Oura

Senior Governance, Risk, Compliance (GRC) Analyst

New York, New York, United States

$126,000 – $126,000Compensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Information Security, Cybersecurity, Risk ManagementIndustries

Requirements

Candidates should have 6+ years of experience leading GRC, IT compliance, security, and risk management projects, along with a strong understanding of various frameworks such as SOC 2, HIPAA, HITRUST, NIST 800-171, ISO27001, ISO27799, CMMC, and FedRAMP. Familiarity with IT environments, cloud environments, security controls, and compliance tooling (e.g., AWS, GCP, GitHub) is required, as well as hands-on experience conducting and leading risk assessments, managing audits, and supporting compliance reporting. Preferred certifications include CGRC, CISA, CRISC, CISSP, or equivalent.

Responsibilities

The Senior GRC Analyst will plan and lead strategic GRC initiatives such as attaining industry certification (e.g. SOC 2, HITRUST), as well as tactical initiatives for efficiency and automation. They will also analyze, draft, update, and maintain security and compliance policies, collaborate with Product, Engineering, and Privacy teams to assess security risks in new product features and infrastructure changes, monitor and analyze regulatory changes and industry trends, and perform risk assessments, track remediation efforts, and collaborate with stakeholders to mitigate security and compliance risks.

Skills

GRC
Compliance Frameworks
Risk Assessments
SOC 2
HIPAA
ISO27001
ISO27799
HITRUST
NIST 800-171
CMMC
FedRAMP
Policy & Procedure Management
Security Reviews
Change Management

Oura

Wearable health monitoring smart ring

About Oura

Oura offers a smart ring that tracks various health metrics, including sleep patterns, heart rate variability, and physical activity. The ring uses advanced sensors to collect data, which is then analyzed and displayed through a mobile app, providing users with insights to improve their health and lifestyle. Unlike many competitors, Oura focuses on a direct-to-consumer model, selling its rings through its website and collaborating with sports teams and health institutions for additional partnerships. The goal of Oura is to help users, including athletes and those with health conditions, optimize their health through data-driven insights.

Oulu, FinlandHeadquarters
2013Year Founded
$344.1MTotal Funding
SERIES_DCompany Stage
Biotechnology, HealthcareIndustries
501-1,000Employees

Benefits

Competitive salary & equity packages
Health, dental, financial, & vision insurance
Wellness & mental health benefits
$300 per month health improvement related stipend
Flexible working hours
An Oura Ring of your own
Employee discount for friends & family
20 days of PTO

Risks

Increased competition from Samsung and Huami may pressure Oura's market share.
Criticism of cumbersome interfaces could lead users to competitors like VIV Health.
High valuation may lead to investor pressure for rapid growth, risking strategic missteps.

Differentiation

Oura's smart ring tracks over 20 biometrics, offering comprehensive health insights.
The ring's seamless wearability and precise monitoring set it apart in the market.
Oura's partnerships with sports teams validate its utility and accuracy for athletes.

Upsides

Oura raised $550M, boosting its valuation to $5.2 billion in 2024.
Integration with AI-driven insights could enhance personalized health recommendations.
Strategic partnerships with Dexcom and Essence Healthcare expand market reach into healthcare.

Land your dream remote job 3x faster with AI