Job Description
📋 Description Own and operate compliance frameworks (SOC 2, ISO 27001, GDPR) Drive audits end-to-end: readiness, evidence collection, auditor coordination Automate controls to reduce compliance overhead Lead responses to customer security questionnaires and due diligence Collaborate with engineering to design practical security controls Maintain security docs (trust center, whitepapers, FAQs) 🎯 Requirements 3–7+ years in security GRC, compliance, or security engineering-adjacent roles Hands-on experience with SOC 2, ISO 27001, or similar Experience supporting audits and customer-facing security conversations Comfortable working with engineers and understanding systems (cloud, infra, APIs) Ability to translate between compliance language and technical implementation Experience with modern cloud environments (AWS, GCP, Azure) is a strong plus