4 часа назад
Security GRC Manager (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security GRC Manager (AI) (Security Compliance): Running Humaans’ year-round security compliance programme across ISO 27001, SOC 1, SOC 2 and HIPAA, with an accent on audit operations, evidence management, customer trust and AI-assisted workflows. Focus on building reusable systems for policies, questionnaires and trust collateral, coordinating control owners and auditors, and translating risk requirements into practical SaaS controls.
Location: London, United Kingdom. This is an in-person role with office attendance Monday through Thursday.
Company
is an early-stage HR technology company building an AI-powered platform for workforce data and HR operations.
What you will do
- Own the security compliance programme across ISO 27001, SOC 1, SOC 2, HIPAA and future frameworks.
- Run year-round audit cycles, coordinating external auditors and control owners across Engineering, People, Legal, Finance and Operations.
- Maintain controls, evidence, policies, risk registers, access reviews, vendor reviews, business continuity processes and incident response documentation.
- Build AI-assisted workflows for policy drafting, evidence maintenance, questionnaire responses and recurring trust work.
- Lead customer-facing security reviews, procurement processes, RFPs, DPAs, vendor questionnaires and enterprise diligence.
- Partner with Product and Engineering to turn compliance requirements into practical, risk-based operational controls.
Requirements
- 4+ years of experience in security compliance, GRC, trust, audit, information security, privacy operations or a related field.
- Hands-on experience supporting audits across SOC 2, ISO 27001, SOC 1, HIPAA or GDPR.
- Experience supporting enterprise sales, procurement, RFPs or security reviews and leading customer security conversations.
- Experience building AI-enabled workflows that improve policy drafting, questionnaire turnaround or vendor reviews.
- Strong written communication, organisation, attention to detail and risk-based judgement.
- Understanding of B2B SaaS operations across cloud infrastructure, access management, vendor management, product development, customer data and enterprise sales.
Nice to have
- Experience building or owning a trust centre, customer-facing security portal or security questionnaire answer library.
Culture & Benefits
- In-person collaboration with the team working from the office Monday through Thursday.
- 25 days of paid time off plus public holidays.
- Share options with a five-year exercise window.
- Private health, vision and dental coverage, enhanced parental leave and a learning and development budget.
- Company-provided MacBook, Thursday lunches at headquarters, quarterly team events and company offsites.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 часа назад
Senior IT Security & Compliance Lead (AI)
6 дней назад
IT Operations & Cyber Lead (AI/Robotics)
7 часов назад
Senior Manager, Cyber Security Engineering
100 000 - 125 000GBP
2 дня назад
GRC Assurance Manager (Cybersecurity)
4 часа назад
Senior Security Engineer (Cybersecurity)
5 дней назад