GRC Analyst
Modernizing Medicine- Full Time
- Junior (1 to 2 years)
This is an opportunity for a GRC-focused Security Engineer to own and scale Chainguard's compliance program. You will shape security policies, standards, and procedures, and build foundational GRC functions and processes. The role involves working with various teams, acting as the liaison during audits, identifying and mitigating risks, and recommending improvements to the compliance engine, potentially through automation and GRC platforms.
About Chainguard: Chainguard is dedicated to providing a secure foundation for software development and deployment. They offer guarded open-source software, built from source and continuously updated, to help organizations eliminate threats in their software supply chains. Founded by leading experts in open-source software, security, and cloud-native development, Chainguard has developed the largest library of secure-by-default open-source software. Their mission is to be the safe source for open source.
Company Values:
Supply chain risk management and audits
Chainguard specializes in managing risks in supply chains, particularly for businesses that rely on software. They conduct audits to identify risks and provide detailed reports with recommendations for improvement. Their unique offering includes a curated base container image distro, which helps businesses transition to secure software environments. Chainguard also provides supply chain observability services, allowing companies to track their software's origins and dependencies.