GRC Analyst I

personifyhealth· Technology Operations
Apply Now ↗
📍 Sarajevo, BIH📍 Tuzla, BIHFULL TIME

About this role

Overview

Who We Are

Because health is personal. That's why Personify Health created the first and only personalized health platform—bringing health plan administration, holistic wellbeing solutions, and comprehensive care navigation together in one place. We serve employers, health plans, and health systems with data-driven solutions that reduce costs while actually improving health outcomes. Together, our team is on a mission to empower people to lead healthier lives.

Learn even more about the work that drives us at personifyhealth.com.

Responsibilities

Ready To Build a Foundation in Governance, Risk, and Compliance Inside a Regulated Healthcare Technology Company?

 

Why This Role Matters

Compliance frameworks like SOC 2, HIPAA, and HITRUST don't run themselves — they require consistent evidence collection, risk tracking, policy governance, and audit support executed with precision. This entry-level GRC role puts you at the center of that work, contributing directly to the compliance and risk management infrastructure that protects the organization and the members it serves.

 

What You'll Actually Do

 

Support policy governance: Assist in developing, maintaining, and distributing policies, procedures, and standards — tracking exceptions and ensuring organizational awareness and compliance.

Assist with risk assessments: Conduct initial risk assessments, document findings, maintain risk registers, and escalate identified risks to senior team members for further analysis and mitigation planning.

Track risk remediation: Monitor mitigation plans, collect progress data, and follow up to ensure timely resolution of identified risks.

Facilitate compliance activities: Support compliance efforts across SOC 2, ISO 27001, HIPAA, GDPR, HITRUST CSF, and other applicable frameworks — collecting audit evidence and tracking findings through remediation.

Prepare compliance reporting: Maintain documentation and assist in preparing internal reports on compliance status, risk metrics, and audit progress for stakeholder review.

Support training and awareness programs: Assist in preparing and delivering employee compliance training and supporting awareness campaigns that reinforce a culture of security across the organization.

 

Qualifications

What You Bring to Our Team

Education & Experience

  • Bachelor's degree in Information Security, Computer Science, Business Administration, or a related field
  • 0–2 years of experience in GRC, compliance, risk management, or related fields; internships or academic projects considered
  • Basic understanding of SOC 2, ISO 27001, GDPR, HIPAA, or HITRUST CSF a plus

Technical Skills

  • Proficiency in Microsoft Office Suite: Excel, Word, and PowerPoint
  • Familiarity with GRC tools or platforms a plus but not required

 

 

Our Commitment: Personify Health is an equal opportunity employer committed to diversity, equity, inclusion, and belonging. We cultivate a work environment where differences are celebrated, and employees of all backgrounds are empowered to thrive—because diversity is core to who we are and critical to our work in health and wellbeing.

 

Stay Safe: Personify Health will never ask for payment or sensitive personal information like social security numbers during hiring. All official communication comes from verified company email addresses and or our secure applicant tracking system. Suspicious requests? Report them to talent@personifyhealth.com. View all legitimate openings at personifyhealth.com/careers.

Frequently Asked Questions

Is the salary disclosed for the GRC Analyst I position at personifyhealth?
The salary for this GRC Analyst I role at personifyhealth is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the GRC Analyst I position at personifyhealth located?
This GRC Analyst I role at personifyhealth is based in Sarajevo, BIH, Tuzla, BIH. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the GRC Analyst I role at personifyhealth full-time or part-time?
This is listed as a FULL TIME position. It is posted as a GRC Analyst I role in the Technology Operations department at personifyhealth.
Which team or department does the GRC Analyst I at personifyhealth belong to?
This GRC Analyst I position is part of the Technology Operations department at personifyhealth. See the full job description for more information about the team structure and responsibilities.
How do I apply for the GRC Analyst I position at personifyhealth?
Click the "Apply Now" button on this page. You will be redirected to personifyhealth's official application portal hosted on icims where you can submit your application directly.
When was the GRC Analyst I job at personifyhealth posted?
This GRC Analyst I position at personifyhealth was posted on Sep 9, 2026. Apply as soon as possible — early applications are often reviewed first.
GRC Analyst I
personifyhealth
Apply for this role ↗

You'll be redirected to personifyhealth's official application page on icims.