Senior Staff Analyst - GRC

Mozilla • USA

Company

Mozilla

Location

USA

Type

Full Time

Job Description

Why Mozilla?

Mozilla Corporation is the non-profit-backed technology company that has shaped the internet for the better over the last 25 years. We make pioneering brands like Firefox the privacy-minded web browser. Now with more than 225 million people around the world using our products each month we’re shaping the next 25 years of technology and helping to reclaim an internet built for people not companies. Our work focuses on diverse areas including AI social media security and more. And we’re doing this while never losing our focus on our core mission – to make the internet better for people.

The Mozilla Corporation is wholly owned by the non-profit 501(c) Mozilla Foundation. This means we aren’t beholden to any shareholders — only to our mission. Along with thousands of volunteer contributors and collaborators all over the world Mozillians design build and distribute open-source software that enables people to enjoy the internet on their terms.

About this team and role:

The role is part of the Security Function within the broader Mozilla Infrastructure team. The Security team supports Product Enterprise and GRC functions across the organization aligned with the mission to build a safe & secure internet. This role is responsible for defining developing and helping implement a Governance Risk and Compliance framework for both Enterprise and Product verticals. The ideal candidate will be responsible to deliver an integrated framework that aligns security privacy regulatory and risk management initiatives across the organization. The ideal candidate is a collaborative leader with deep domain expertise in information security regulatory compliance risk governance and cross-functional stakeholder engagement.

What you’ll do:

  • Governance : develop and maintain a comprehensive GRC strategy and roadmap aligned with business objectives. Lead the creation and enforcement of standards policies controls audits reporting across various enterprise and product verticals.

  • Risk Mgmt : develop and operationalize a risk assessment and management framework on a periodic basis to enable prioritization and remediation of critical issues. Define and deliver measurable scorecards and metrics to enable data driven decision making

  • Compliance : ensure compliance with various regulatory standards and frameworks ( ISO NIST SOC2 CCPA GDPR etc). Lead internal and external audit activities including tracking and resolving deficiencies and remediations.

  • Partner closely with Legal / IT / Finance / Security to align on the GRC program and deliver a cohesive integrated risk management framework.

  • Led defining requirement and reporting (scorecards) of data life cycle management across enterprise and product domains working with data platform and legal team.

What you’ll bring:

  • 10+ years of progressive experience in developing and delivering an integrated GRC framework

  • Strong understanding and deep knowledge of regulatory frameworks processes and tools related to building a robust GRC framework

  • Experience leading and delivering cross functional requirements for product & enterprise teams to implement controls and measures to meet compliance requirements

  • Relevant industry certifications (CISA CISSP CISM CRISC etc)

  • Hands-on understanding of using various technology and tools (SEIM BI Tools )

  • Ability to develop Root Cause Analysis (RCA) and remediation plans to resolve risk deficiencies working with respective stakeholder teams.

  • Strong critical thinking skills with the ability to drive long term organizational impact

  • A background that demonstrates a bias for action and the ability to navigate constraints in order to achieve business outcomes

  • Ability to collaborate and influence a diverse group of stakeholders to address cross-functional challenges and lead change

What you’ll get:

  • Generous performance-based bonus plans to all eligible employees - we share in our success as one team

  • Rich medical dental and vision coverage

  • Generous retirement contributions with 100% immediate vesting (regardless of whether you contribute)

  • Quarterly all-company wellness days where everyone takes a pause together

  • Country specific holidays plus a day off for your birthday

  • One-time home office stipend

  • Annual professional development budget

  • Quarterly well-being stipend

  • Considerable paid parental leave

  • Employee referral bonus program

  • Other benefits (life/AD&D disability EAP etc. - varies by country)

About Mozilla

When you work at Mozilla you give yourself a chance to make a difference in the lives of web users everywhere. And you give us a chance to make a difference in your life every single day. Join us to work on the web as the platform and help create more opportunity and innovation for everyone online.  We’re not a normal tech company. The things we create prioritize people and their privacy over profits. We exist to make the internet a healthier  happier place for everyone.

Commitment to diversity equity and inclusion

Mozilla believes in the value of diverse creative practices and forms of knowledge and knows diversity equity and inclusion are crucial to and enrich the company’s core mission. We encourage applications from everyone including members of all equity-seeking communities such as (but not limited to) women racialized and Indigenous persons persons with disabilities persons of all sexual orientations gender identities and expressions.

We will ensure that qualified individuals with disabilities are provided reasonable accommodations to participate in the job application or interview process to perform essential job functions and to receive other benefits and privileges of employment as appropriate. Please contact us at [email protected] to request accommodation.

We are an equal opportunity employer. We do not discriminate on the basis of race (including hairstyle and texture) religion (including religious grooming and dress practices) gender gender identity gender expression color national origin pregnancy ancestry domestic partner status disability sexual orientation age genetic predisposition medical condition marital status citizenship status military or veteran status or any other basis covered by applicable laws. Mozilla will not tolerate discrimination or harassment based on any of these characteristics or any other unlawful behavior conduct or purpose.

Req ID: R2956

Hiring Ranges:

US Tier 1 Locations

$178000—$259000 USD

US Tier 2 Locations

$164000—$238000 USD

US Tier 3 Locations

$151000—$220000 USD

Apply Now

Date Posted

11/16/2025

Views

0

Back to Job Listings ❤️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Senior Data Scientist - Ads - Reddit

Views in the last 30 days - 0

Reddit seeks a Senior Data Scientist to enhance their advertising platform through advanced data science and machine learning The role offers remote w...

View Details

Staff Data Scientist - Webflow

Views in the last 30 days - 0

Webflow is seeking a Staff Data Scientist to drive insights and innovation for their remotefirst platform The role involves collaborating with crossfu...

View Details

Staff Product Manager, Growth — New User Acquisition - Reddit

Views in the last 30 days - 0

This job posting highlights a senior product management role at Reddit focused on driving user growth through search engine optimization and crossfunc...

View Details

Staff Product Designer - Cloud Infrastructure - Netflix

Views in the last 30 days - 0

This job posting highlights Netflixs opportunity to shape cloud infrastructure experiences emphasizing innovation technical challenges and collaborati...

View Details

Senior Product Manager - Data - Reserv

Views in the last 30 days - 0

Reserv is an insurtech company leveraging AI and automation to revolutionize insurance claims processes The Senior Product Manager role focuses on dat...

View Details

Sr. Sales Manager - Kraken Institutional - Kraken

Views in the last 30 days - 0

Kraken promotes crypto adoption with a global team offering sales roles to drive institutional growth Emphasizing security and education they seek dri...

View Details