×
Register Here to Apply for Jobs or Post Jobs. X

GRC Analyst

Job in Poland, Androscoggin County, Maine, 04274, USA
Listing for: Primer
Full Time position
Listed on 2026-06-02
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security, Data Security
Job Description & How to Apply Below
Location: Poland

An Introduction to Primer

Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.

Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, we're building the payments layer the world's best companies rely on.

Watch our showcase

Read up on our $100m Series C

Learn more about our culture

About the Role

We're looking for a GRC Analyst to take ownership of our Governance, Risk & Compliance program. As our regulatory footprint and customer trust requirements have grown, we're investing in a dedicated GRC function to ensure we maintain a strong, continuous compliance posture.

This is a mid-level, individual contributor role reporting into the engineering/security organisation. You'll partner closely with engineers as subject-matter experts while owning the day-to-day execution and operational rhythm of GRC across the business.

What You'll Own

Audit Readiness & Evidence Operations

Maintain a year-round evidence calendar, run continuous control monitoring, and coordinate with external auditors.

External Trust Requests

Own inbound security questionnaires, vendor assessments, and RFP responses. Maintain a response library so we can turn these around quickly and consistently, keeping deals and procurement moving.

Framework-Driven Programs

Coordinate risk assessments, partner on security awareness and training programs, and govern vulnerability management processes. With obligations spanning PCI DSS, DORA, NIS2, and the EU AI Act, you'll help us stay ahead of evolving requirements.

Policy Lifecycle Management

Maintain policies, manage exceptions, monitor for violations, and drive remediation follow-through. You'll be the single point of accountability for keeping our policy framework current and enforceable.

Certification & Expansion

Drive future certification efforts, including ISO 27001, and support the operationalisation of new regulatory frameworks as they come into scope.

What We're Looking For

Experience

* 3-5 years in a GRC, compliance, or information security governance role

* Hands-on experience coordinating external audits (SOC 2, PCI DSS, ISO 27001, or similar)

* Familiarity with EU regulatory frameworks such as GDPR, DORA, NIS2, and the EU AI Act

* Experience managing vendor risk assessments and third-party due diligence

* Track record of maintaining evidence and controls on a continuous (not just annual) basis

Skills & Qualities

* Strong organisational skills

* Clear, concise communicator who can work across engineering, legal, and leadership teams

* Comfortable working with compliance tooling and GRC platforms (e.g., Vanta, Drata, One Trust, or similar)

* Detail-oriented with a bias for proactive, systematic work over reactive cleanup

* Able to operate independently while knowing when to pull in subject-matter experts

Nice to Have

* Familiarity with IAM processes and access review cycles

* Relevant certifications (CISA, CRISC, ISO 27001 Lead Implementer, or similar)

* Experience in a payments, fintech, or regulated technology environment, particularly with PCI DSS compliance

You may not like it here if:

* You enjoy working in an office-setting, we are remote-first and always will be!

* You are not comfortable with shifting context and navigating ambiguity

A typical interview process

* An initial intro call with a Talent Partner

* An interview with the Hiring Manager

* Challenge Stage - Contextualised to the role

* A final, values-alignment interview

What's the culture like at Primer?

We're building a culture where people can come and do their best work and enjoy it. We want our people to be proud of the impact that they have at Primer, and of the work that they are doing. You will be working with a team of people who are mission-driven, smart, and reflective, and who are invested in building exceptional products and delivering success for our merchants (and we also know how to have fun along the way).

We work remotely. We believe that building a successful, profitable company goes beyond proximity. We invest in our relationships with each other through great remote working practices and thoughtfully designed face-to-face time together. Our heads-together time comes in the form of workstations, our annual company retreat, and co-working space access worldwide.

Finally, let's go ahead and say it. The work that we do is challenging. Scaleups are a challenge, building category defining products is a challenge. You should be prepared for a challenge , there's a big difference between a challenge and a struggle. The key difference is that the right challenge comes with the right support structures, an acceptance that not everything always goes to plan, a collaborative environment, and a great team around you.

It's never a challenge that you will face alone.

Our benefits

We are fully remote and globally distributed; and have been since day one

Competitive share options

Uncapped…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary