GRC Engineer
Core
Own and mature the company's governance, risk, and compliance program by replacing manual processes with AI-assisted, automated, and agentic workflows for continuous controls monitoring, audit management, and vendor risk.
Role type
Senior GRC Engineer (AI-forward automation focus)
Builds
Automated GRC workflows, continuous controls monitoring pipelines, AI-assisted policy drafting, and self-service trust portals
Domain
Cybersecurity compliance, AI governance, and supply chain risk
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
GRC program ownership, SOC 2 audit management, vendor risk assessment, AI tool integration, policy development, regulatory landscape monitoring
Preferred skills
CISA, CRISC, CISSP, CIPP certifications, experience with Vanta platform, knowledge of NIST AI RMF and ISO 42001
Technologies
Vanta, AI automation tools, cookie consent management tooling
Responsibilities
Design AI-driven risk management workflows, lead SOC 2 Type II audits, engineer automated vendor risk programs, modernize security awareness training, and support operational privacy practices
Seniority
Senior, hands-on IC