Sofia, Bulgaria - In-Office Hybrid Hybrid Employment

A-LIGN is hiring a GRC Analyst

About the Role

The role involves assessing control environments, supporting audit readiness, and translating compliance frameworks into actionable insights for clients and internal teams.

Responsibilities

  • Evaluate organizational controls related to information security and compliance
  • Assist in preparing systems and processes for compliance audits
  • Interpret regulatory standards such as SOC, ISO, and NIST
  • Conduct risk assessments and document findings
  • Collaborate with teams to identify control gaps
  • Support evidence collection and validation for audit purposes
  • Draft reports summarizing compliance posture
  • Maintain up-to-date knowledge of compliance frameworks
  • Communicate with client personnel to gather necessary documentation
  • Ensure control designs meet regulatory and industry benchmarks
  • Track remediation efforts for identified deficiencies
  • Participate in client onboarding and scoping activities
  • Assist in developing compliance roadmaps
  • Review policies and procedures for alignment with standards
  • Contribute to process improvements within the compliance function
  • Utilize compliance management tools to track progress
  • Provide input on control effectiveness during audits
  • Stay current with evolving cybersecurity and privacy regulations
  • Support cross-functional teams during audit cycles
  • Maintain confidentiality and integrity of sensitive data

Nice to Have

  • Prior experience in a compliance-focused role within a service organization
  • Hands-on work with compliance program development
  • Client-facing experience in consulting or advisory services
  • Working knowledge of GRC platforms
  • Familiarity with privacy regulations like GDPR or CCPA

Compensation

Competitive salary based on experience

Work Arrangement

Hybrid work model available

Team

Part of a growing compliance and risk assurance team

Why Join Us

  • Opportunity to work with diverse clients across multiple industries
  • Exposure to high-impact compliance and risk engagements
  • Supportive environment that encourages professional development
  • Collaborative culture focused on knowledge sharing
  • Investment in employee certifications and training

Growth and Development

  • Access to ongoing technical and soft skills training
  • Mentorship from experienced compliance professionals
  • Clear pathways for career advancement
  • Encouragement to pursue industry certifications
  • Regular performance feedback and goal setting

May be available for qualified candidates

Visa expiring soon?

Extend or switch without leaving Thailand

Running out of time on your current visa? SVBL identifies your best option — extension, category switch, or long-term visa — and handles the entire process.

Visa extensions & category switches
LTR & DTV visa applications
90-day reporting managed
Overstay prevention
Check your options
Prevent overstay issues
About company
A-LIGN

A-LIGN is a compliance, cybersecurity, cyber risk and privacy provider. We help navigate the scope and complexity of your specific security needs.

With over 20 years of experience, A-LIGN is the leader in security compliance audits, serving companies of all sizes ranging from startups to enterprise businesses. The company offers a wide range of services including SOC 1, SOC 2, ISO 27001, HITRUST, FedRAMP, CMMC, GDPR, and more.

A-LIGN combines innovative technology, auditor expertise, and a streamlined process to deliver high-quality, efficient audits. The company emphasizes customer excellence with a 96% client satisfaction rating and a 24-hour response time.

All jobs at A-LIGN Visit website
Job Details
Category other
Posted a day ago