Senior GRC Associate

Strata Decision Technology•Chicago, IL
•$94,000 - $115,000•Hybrid

About The Position

The Senior Compliance Associate will work within Strata’s Information Technology group and support the organization’s governance, risk, and compliance program. This role will focus on strengthening compliance operations, managing Strata’s compliance technology, supporting SOC 2 activities, and advancing Strata’s Third-Party Risk Management program. The position works collaboratively to ensure Strata complies with industry regulations, client requirements, and best practices. This is an opportunity to help shape how GRC operates at Strata. You’ll have meaningful ownership of our compliance technology, with the opportunity to automate manual processes, mature established SOC and Third-Party Risk programs, and build scalable GRC practices as our compliance needs continue to evolve. This role requires in-office presence at Strata’s Chicago office two days per week. Candidates should be comfortable working within this hybrid model.

Requirements

  • 4+ years of relevant experience in GRC, IT audit, compliance, or a related discipline
  • Bachelor’s degree in a related field preferred, or equivalent relevant experience
  • Hands-on experience administering or optimizing a GRC/compliance platform and using automation to improve evidence collection, control monitoring, workflows, or audit readiness
  • Experience supporting or managing SOC 2 programs and controls
  • Experience with Third-Party Risk Management and vendor security assessments
  • Strong understanding of IT controls, compliance frameworks, and audit processes
  • Excellent communication skills, including the ability to communicate technical concepts to non-technical audiences
  • Strong technical writing and documentation skills
  • Self-motivated, proactive, highly organized, and able to manage multiple priorities
  • Ability to collaborate effectively with stakeholders at all levels of the organization

Nice To Haves

  • Experience administering and optimizing GRC/compliance platforms
  • CISA, CRISC, or other relevant GRC, information security, or compliance certifications

Responsibilities

  • Manage and optimize Strata’s compliance platform, including platform administration, configuration, integrations, and ongoing improvements, while identifying and implementing opportunities to automate evidence collection, control monitoring, workflows, and other repeatable compliance activities
  • Own and coordinate SOC 2 Type II activities, including audit readiness, evidence management, control testing, and remediation
  • Own, mature, and expand Third-Party Risk Management and security due diligence processes
  • Support customer security questionnaire (DDQ) responses and internal compliance requests by providing GRC expertise, evidence, and documentation as needed
  • Support broader GRC initiatives and emerging compliance requirements as the program evolves

Benefits

  • retirement benefits
  • health and welfare benefits
  • paid time off
  • parental leave
  • life and accident insurance
  • other voluntary and well-being benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service