Senior GRC Expert (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior GRC Expert (Cybersecurity): Managing information security compliance programs and audits for a cloud-native platform with an accent on ISO/SOC2 framework adherence and control automation. Focus on driving security posture through risk assessment, cross-functional collaboration, and technical compliance maturity.
Location: Must be based in Austin, Texas (in office 2x a week)
Salary: $130,000–$150,000
Company
provides a cloud-native platform for businesses and governments to adopt Zero Trust and prevent data theft.
What you will do
- Plan and lead internal and external audits, including ISO 27001/27017/27018/27701 and SOC 2.
- Design, implement, and maintain security controls mapped to corporate policies and frameworks like NIST and CIS.
- Manage the GRC compliance platform, including control monitoring, evidence management, and audit workflows.
- Coordinate with cross-functional teams to close compliance gaps and improve security posture.
- Respond to customer security questionnaires and internal security documentation requests.
- Report compliance metrics and Key Risk Indicators (KRIs) to leadership.
Requirements
- 5+ years of experience in information security or GRC.
- 3+ years of experience in a cloud product environment (AWS preferred).
- Demonstrated experience leading ISO and SOC 2 audits.
- Must have the right to work in the United States.
- Strong knowledge of security frameworks (NIST 800-53, CIS, ISO).
- Ability to communicate technical security requirements to diverse stakeholders.
Nice to have
- CISSP, CISM, or GIAC certifications.
Culture & Benefits
- Comprehensive total compensation package.
- Inclusive and diverse work environment.
- Opportunities for professional growth within a global security organization.
- Flexible work arrangements balanced with office collaboration.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →