
Sr. Governance, Risk & Compliance Analyst I (Remote Eligible)
For over 20 years, Smartsheet has helped people and teams achieve–well, anything. From seamless work management to smart, scalable solutions, we’ve always worked with flow. We’re building tools that empower teams to automate the manual, uncover insights, and scale smarter. But more than that, we’re creating space– space to think big, take action, and unlock the kind of work that truly matters. Because when challenge meets purpose, and passion turns into progress, that’s magic at work, and it’s what we show up for everyday.
Smartsheet is the Intelligent Work Management Platform that unites people, data, and AI to eliminate execution silos - turning strategic vision into measurable enterprise impact. We are a tech company with a human story to tell. We’re here to empower teams to manage projects, automate workflows, and rapidly build new secure solutions, using simple no-code tools. We’re revolutionaries – so for us changing the way the world works is all in a day’s work.
Help us navigate the landscape of security and compliance, ensuring our platform remains a trusted solution for the world's leading companies. Smartsheet is looking for a Sr. Governance, Risk & Compliance Analyst I to join our team. In this role, you will be a crucial link between Smartsheet and our external auditors, ensuring our internal controls are well-designed, operating effectively, and ready for independent review. You'll have the opportunity to make a significant impact on our security and trustworthiness, helping us to empower teams around the world to manage projects, automate workflows, and build new secure solutions.
This role will report to the Director, Customer Security and Trust and work in our Bellevue, WA office, or remotely from anywhere in the US where Smartsheet is a registered employer.
You Will:
- Ensure our controls are properly mapped and aligned to frameworks like NIST 800-53, ISO, SOC 2, HIPAA, FedRAMP, and IRAP.
- Test the design of internal controls to effectively mitigate identified risks and align with compliance frameworks.
- Test the effectiveness of internal controls through sampling, inspection, observation, and re-performance.
- Serve as a key point of contact for external audits, coordinating planning, fieldwork, and reporting.
- Manage vendors and internal stakeholders to a unified external audit timeline.
- Collaborate with control owners to collect and automate evidence collection.
- Schedule and facilitate walkthroughs with control owners and external auditors.
- Manage the full lifecycle of findings, from identification and evaluation to remediation and closure.
- Develop and implement processes to automate control evidence collection and conduct research on continuous monitoring technologies.
You Have:
- 5+ years of experience in information technology, information security, or audit.
- Knowledge of NIST 800-53 and FedRAMP Moderate/IL4, with the ability to tailor and maintain SSPs, POA&Ms, and security artifacts.
- Bachelor's degree in a related field or equivalent experience.
- CISA, CRISC, or CISSP certifications are nice to have.
- Proven analytical skills to assess control effectiveness, identify risks, and manage projects.
- A collaborative approach with the ability to work independently and influence stakeholders at all levels to drive remediation and consensus.
Current US Perks & Benefits:
- HSA, 100% employer-paid premiums, or Buy-up medical/vision and dental coverage options for full-time employees
- 401k Match to help you save for your future (50% of your contribution up to the first 6% of your eligible pay)
- Monthly stipend to support your work and productivity
- Flexible Time Away Program, plus Sick Time Off
- US employees are automatically covered under Smartsheet-sponsored life insurance, short-term, and long-term disability plans
- US employees receive 12 paid holidays per year
- Up to 24 weeks of Parental Leave
- Personal paid Volunteer Day to support our community
- Opportunities for professional growth and development including access to Udemy online courses
- Company Funded Perks, including a counseling membership, local retail discounts, and your own personal Smartsheet account
- Teleworking options from any registered location in the U.S. (role specific)
Smartsheet provides a competitive base salary range for roles that may be hired in different geographic areas we are licensed to operate our business from. Actual compensation is determined by several factors including, but not limited to, level of professional, educational experience, skills, and specific candidate location. In addition, this role will be eligible for a market competitive incentive opportunity.
US Base Salary Pay Range
$115,000 - $152,500 USD
Get to Know Us:
At Smartsheet, your ideas are heard, your potential is supported, and your contributions have real impact. You’ll have the freedom to explore, push boundaries, and grow beyond your role. We welcome diverse perspectives and nontraditional paths—because we know that impact comes from individuals who care deeply and challenge thoughtfully. When you’re doing work that stretches you, excites you, and connects you to something bigger, that’s magic at work. Let’s build what’s next, together.
Equal Opportunity Employer:
Smartsheet is an Equal Opportunity (EEO) employer committed to fostering an inclusive environment with the best employees. It is our policy to provide equal employment opportunities to all qualified applicants in accordance with applicable laws in the US, UK, Australia, Germany, Costa Rica, Japan, Bulgaria, and India. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.
If there are preparations we can make to help ensure you have a comfortable and positive interview experience, please let us know.
#LI-Remote
Create a Job Alert
Interested in building your career at Smartsheet? Get future opportunities sent straight to your email.
Apply for this job
*
indicates a required field