Назад
Company hidden
4 часа назад

Security GRC Manager (AI)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security GRC Manager (AI) (Security Compliance): Running Humaans’ year-round security compliance programme across ISO 27001, SOC 1, SOC 2 and HIPAA, with an accent on audit operations, evidence management, customer trust and AI-assisted workflows. Focus on building reusable systems for policies, questionnaires and trust collateral, coordinating control owners and auditors, and translating risk requirements into practical SaaS controls.

Location: London, United Kingdom. This is an in-person role with office attendance Monday through Thursday.

Company

hirify.global is an early-stage HR technology company building an AI-powered platform for workforce data and HR operations.

What you will do

  • Own the security compliance programme across ISO 27001, SOC 1, SOC 2, HIPAA and future frameworks.
  • Run year-round audit cycles, coordinating external auditors and control owners across Engineering, People, Legal, Finance and Operations.
  • Maintain controls, evidence, policies, risk registers, access reviews, vendor reviews, business continuity processes and incident response documentation.
  • Build AI-assisted workflows for policy drafting, evidence maintenance, questionnaire responses and recurring trust work.
  • Lead customer-facing security reviews, procurement processes, RFPs, DPAs, vendor questionnaires and enterprise diligence.
  • Partner with Product and Engineering to turn compliance requirements into practical, risk-based operational controls.

Requirements

  • 4+ years of experience in security compliance, GRC, trust, audit, information security, privacy operations or a related field.
  • Hands-on experience supporting audits across SOC 2, ISO 27001, SOC 1, HIPAA or GDPR.
  • Experience supporting enterprise sales, procurement, RFPs or security reviews and leading customer security conversations.
  • Experience building AI-enabled workflows that improve policy drafting, questionnaire turnaround or vendor reviews.
  • Strong written communication, organisation, attention to detail and risk-based judgement.
  • Understanding of B2B SaaS operations across cloud infrastructure, access management, vendor management, product development, customer data and enterprise sales.

Nice to have

  • Experience building or owning a trust centre, customer-facing security portal or security questionnaire answer library.

Culture & Benefits

  • In-person collaboration with the team working from the office Monday through Thursday.
  • 25 days of paid time off plus public holidays.
  • Share options with a five-year exercise window.
  • Private health, vision and dental coverage, enhanced parental leave and a learning and development budget.
  • Company-provided MacBook, Thursday lunches at headquarters, quarterly team events and company offsites.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →