North AmericaFull TimeOperations
Remotely
Listed on 2 job boards, which is a stronger signal than one board alone.
risk assessmentai governancesecurity controlssoc 2policiesnist csfvendor risk
Also available on
Job Description
📋 Description
- Remote-friendly role focusing on governance, risk, and compliance activities for security programs.
- Lead GRC workstreams from request through evidence collection, testing, remediation, and completion.
- Assess risks, map controls to frameworks, and collaborate with Security, IT, Engineering, Legal
- Support customer security questionnaires and translate requirements into actionable tasks for
🎯 Requirements
- Experience in security, compliance, risk, audit, privacy, or vendor risk.
- Familiarity with SOC 2, NIST CSF, or similar frameworks.
- Strong writing skills to explain complex security requirements clearly.
- Ability to connect policy requirements to real-world actions and evidence.
- Comfort working in a dynamic environment with multiple workstreams.
🎁 Benefits
- Flexible work hours and locations with emphasis on ownership and growth.
- Competitive base salary, equity, and comprehensive benefits.
- Remote-friendly with US HQ in NYC and tax considerations for non-office remote work.
Back to all jobs