Full-Time
Posted on 9/3/2025
Unified GRC platform for risk, compliance
$200k/yr
Remote in USA
Remote
ZenGRC is a unified Governance, Risk, and Compliance platform that automates risk and compliance management and integrates with existing business applications. It provides a holistic view of a company’s risk posture with continuous monitoring and rapid deployment to meet regulatory requirements, replacing spreadsheet-based GRC for better efficiency and ROI. The product connects to a company’s current systems, automates data collection and control testing, and delivers dashboards and audit-ready reports to track risks, controls, and compliance programs. Its goal is to help CIOs and other decision-makers simplify and accelerate GRC across organizations of various sizes through a tiered subscription model, while supporting diversity in tech through initiatives like Women in Security and Privacy.
Company Size
51-200
Company Stage
N/A
Total Funding
N/A
Headquarters
San Francisco, California
Founded
2009
Help us improve and share your feedback! Did you find this helpful?
Health Insurance
Dental Insurance
Vision Insurance
401(k) Company Match
Unlimited Paid Time Off
Paid Sick Leave
Paid Holidays
Remote Work Options
Company Equity
Wellness Program
ZenGRC, a compliance platform for lean teams, has partnered with Accorian, a Top 5 HITRUST Authorized External Assessor, to offer healthcare organisations an integrated compliance solution combining platform technology with assessment services. The partnership addresses a common industry challenge where healthcare technology companies typically use separate vendors for GRC platforms, readiness consulting and formal assessments, creating documentation gaps and inefficiencies. The combined offering includes HITRUST readiness and certification, third-party risk management and compliance programme management, all managed within ZenGRC's platform. Accorian brings extensive credentials, having completed over 500 HITRUST assessments since 2018 with a 100% certification success rate. The partnership eliminates handoff friction by connecting advisory, platform and assessment services from the outset.
ZenGRC has launched a direct API integration with HITRUST MyCSF to automate evidence submission and eliminate duplicate compliance work for healthcare organisations. The integration connects ZenGRC's governance, risk and compliance platform directly to HITRUST's assessment platform. The system allows organisations to submit evidence from ZenGRC to MyCSF without manual re-entry, cross-map controls between HIPAA, HITRUST and other frameworks, and track approval workflows. It addresses a common problem where healthcare compliance teams manage separate HIPAA and HITRUST programmes on different systems, resulting in duplicate evidence collection and manual preparation. ZenGRC's platform includes 117 automated integrations with cloud infrastructure, identity providers and security tools. The company will demonstrate the integration at ViVE 2026 in Los Angeles from 22-25 February.