Security GRC Engineer
Core
Design, implement, and scale governance, risk, and compliance (GRC) programs, leading automation of compliance workflows and building self-serve tools for GTM teams.
Role type
Security GRC Engineer
Builds
Automated compliance workflows, self-serve tools for GTM teams, security documentation
Domain
Cybersecurity, AI Governance, Compliance
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
GRC frameworks (SOC 2, ISO 27001, ISO 42001, AIUC-1), technical implementation, cross-functional collaboration, audit management, contract negotiation support, incident response communication, policy maintenance
Preferred skills
Experience tracing external claims to product configuration, using coding agents for verification
Technologies
Coding agents
Responsibilities
Automate evidence gathering and continuous control testing; Own relationships with audit firms and customers; Conduct security compliance reviews for new products, features, and vendors; Support Legal in contract negotiations; Support incident response communications; Build self-serve documentation and tools; Maintain corporate security policies
Seniority
Individual Contributor