GRC Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
GRC Engineer (Cybersecurity): Architect systems and processes that automate trust and compliance for an AI software creation platform with an accent on Compliance-as-Code and continuous monitoring. Focus on evolving frameworks like SOC 2 and ISO 27001, managing risk registers, and enabling enterprise sales through scalable third-party risk assessment.
Location: Hybrid in Foster City, CA (in office Monday, Wednesday, Friday)
Salary: $210K – $320K + Equity
Company
is the agentic software creation platform that enables anyone to build applications using natural language, serving millions of users and enterprise organizations.
What you will do
- Drive technical vision for GRC program, shifting to automated evidence collection and Compliance-as-Code.
- Partner with engineering, legal, sales, and auditors to integrate compliance into design, handle questionnaires, and manage relationships.
- Operate cybersecurity risk register, identify and track risks, and evolve compliance across SOC 2, ISO 27001, and future certifications.
- Automate controls, third-party risk assessments, and monitoring to scale GRC with business growth.
- Champion security culture by educating teams on controls and prioritizing real risks over compliance theater.
Requirements
- 8+ years in GRC or Information Security
- Technical fluency in engineering, cloud (GCP/AWS), and security architecture
- Deep experience with SOC 2, ISO 27001, PCI, HIPAA, and Privacy laws (GDPR, CCPA)
- Strong communication to explain risks to engineers, legal, and sales/execs
- Experience with GRC automation tools (Vanta, Drata) and automation mindset
- Pragmatic, solutions-oriented approach focused on business enablement
Nice to have
- Familiarity with FedRAMP, ITAR, or AI regulations (EU AI Act)
Culture & Benefits
- Competitive salary, equity, and 401(k) with 4% match
- Health, dental, vision, life insurance, short/long-term disability
- Paid parental, medical, caregiver leave; commuter benefits; wellness stipend
- Autonomous work environment, in-office setup reimbursement, flexible time off + holidays
- Quarterly team gatherings and in-office amenities
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →