Назад
Company hidden
1 час назад

Security GRC Specialist

230 000 - 275 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security GRC Specialist (SOC 2/ISO 27001): Owning and scaling security and compliance programs across audits, controls, risk assessments, and customer-facing security documentation with an accent on practical cloud, identity, and data-flow controls. Focus on automating evidence collection, driving remediation with engineering, and translating compliance requirements into scalable technical solutions.

Location: On-site in the NYC office, New York, United States

Salary: $230,000–$275,000 base salary per year, plus equity and benefits.

Company

hirify.global is an AI-search marketing platform providing analytics, intelligence, and agent automation for enterprise brands.

What you will do

  • Own and operate SOC 2, ISO 27001, GDPR, and other compliance frameworks.
  • Lead audit readiness, evidence collection, auditor coordination, and control mapping.
  • Partner with engineering to implement practical security controls across cloud infrastructure, data pipelines, and customer-facing systems.
  • Drive remediation, risk assessments, policy improvements, and compliance automation.
  • Support enterprise sales and customer success through security conversations, trust-center content, whitepapers, and customer documentation.
  • Work on identity and access requirements including SSO, SAML, SCIM, and IdP integrations.

Requirements

  • 7+ years of experience in security GRC, compliance, or adjacent security engineering roles.
  • Hands-on experience with SOC 2, ISO 27001, or similar frameworks.
  • Experience supporting audits and leading customer-facing security discussions.
  • Ability to reason about cloud infrastructure, APIs, identity systems, and data flows and translate between compliance and engineering requirements.
  • Proactive, hands-on approach with strong written communication and pragmatic decision-making.
  • Ability to work on-site from the NYC office.

Nice to have

  • Experience with AWS, GCP, or Azure.
  • Experience building or scaling an early-stage GRC program.
  • Background in security engineering, DevOps, or identity and access management.
  • Familiarity with compliance workflow automation and GRC tooling.

Culture & Benefits

  • Fast-moving environment focused on speed, iteration, and meaningful impact.
  • Opportunity to shape security and compliance practices at a rapidly scaling company.
  • Total compensation includes base salary, equity, and a full range of benefits and perks.
  • Close collaboration with engineering, sales, customer success, and leadership.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →