GRC Analyst
About this role
Applying to Paxos? Our only careers site is paxos.com/careers, and we only recruit via @paxos.com email. Details below.
___
About Paxos
Today’s financial infrastructure is archaic, expensive, inefficient and risky — supporting a system that leaves out more people than it lets in. So we’re rebuilding it.
We’re on a mission to open the world’s financial system to everyone by enabling the instant movement of any asset, any time, in a trustworthy way. For over a decade, we’ve built blockchain infrastructure that tokenizes, custodies, trades and settles assets for the world’s leading financial institutions, like Mastercard, Visa, Robinhood, and PayPal.
About the team
The Governance, Risk & Compliance (GRC) Team is responsible for establishing and maintaining a strong framework to manage organizational governance, cybersecurity risks, regulatory requirements, and compliance obligations. The team works closely with business units, technology teams, and stakeholders to identify risks, implement controls, monitor compliance, and support continuous improvement of security and operational processes.
About the role
The GRC Analyst supports the development, implementation, and maintenance of governance, risk management, and compliance programs within the organization. The role involves assessing security risks, monitoring compliance with internal policies and external regulations, coordinating audits, and ensuring that appropriate controls are in place to protect business information and technology assets.
What you’ll do
The GRC Analyst works with cross-functional teams, including Information Security, IT, Legal, Privacy, Internal Audit, and Business Operations, to identify risks, track remediation activities, and improve the organization’s overall risk and compliance posture.
About you
Your experience should include:
Experience in Governance, Risk, and Compliance (GRC), information security, IT risk management, or cybersecurity compliance roles.
Hands-on experience performing security risk assessments, control assessments, compliance and Privacy reviews.
Experience working with security frameworks and standards such as ISO 27001, NIST CSF, SOC 2, PCI DSS, GDPR, or similar regulatory requirements.
Experience supporting internal and external audits, including evidence collection, control validation, and remediation tracking.
Experience developing, reviewing, and maintaining security policies, standards, procedures, and compliance documentation.
Experience managing risk registers, control matrices, audit findings, and corrective action plans.
Experience conducting third-party/vendor security risk assessments and reviewing supplier compliance documentation.
Important Notice for Paxos Applicants
Fraudulent accounts sometimes pose as Paxos recruiters on LinkedIn and other platforms, and fake websites sometimes impersonate our careers site. These scammers attempt to deceive applicants into paying for job opportunities or providing personal financial information.
To verify a legitimate Paxos opportunity:
Our only official careers site is paxos.com/careers
We only use @paxos.com email addresses
We never ask for payment or financial details to apply, interview, or work here
For technical roles, we do not perform a coding interview without prior screening by our engineering team
Thanks for your interest in Paxos!
Company at a glance
Paxos is the leading regulated blockchain infrastructure and tokenization platform. Its products are the foundation for a new, open financial system that can operate faster and more efficiently. Today, trillions of dollars are locked in inefficient, outdated financial plumbing that is inaccessible to millions of people. Paxos is replatforming the financial system to enable assets to instantaneously move anywhere in the world, at any time, in a trustworthy way.
Paxos partners with leading global enterprises to tokenize, custody and trade assets. Its blockchain solutions are used by leaders like PayPal, Interactive Brokers, Mastercard, Mercado Libre and Nubank. Paxos is licensed to engage in virtual currency business activity and is the issuer of numerous digital assets including PayPal USD (PYUSD), Pax Dollar (USDP) and Pax Gold (PAXG). Global Dollar (USDG) is issued by Paxos Digital Singapore, which is a Major Payments Institution supervised by the Monetary Authority of Singapore. USDG is also issued by Paxos Issuance Europe under the supervision of FIN-FSA and in compliance with MiCA. USDG is also available on Solana.
Prudentially regulated by FIN-FSA in Europe, the OCC in the US, and the MAS in Singapore, Paxos is a leading fintech company with more than $500 million raised from leading investors including Oak HC/FT, Declaration Partners, Founders Fund and PayPal Ventures.
Tired of cold applications?
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Know someone who'd be great for this?