive risk assessments of diverse scope to identify security vulnerabilities, evaluating the effectiveness of existing controls, and resolving a wide range of issues using judgment and interpretation.
  • Developing, maintaining, and adapting security policies, procedures, and guidelines in alignment with industry best practices, client contractual requirements, and mortgage lending regulatory standards.
  • Leading preparation and participation for internal and external security audits, adapting existing approaches to resolve audit findings based on limited information and precedent.
  • Enhancing relationships with cross-functional teams to develop and implement remediation plans for identified security gaps and weaknesses.
  • Evaluating the security posture of third-party vendors and assessing their compliance with contractual security requirements to protect sensitive financial and property data.
  • Maintaining accurate records of compliance activities, findings, and remediation efforts, creating comprehensive reports for management, clients, and regulatory authorities as needed.
  • Defining qualitative and quantitative metrics to assess the success of the security program and provide regular reports to security and business leadership.
  • Staying abreast of emerging security threats, technologies, and regulatory changes in the financial and real estate tech space.
  • Other relevant duties as assigned.

Benefits

  • Company profit-sharing bonus program
  • Communication stipends
  • Referral bonuses
  • Comprehensive medical, dental, and company paid vision insurance
  • 401(k) retirement plan with employer match
  • Voluntary life and AD&D insurance options
  • Voluntary supplemental insurances for accident, critical illness, and legal services
  • Paid time off (PTO) and paid holidays
  • Employee assistance and wellness programs
  • Company paid short term disability coverage
  • Company contributions to health saving funds (with participation in the high deductible health plan)
  • Company paid access to Galileo for virtual primary care
  • Company paid access to Rula for virtual mental health resources
  • Anniversary Program
  • Career and skill development resources
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service