
GRC, Compliance Lead
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in United States.
• Collaborate with an external software development organization as an integral part of Inviso’s delivery team.
• Assist in establishing practical, engineering-friendly governance, risk, and compliance protocols for an enterprise AI platform.
• Design, implement, and enhance a compliance program for a multi-tenant enterprise platform catering to regulated and mission-critical customer environments.
• Support readiness for SOC 2 and ISO compliance.
• Define controls, gather evidence, identify gaps, and assist in audit preparation.
• Develop customer security documentation and provide support for customer assurance.
• Offer guidance on data management, retention, access control, regulatory requirements, and customer assurance needs.
• Prepare for and assist in audits, customer security evaluations, and compliance assessments.
• Collaborate with engineering, security, product teams, auditors, customer security teams, and client stakeholders.
• Aid client teams in integrating compliance into the platform from its inception.
• Mitigate risk, enhance customer trust, and facilitate credible delivery without unnecessary friction.
• Proven experience in owning or supporting a security, governance, risk, or compliance program within a B2B SaaS, platform, or enterprise software setting.
• Familiarity with SOC 2, ISO 27001, or comparable compliance frameworks.
• Capability to define controls, map requirements, gather evidence, identify gaps, and support audit readiness.
• Experience in preparing security documentation for customers, including security questionnaires, DPAs, policies, or compliance materials.
• Ability to collaborate with engineering and security teams to ensure controls are practical, repeatable, and conducive to automation.
• Experience advising on data management, retention, access control, regulatory obligations, and customer assurance needs.
• Proficiency in preparing for and supporting audits, customer security evaluations, and compliance assessments.
• Excellent documentation, organizational, follow-through, and stakeholder management capabilities.
• Strong communication and collaboration skills suited for client-facing consulting environments.
• Pragmatic approach with the ability to support delivery while upholding credible compliance standards.
• Experience guiding a company or product through SOC 2, ISO 27001, or a similar certification process.
• Experience in automating evidence collection or integrating compliance into engineering workflows.
• Knowledge of GDPR or other significant data protection and privacy regulations.
• Experience in AI governance, responsible AI practices, model risk, data governance, or compliance for AI-driven products.
• Background in enterprise-scale B2B SaaS, regulated customer environments, or mission-critical software.
• Relevant compliance, audit, security, privacy, or risk certifications are advantageous.
• Medical insurance
• Dental insurance
• Vision insurance
• 401(k) plan with company match
• Annual training reimbursement
• Paid time off
• Paid holidays
• Additional perks to support your well-being and long-term success
• Competitive pay
• Opportunities for growth
Brightidea
Eli Lilly and Company
Cisco
GitLab
Get handpicked remote jobs straight to your inbox weekly.