SlipstreamJobsFresh Startup & VC-Backed Jobs

Security GRC Analyst II

Diligent - Bengaluru, KA, India - Hybrid - posted 2026-09-30

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Diligent is seeking a Security GRC Analyst II to join the Trust & Assurance team. In this role, you will own a high-volume queue of security questionnaires, third-party due diligence assessments, RFP security sections, and customer assurance requests. You'll be responsible for delivering accurate, timely responses that directly support enterprise deal closure and customer confidence. Key responsibilities include: - Managing a live queue of security questionnaires and assurance requests, delivering responses within SLA - Using AI-assisted response tooling to draft answers quickly, then verifying every response against the approved answer library, current SOC 2 and ISO 27001 certifications, and underlying evidence before submission - Triaging and routing incoming requests using established playbooks—resolving routine requests independently and escalating novel, contractual, or architecturally complex items - Maintaining and expanding the answer library by adding approved answers, retiring outdated ones, and flagging inconsistencies to prevent duplicate research - Building out trust site and customer-facing content, and training commercial teams to direct customers to self-serve resources - Packaging evidence for customer security audits and tracking quality metrics (turnaround time, first-pass accuracy, rework rate, deflection) to identify and eliminate process friction The role emphasizes accuracy under volume, SLA-driven execution, and continuous process improvement. You'll work with AI-assisted tooling but maintain healthy skepticism—treating generated output as a draft to verify, never as a final answer. Success is measured on turnaround time and first-pass accuracy. Diligent is the AI leader in governance, risk, and compliance (GRC) SaaS, serving over 1 million users and 700,000 board members globally. The company operates offices in New York, Washington D.C., London, Galway, Budapest, Vancouver, Bengaluru, Munich, Singapore, and Sydney. This role follows a hybrid work model with an expectation to work onsite at least 50% of the time if you are within commuting distance to a Diligent office. REQUIREMENTS: - 2–4 years of experience in security GRC, compliance, IT audit, customer assurance, or a closely related function - Working knowledge of SOC 2 and ISO 27001, with the ability to read a control and understand its actual requirements - Demonstrable precision under volume—a track record in SLA-driven or queue-based work where accuracy was measured and mattered - Strong written English with the ability to answer security questions precisely and concisely without unnecessary padding - Solid organizational habits to manage competing requests without losing track - Comfort working with AI-assisted tooling paired with healthy skepticism; ability to treat generated output as a draft to verify - Discipline to escalate rather than guess, and confidence to acknowledge the limits of your knowledge NICE-TO-HAVE SKILLS: - Experience with trust centre or trust portal platforms (SafeBase, Whistic, Conveyor, Vanta) - Familiarity with questionnaire formats and frameworks (SIG, CAIQ, HECVAT, VSAQ) - Basic working knowledge of AWS, Azure, or GCP security concepts - Exposure to additional frameworks (NIST CSF, GDPR, HIPAA, DORA) - Early-career certifications or progress toward them (ISO 27001 Foundation or Lead Implementer, CompTIA Security+, CISA) - Experience with Jira, Confluence, Salesforce, and Microsoft 365 - Additional language skills, particularly for supporting EMEA customers

Similar roles