Get a Demo
Careers at Upwind

Up & Up

Join a group of builders who move with intention, take ownership, and grow together as we shape what’s next.
See open positions

The best talent is global

We believe great teams are built around people, not locations. Upwind supports remote and hybrid work so we can collaborate with exceptional talent wherever they are.

Moments that bring us together

From offsites to everyday collaboration, we make time to connect beyond the work.
While we work across time zones, we invest in real-world connection. With offices in Tel Aviv, Belfast, and Iceland, plus team offsites throughout the year, we create space for teams to build trust, strengthen relationships, and do better work together.
“Working at Upwind is an exhilarating journey of innovation and growth. Every day presents new challenges and opportunities that fuel my passion and drive. In this dynamic environment, I’ve collaborated with talented individuals who value inclusion and embrace different perspectives.”
f96303f944e24a0441296ddfbe18df5e8846937d
Nofar Ginon
|
Engineering Manager
“As a UI/UX designer, I enjoy creating user-friendly experiences that deliver innovative technology. It’s empowering to be part of a company that values inclusion and embraces unique perspectives in the cybersecurity industry.”
8c550635ce0f817e031279960e0ee19aba2d5d5d
Maya Mitrani
|
Product Designer
“Upwind is a place where diversity of thought is encouraged and accepted. My ideas are valued, my voice is heard, and my potential is realized. We are shaping the future of cloud security.”
dde45ac65ead551923045d0b62865e6b06f9724a
Kim Usher
|
Group Manager, Engineering

Open positions

Array

GRC Senior Analyst

India · Full-time

About The Position

Upwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters. With industry-leading efficiency and eBPF-powered sensors, Upwind delivers comprehensive capabilities, including agentless cloud posture discovery, real-time threat protection, and integrated API security. From misconfigurations to malware defense, Upwind ensures end-to-end, cost-effective cloud infrastructure protection. At Upwind, you’ll have the opportunity to think creatively, explore new ideas, and use your skills to make a meaningful impact on our growth.

Upwind Security is seeking a highly motivated GRC (Governance, Risk, and Compliance) Analyst to join our growing Security & Compliance team. In this role, you will be responsible for supporting the implementation, operation, and continuous improvement of our GRC framework. You will help ensure our organization’s policies, procedures, and controls align with regulatory requirements and industry best practices.


Responsibilities 

  • Support the execution and enhancement of the organization’s GRC strategy, including policy governance, risk assessments, compliance monitoring, and audit support.
  • Assist in maintaining compliance with security frameworks and standards such as ISO 27001, SOC 2, NIST, and GDPR.
  • Conduct periodic risk assessments and control gap analyses across departments.
  • Track remediation of audit findings, risks, and control deficiencies, and validate completion of corrective actions.
  • Support third-party risk management activities including vendor due diligence and ongoing assessments.
  • Help maintain the GRC tool and ensure timely updates of risk registers, controls, and evidence repositories.
  • Collaborate cross-functionally with IT, Legal, Engineering, and other business units to promote a culture of security and compliance.
  • Assist in the creation and maintenance of documentation such as policies, standards, and procedures.
  • Prepare reports and dashboards for management review.
  • Stay updated on emerging regulations, standards, and security trends.


Requirements

  • Bachelor’s degree in Information Security, Risk Management, Computer Science, or a related field.
  • 4-6 years of experience in GRC, cybersecurity, risk management, or a compliance-focused role.
  • Familiarity with common regulatory and compliance frameworks (e.g., ISO 27001, SOC 2, HIPAA, PCI-DSS, NIST CSF).
  • Experience working with GRC platforms such as Vanta, Drata, OneTrust, or similar tools is a plus.
  • Excellent communication, documentation, and stakeholder engagement skills.
  • Strong attention to detail and organizational skills.
  • Relevant certifications (e.g., CISA, CISM, CRISC, ISO 27001 LA, or similar) are a plus.


Apply for this position