Senior GRC Analyst II at Carta

Seattle, Washington, United States

Carta Logo
Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Venture Capital, Private Equity, Private Credit, FinTechIndustries

Requirements

  • Strong understanding and working knowledge of information security and compliance frameworks, such as SOC 1 and 2, ISO 27001, NIST CSF, GDPR, CCPA, FINRA, SOX and SEC cybersecurity requirements
  • Excellent judgment and the ability to make balanced decisions when working with complex situations
  • Proven understanding of public cloud infrastructure and services in AWS and GCP including knowledge of cloud-native security protection measures, tools, and techniques
  • Proven ability to collaborate with cross-functional teams and affect change to accomplish goals
  • Excellent written and verbal communication skills, including the ability to effectively communicate business and cybersecurity risk
  • 5+ years of experience in developing and executing governance, risk and compliance functions

Responsibilities

  • Manage and continually improve the Carta Governance, Risk, and Compliance program, ensuring it is aligned with our security strategy and business objectives
  • Develop, maintain, and lead the adoption of security policies, standards, and guidelines to ensure compliance with applicable regulatory requirements
  • Lead and coordinate internal and external security audits
  • Perform security assessments of vendors, third parties, and applications
  • Partner with cross functional teams to review initiatives that could impact compliance requirements
  • Manage risk program activities including risk identification, tracking, and prioritization
  • Collaborate with engineering and product teams to assess risk posture and compliance status, and support remediation activities

Skills

GRC
Governance
Risk Management
Compliance Programs
Security Compliance
Regulatory Requirements
Policy Development
Risk Assessment
Compliance Metrics

Carta

Financial platform for fundraising and equity management

About Carta

Carta provides a platform that helps businesses, particularly startups and investment firms, manage their fundraising processes more efficiently. The platform offers a variety of tools and services that assist in asset management, back office automation, and portfolio insights. One of its standout features is the use of machine learning to provide real-time market intelligence, which helps businesses make informed decisions about employee compensation. Additionally, Carta simplifies the process of equity sales for employees and investors, making it easier to navigate what can often be a complicated area. Unlike many competitors, Carta focuses on providing a comprehensive suite of services that not only streamline fundraising but also support audit, tax, and valuation needs. The goal of Carta is to make the fundraising journey faster, easier, and more cost-effective for its clients.

San Francisco, CaliforniaHeadquarters
2012Year Founded
$1,097MTotal Funding
SERIES_GCompany Stage
Fintech, AI & Machine Learning, Financial ServicesIndustries
1,001-5,000Employees

Benefits

Free lunch and snacks
Equity
Employee liquidity every 12-18 months

Risks

Increased competition from startups like Slice threatens Carta's market share.
Recent data breach raises concerns about Carta's data security.
Decline in venture deal count on Carta's platform indicates potential business slowdown.

Differentiation

Carta offers a comprehensive platform for managing equity electronically.
Carta provides real-time market intelligence powered by machine learning.
Carta simplifies equity sales for employees, stakeholders, and investors.

Upsides

Increased demand for digital equity management solutions benefits Carta.
Corporate Transparency Act creates a new market for Carta's compliance solutions.
Rising Series A valuations boost demand for Carta's services.

Land your dream remote job 3x faster with AI