Base is America’s next-generation power company. We’re rebuilding the foundation of modern civilization–electricity–by deploying a vast network of distributed batteries that is transforming today’s fragile, centralized grid into a resilient and abundant system. We are engineers, operators, and creatives solving some of the most complex, interdisciplinary challenges of our time.
We are seeking a GRC Analyst to help build and run Base’s security governance, risk, and compliance program as the company scales across software, hardware, manufacturing, field operations, and energy infrastructure.
What you'd do
- 3+ years in security compliance, IT audit, or GRC, including at least one SOC 2 cycle owned start to finish
- Enough technical depth to judge a control yourself - read a SIEM configuration, an identity provider's MFA settings, or a cloud audit log and decide whether it holds up
- Strong organizational and interpersonal skills to coordinate across teams and stakeholders
- Hands-on ownership of a GRC platform — Secureframe, Vanta, Drata, or similar — including configuring integrations
- Experience building and running a third-party risk program
- Comfortable holding remediation deadlines with engineering or operations in a fast-moving environment
- First Principles Thinking: Question assumptions. Principles > rules.
- Operate at Base Pace: Focus on what matters, act quickly, and learn by doing.
- Give & Get Feedback: Be direct, be humble, and maintain a growth mindset.
- Everyone’s an Owner: Follow through on commitments and own results.