Назад
Company hidden
4 дня назад

GRC Engineer

200 000 - 250 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
GRC Engineer: Building and leading scalable security risk, compliance, and assurance programs for an AI-powered physical security platform with an accent on automated controls monitoring, audit readiness, and customer assurance. Focus on conducting risk and vendor assessments, developing corrective action plans, and leveraging AWS, scripting, and AI to automate evidence collection and continuous compliance.

Location: San Mateo, California, United States; onsite five days per week

Annual pay range: $200,000–$250,000 USD in on-target earnings

Company

hirify.global develops an AI-powered physical security platform covering video security, access control, air quality sensors, alarms, intercoms, and visitor management.

What you will do

  • Build and lead the GRCA function within the Security Team, maintaining the roadmap for continuous security compliance across corporate, IT, and product environments.
  • Work with Security, IT, Engineering, Product, and Legal to implement, test, monitor, and automate security controls across platforms including AWS and GitHub.
  • Develop security policies, procedures, training materials, and communications covering applicable laws, regulations, and controls.
  • Perform annual security risk assessments, prepare risk treatment plans, manage corrective action plans, and oversee the Security Exception Process.
  • Conduct vendor security assessments, support Business Impact Assessments and annual business continuity and disaster recovery activities, and maintain customer security questionnaire FAQs.
  • Work with internal and external auditors to support continuous compliance and communicate progress, escalations, and issue resolution to stakeholders.

Requirements

  • Must be willing and able to work onsite five days per week in San Mateo, California.
  • At least 7 years of security or IT compliance experience, or equivalent experience.
  • Experience with compliance for software companies and audits, risk, and compliance programs such as SOC 2 and ISO 27001 for cloud software products.
  • Experience with AWS or another cloud service provider.
  • Strong written and spoken communication skills, with the ability to work autonomously across cross-functional teams in ambiguous situations.
  • Ability to multitask, prioritize work, and meet deadlines in a fast-paced environment.

Nice to have

  • Experience with scripting languages such as Python and JSON.
  • Experience automating audit evidence collection.

Culture & Benefits

  • Healthcare, medical, vision, and dental coverage, including employee premium coverage under at least one healthcare plan.
  • HSA employer contributions, FSA options, expanded mental health support, and fertility benefits.
  • Paid parental leave, paid holidays, extended firmwide holidays, flexible PTO, and personal sick time.
  • Professional development stipend, wellness and fitness benefits, daily healthy lunches, and commuter benefits.
  • Employment visa sponsorship is available, including taking over sponsorship where applicable.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →