GRC Compliance Specialist
Core
Scale compliance frameworks and maintain an audit-ready state for an AI workforce orchestration platform.
Role type
GRC Compliance Specialist
Builds
SOC 2 Type II and ISO 27001 compliance posture
Domain
AI Infrastructure / Cybersecurity Compliance
Deliverable
production ML models | dashboards & analysis
Required skills
GRC frameworks (SOC 2, ISO 27001), GRC automation platforms (Vanta, Drata), technical security controls (encryption, IAM, CI/CD, cloud logs), risk assessment, vendor security reviews
Preferred skills
CISA, CRISC certifications, cloud infrastructure (AWS/GCP), high-growth SaaS startup experience
Technologies
Vanta, Drata, Secureframe
Responsibilities
Maintain and improve compliance posture for SOC 2 Type II and ISO 27001; Administer GRC platforms to automate evidence collection; Lead external audit cycles; Own security questionnaire process and build Trust Center; Conduct internal risk assessments and vendor security reviews
Seniority
Mid-level, hands-on IC