Senior GRC Associate
Strata Decision Technology · Chicago, IL · United States · Hybrid
Pay: USD 75,000 – 95,000 a year
Posted Oct 5, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
How you’ll make an impact:
The Senior Compliance Associate will work within Strata’s Information Technology group and support the organization’s governance, risk, and compliance program. This role will focus on strengthening compliance operations, managing Strata’s compliance technology, supporting SOC 2 activities, and advancing Strata’s Third-Party Risk Management program. The position works collaboratively to ensure Strata complies with industry regulations, client requirements, and best practices.
This is an opportunity to help shape how GRC operates at Strata. You’ll have meaningful ownership of our compliance technology, with the opportunity to automate manual processes, mature established SOC and Third-Party Risk programs, and build scalable GRC practices as our compliance needs continue to evolve.
This role requires in-office presence at Strata’s Chicago office two days per week. Candidates should be comfortable working within this hybrid model.
Key Responsibilities:
Manage and optimize Strata’s compliance platform, including platform administration, configuration, integrations, and ongoing improvements, while identifying and implementing opportunities to automate evidence collection, control monitoring, workflows, and other repeatable compliance activities
Own and coordinate SOC 2 Type II activities, including audit readiness, evidence management, control testing, and remediation
Own, mature, and expand Third-Party Risk Management and security due diligence processes
Support customer security questionnaire (DDQ) responses and internal compliance requests by providing GRC expertise, evidence, and documentation as needed
Support broader GRC initiatives and emerging compliance requirements as the program evolves
What we’re looking for:
4+ years of relevant experience in GRC, IT audit, compliance, or a related discipline
Bachelor’s degree in a related field preferred, or equivalent relevant experience
Hands-on experience administering or optimizing a GRC/compliance platform and using automation to improve evidence collection, control monitoring, workflows, or audit readiness
Experience supporting or managing SOC 2 programs and controls
Experience with Third-Party Risk Management and vendor security assessments
Strong understanding of IT controls, compliance frameworks, and audit processes
Excellent communication skills, including the ability to communicate technical concepts to non-technical audiences
Strong technical writing and documentation skills
Self-motivated, proactive, highly organized, and able to manage multiple priorities
Ability to collaborate effectively with stakeholders at all levels of the organization
Preferred qualifications: Experience administering and optimizing GRC/compliance platforms; CISA, CRISC, or other relevant GRC, information security, or compliance certifications.
Estimated Salary Range: $75,000 - $95,000 Actual salary will be determined based on factors…