
GRC, Compliance Lead
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Collaborate with an external software development organization as a member of Inviso’s delivery team
• Assist in establishing practical, engineering-friendly governance, risk, and compliance practices for an enterprise AI platform
• Define, implement, and enhance a compliance program for a multi-tenant enterprise platform that serves regulated and mission-critical customer environments
• Facilitate SOC 2 and ISO readiness initiatives
• Establish controls, gather evidence, identify gaps, and assist in audit preparations
• Create security documentation for customers and support assurance activities
• Provide guidance on data management, retention policies, access controls, regulatory obligations, and customer assurance requirements
• Collaborate with engineering, security, product teams, auditors, customer security teams, and client stakeholders
• Assist client teams in integrating compliance into the platform from the outset
• Mitigate risks, enhance customer trust, and ensure credible delivery with minimal friction
• Support audits, customer security evaluations, and compliance assessments
• Proven experience in managing or supporting a security, governance, risk, or compliance program within a B2B SaaS, platform, or enterprise software environment
• Familiarity with SOC 2, ISO 27001, or similar compliance frameworks
• Proficient in defining controls, mapping requirements, collecting evidence, identifying gaps, and facilitating audit readiness
• Experience in preparing customer-facing security documentation, security questionnaires, DPAs, policies, or compliance materials
• Ability to collaborate with engineering and security teams to create practical, repeatable, and automation-friendly controls
• Expertise in advising on data management, retention, access control, regulatory obligations, and customer assurance requirements
• Competence in preparing for and assisting with audits, customer security evaluations, and compliance assessments
• Strong skills in documentation, organization, follow-through, and stakeholder management
• Excellent communication and collaboration skills in client-facing consulting settings
• Pragmatic approach with the ability to support delivery while adhering to credible compliance standards
• Experience guiding a company or product through SOC 2, ISO 27001, or a comparable certification process
• Proficiency in automating evidence collection or incorporating compliance into engineering workflows
• Knowledge of GDPR or other significant data protection and privacy regulations
• Experience in AI governance, responsible AI practices, model risk, data governance, or compliance for AI-enabled products
• Background in enterprise-scale B2B SaaS, regulated customer environments, or mission-critical software
• Relevant certifications in compliance, audit, security, privacy, or risk are advantageous
• Medical insurance
• Dental insurance
• Vision insurance
• 401(k) plan with company match
• Annual training reimbursement
• Paid time off
• Paid holidays
• Additional perks designed to support well-being and long-term success
• Competitive pay
• Opportunities for growth
Sprinto
IRIUM
Centene Corporation
Get handpicked remote jobs straight to your inbox weekly.