GRC Specialist

avidยท Philippines (PHC1) Avid Philippines
Apply Now โ†—
๐Ÿ“ PhilippinesFull time
Full timePhilippines (PHC1) Avid Philippines

About this role

It's fun to work in a company where people truly BELIEVE in what they're doing!

We're committed to bringing passion and customer focus to the business.

ABOUT AVID

Avid makes technology and collaborative tools so creators can entertain, inform, educate and enlighten the world. Our customers are the visionaries behind the most inspiring feature films, television programs, news broadcasts, televised sporting events, music recording and live concerts.

To learn how Avid powers greater creators or for more information, visit www.avid.com.

JOB SUMMARY

Come and join our team as a GRC Specialist โ€” driving compliance, risk management, and security assurance.

The subject matter expert on various compliance and risk management topics; GRC Specialist supporting Avid's security team with customer and partner security questionnaire responses, primary ownership of third-party risk management (TPRM), NIST/SSDF self-assessment and evidence collection, and audits.

This role is based in the Philippines and follows a remote work setup with a scheduled shift from 6:00 PM to 3:00 AM (Manila Time).

WHAT YOU WILL DO:

  • Respond to and maintain customer and partner security questionnaires.
  • Own Avid's third-party risk management (TPRM) program: vendor and third-party risk intake, assessment, and risk determination in partnership with security leadership.
  • Perform Vendor Security Assessments for new and existing third-party relationships.
  • Maintain the Risk Register: log new risk acceptances, track renewal dates, and keep the register current.
  • Run self-assessment worksheets against NIST 800-53 and NIST CSF control families.
  • Map security pipeline evidence to NIST SSDF and OWASP control practices.
  • Complete periodic data security reviews and help track remediation of findings.
  • Maintain and review Security Policy documentation and other compliance records and documentation.
  • Own coordination of Avid's current security audit efforts (auditor liaison, evidence collection, remediation tracking) and any future third-party compliance audits.
  • Support Legal with technical security input for contract and data protection reviews.

WHO YOU ARE:

  • 2-3+ years of experience in security compliance, audit support, or GRC-adjacent work.
  • Familiarity with NIST 800-53, NIST CSF, or SSDF (exposure through coursework, certification study, or prior role experience).
  • Exposure to SOC 2 or similar third-party audit processes preferred; hands-on audit coordination experience not required.
  • Comfortable working with AI agents, spreadsheets and collaboration tools for tracking and documentation.
  • Strong English written/verbal communication skills, able to draft accurate questionnaire responses with minimal editing.
  • Able to manage multiple parallel workstreams and coordinate with both technical and non-technical stakeholders.
  • Preferred certifications: ISC2 Certified in Cybersecurity (CC), CompTIA Security+, ISO/IEC 27001 Foundation, GIAC GSEC, CCSK, or AWS Cloud Practitioner.
  • Certifications such as CISSP, CISM, CISA, CRISC, CGEIT, CGRC, GRCP, or ISO 27001 Lead Auditor/Implementer are a plus.

What to look forward to?ย 

  • Join a global team and experience a dynamic, collaborative work environment that fosters innovation and growth.

  • Remote work model offering flexibility to balance work and life.

  • Access to development programs with strong support and mentoring to help you grow and advance within the company.

  • Equal opportunity employer committed to diversity, inclusivity, and creating a welcoming environment for all employees.

  • Attractive benefits package including health & life insurance, referral rewards, and generous leave policies to ensure a healthy work-life balance

Avid is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

#LI-Remote, LI-NR1

If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

Frequently Asked Questions

Is the salary disclosed for the GRC Specialist position at avid?
The salary for this GRC Specialist role at avid is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the GRC Specialist position at avid located?
This GRC Specialist role at avid is based in Philippines. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the GRC Specialist role at avid full-time or part-time?
This is listed as a Full time position. It is posted as a GRC Specialist role in the Philippines (PHC1) Avid Philippines department at avid.
Which team or department does the GRC Specialist at avid belong to?
This GRC Specialist position is part of the Philippines (PHC1) Avid Philippines department at avid. See the full job description for more information about the team structure and responsibilities.
How do I apply for the GRC Specialist position at avid?
Click the "Apply Now" button on this page. You will be redirected to avid's official application portal hosted on workday where you can submit your application directly.
When was the GRC Specialist job at avid posted?
This GRC Specialist position at avid was posted on Aug 4, 2026. Apply as soon as possible โ€” early applications are often reviewed first.
GRC Specialist
avid
Apply for this role โ†—

You'll be redirected to avid's official application page on Workday.