Tines

Senior GRC Analyst

United States

Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Biotechnology, SoftwareIndustries

About Tines

Founded in 2018 with co-headquarters in Dublin and Boston, Tines powers some of the world's most important workflows. Our orchestration, automation, and AI platform enables businesses to operate more effectively, mitigate risk, reduce tech debt, and focus on high-impact work.

Tines serves a diverse range of customers, from startups to public companies, including Canva, Databricks, Elastic, Kayak, Intercom, and McKesson. As an integrator across the entire tech stack, Tines connects with any API-enabled service. This flexibility enables our customers to achieve their highest-priority goals faster. And because Tines is secure and private by design, it’s popular with security, IT and other security-focused teams.

At Tines, we're driven by our values of Simplicity, Speed, and Soundness. We're committed to delivering exceptional customer experiences while fostering a company culture that nurtures individual curiosity, growth, and integrity. We’re excited about what’s next, and we’re looking for others to join us on our journey.

About the Role

Tines is seeking an experienced Senior Governance, Risk, and Compliance (GRC) Analyst to strengthen our compliance strategy and execution during a pivotal growth phase. Reporting directly to the Head of IT Operations & Information Security, you will play a critical role in our FedRAMP program while maintaining our existing SOC 2 compliance.

Location: Based remotely in the United States.

Key Responsibilities

  • FedRAMP Certification Efforts: Assist our FedRAMP certification program, including gap analysis, remediation planning, documentation development, and coordination with 3PAO assessors
  • Maintain SOC 2 Compliance: Support continuous compliance with SOC 2 requirements, including evidence collection, control testing, and audit coordination
  • Vendor Risk Management: Establish and manage a comprehensive vendor risk assessment program, evaluating security controls and compliance posture before acquisition
  • Risk Assessment and Management: Conduct thorough risk analyses for systems, processes, and third-party applications, implementing appropriate controls to mitigate identified risks
  • Compliance Automation: Leverage Tines automation capabilities to streamline compliance processes, evidence collection, and reporting
  • Customer Security Assurance: Respond to customer security inquiries, questionnaires, and audit requests, maintaining our Trust Center with up-to-date documentation
  • Policy Development and Maintenance: Review, update, and develop security policies and procedures aligned with regulatory requirements and industry best practices
  • Cross-functional Collaboration: Partner with engineering, product, legal, and leadership teams to embed compliance requirements into organizational processes
  • Contract Review and Management: Collaborate closely with the legal team to review contracts for security and compliance requirements, ensure appropriate security provisions are included, identify potential compliance risks, and recommend mitigating controls. Help develop standardized security language for various contract types.
  • Regulatory Monitoring: Stay current with evolving compliance standards and regulatory requirements relevant to our business and customers

Qualifications

Required

  • 8+ years of experience in IT compliance, security, or risk management
  • Demonstrated experience with FedRAMP certification processes and requirements
  • Hands-on experience implementing or maintaining ISO 27001 compliance
  • Strong knowledge of SOC 2 compliance frameworks and audit processes
  • Experience conducting vendor security assessments and risk analyses
  • Excellent understanding of information security principles, controls, and best practices
  • Strong project management skills with ability to manage multiple compliance initiatives simultaneously
  • Exceptional communication skills for translating technical requirements to non-technical stakeholders

Preferred

  • Industry certifications

Skills

GRC
FedRAMP
SOC 2
Vendor Risk Management
Compliance
Risk Assessment
Audit Coordination
Documentation
Gap Analysis
Remediation Planning

Tines

Automates workflows to enhance productivity

About Tines

Tines offers a platform that helps businesses automate their workflows to improve productivity. The platform allows users to streamline routine tasks, reducing repetitive work, unnecessary notifications, and information silos. It is designed to be user-friendly and can easily fit into existing business processes. Tines supports various functions such as employee lifecycle management, software development lifecycle management, ticket management, and incident alerts, among others. Unlike many competitors, Tines focuses on providing a comprehensive solution that integrates multiple aspects of business operations into one platform. The goal of Tines is to save time and enhance efficiency for teams across different industries by automating their workflows.

Dublin, IrelandHeadquarters
2018Year Founded
$142.1MTotal Funding
SERIES_BCompany Stage
Data & Analytics, Enterprise SoftwareIndustries
201-500Employees

Benefits

Remote Work Options
Flexible Work Hours
Company Equity

Risks

Emerging no-code platforms could threaten Tines' market share with innovative solutions.
Rapid AI integration may outpace Tines' development, risking competitive edge loss.
Economic uncertainties may reduce client spending on automation tools, impacting revenue.

Differentiation

Tines offers a no-code platform for automating security workflows, enhancing team productivity.
The platform integrates with various business processes, reducing duplicate efforts and information silos.
Tines' subscription model allows flexible pricing based on team size and business needs.

Upsides

Tines secured $50M to enhance AI integration and expand market reach in 2023.
Partnership with Criminal IP boosts platform capabilities with advanced threat intelligence.
Growing demand for no-code platforms empowers non-technical teams to automate workflows.

Land your dream remote job 3x faster with AI