SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Thrive Global, a behavior change technology company founded by Arianna Huffington, is seeking a GRC (Governance, Risk, and Compliance) and Privacy Analyst to strengthen its security, compliance, and data privacy posture. The company's AI-powered platform helps organizations improve employee well-being and mental resilience, serving over 125 organizations across 140+ countries with sensitive health and wellness data.
In this role, you will own and operationalize compliance programs, manage audit cycles, and embed privacy-by-design principles across the organization. Key responsibilities include:
• Administer and optimize compliance automation platforms such as Vanta, maintaining continuous control monitoring and evidence collection
• Lead and support audits across multiple frameworks (SOC 2, ISO 27001, ISO 27701, ISO 42001, HITRUST, HIPAA, NIST 800-53, and NIST AI Risk Management Framework), coordinating with internal stakeholders and external assessors
• Maintain and mature compliance programs to meet regulatory obligations
• Interpret and apply privacy standards including HIPAA and GDPR, ensuring data handling practices meet regulatory requirements
• Conduct risk assessments, track remediation efforts, and manage evidence and control documentation
• Apply project management discipline to compliance initiatives—setting timelines, coordinating cross-functional owners, and driving deliverables to completion
• Leverage AI and automation tools to enhance compliance efficiency
This is an ideal position for someone who thrives at the intersection of security frameworks, privacy regulation, and modern automation tooling. The role is fully remote within the United States.