Remotely
securitycloud infrastructurecompliancerisk managementgrcendpoint securityiamsoc 2
Job Description
📋 Description
- Own and mature our compliance framework: continuous controls monitoring, develop security awareness
- Automate GRC — evidence collection, questionnaire responses, risk management workflows, and
- Own the third-party risk management (TPRM) program: vendor security assessments, risk tiering
- Develop, maintain, and mature our risk management program — risk register, risk assessments
- Write, maintain, and update security policies and procedures, keeping documentation current as our
- Own and scale customer assurance end to end — security questionnaires, evidence requests, trust
🎯 Requirements
- 3-5 years operating and scaling security GRC, compliance, or customer assurance programs in
- Hands on security knowledge — designed and developed the technical controls behind the frameworks
- Meticulous attention to detail for working through sensitive or content-heavy documents line by
- Strong cross-functional coordination across People, Legal, IT, Operations, Engineering, and
- Hands-on experience writing, maintaining, and updating security policies, standards, and procedures.
- Hands-on experience with SOC 2 or equivalent and customer assurance (security questionnaires
🎁 Benefits
- Work wherever you want! As a fully remote company with no central office, we want you to work
- Competitive cash and equity compensation in a hyper growth, early stage company 🚀.
- Stipend to set-up your ideal working environment.
- Competitive Benefit Plans for employees based on your location (e.g., medical, dental, vision, 401k
- Unlimited PTO.
- 3 day weekend every month! We take off the “First Friday” every month to focus on rest
Back to all jobs