Job Description
📋 Description Own and mature the company risk register with AI tooling for real-time posture. Lead SOC 2 Type II audits; automate evidence pipelines in Vanta. Engineer Trust & Assurance program for scale with AI-assisted workflows. Build automated vendor and supply chain risk program (intake, scoring, monitoring). Redesign security and privacy policies with AI-driven drafting and attestation. Drive always-on compliance via Vanta and automated controls monitoring. 🎯 Requirements 3+ years in GRC, information security, or risk management. Hands-on SOC 2 knowledge with audits or support. Familiarity with CIS Controls v8, NIST CSF, NIST AI RMF, NIST Privacy Framework, ISO 42001/27001. Experience conducting rapid third-party/vendor risk assessments. Strong organizational skills; able to manage multiple concurrent workstreams. Experience with Vanta (or equivalent) and AI tooling for automation. 🎁 Benefits Comprehensive Medical, Dental and Vision starting day 1 (80% covered). 401(k) with a match. 10 holidays, 20 vacation days, 5 sick days, 3 floating holidays. Basic Life and AD&D insurance fully covered. Short and Long Term Disability fully covered. Paid Family Leave and Employee Assistance Program.