Job Description
📋 Description Run the customer security questionnaire program end-to-end and build a reusable answer library. Operate risk and control workflows; triage risks and track closure to completion. Run GRC analyses to align standards and controls with policies. Build and maintain the GRC toolchain; automate workflows and integrations. Create internal GRC docs and company-wide policies. 🎯 Requirements 4+ years in security compliance, GRC, or related fields. Familiar with ISO 27001/27002, SOC 2, PCI DSS, GDPR/CPRA and translating to day-to-day controls. Hands-on experience with evidence collection, control tracking, risk register upkeep. Automation-focused; builds tooling and repeatable workflows to replace manual work. Comfort with GRC platforms, ticketing, docs, and keeping data clean. Clear writing and turning dense requirements into usable guidance. 🎁 Benefits Equity + benefits Relocation assistance may be available Hybrid work schedule: in-office 2 days/week in SF Bay Area Reasonable accommodations during the interview process