
GRC Engineer I – Special Programs
Posted Sep 17

Posted Sep 17
This is a fully remote position, open to applicants in India.
• Implement comprehensive client compliance initiatives that align with SOC 2, ISO 27001, and regulatory standards.
• Manage policy and evidence repositories by drafting and updating security policies, standard operating procedures, and control evidence.
• Identify, assess, monitor, and address cybersecurity risks and control gaps in collaboration with cross-functional technical teams.
• Oversee compliance milestones, evidence collection, task execution, project deliverables, and timelines across multiple client engagements simultaneously.
• Engage directly with client stakeholders through email, chat, and video calls.
• Collect evidence, clarify control requirements, and provide updates on engagements.
• Conduct structured control testing and readiness assessments.
• Work with internal IT, security, and operations teams to develop corrective action plans.
• Revise delivery templates, playbooks, and standard operating procedures.
• Manage active client accounts within the initial 15 days.
• Act as the primary contact for a portfolio of accounts.
• Lead engagements from start to finish and address escalations with promptness.
• Supervise client accounts and manage a team of analysts across SOC 2, ISO 27001, and NIST CSF frameworks.
• Demonstrated capability to communicate directly with U.S. clients.
• Strong organizational skills to handle multiple cybersecurity compliance projects simultaneously.
• Hands-on execution experience with SOC 2, ISO 27001, or NIST CSF frameworks in technology-oriented cybersecurity settings.
• Practical knowledge in authoring, implementing, and enforcing enterprise cybersecurity policies and control benchmarks.
• Ability to excel in fast-paced startup environments and adapt to changing priorities.
• Exceptional written and verbal communication skills in English for both executive and technical discussions.
• Practical experience with automated compliance solutions like Vanta or similar GRC platforms.
• Familiarity with GDPR, HIPAA, or PCI DSS regulations.
• Industry-recognized certification such as ISO 27001 Lead Implementer, CISA, or Security+.
• Excellent written and verbal communication skills in English.
• Reliable, high-speed internet access.
• Professional home office setup conducive to confidential discussions and seamless collaboration.
• Availability to work from 8:00 AM to 5:00 PM U.S. Eastern Time.
• Willingness and ability to travel locally for occasional onsite meetings, team events, or business activities.
• Participation in live video interviews with the camera on.
• Identity verification and background screening, as allowed by law.
• Opportunities for career development through mentorship and training.
• Reimbursement for approved training and certification programs relevant to the current position.
• Competitive base salary with regular performance evaluations tied to merit-based reviews.
• Possibility of bonuses.
• Considerable potential for career progression.
• Flexibility to work remotely from anywhere while collaborating with a global team.
LabConnect
Ripple Effect
Binance
biBerk Business Insurance
Get handpicked remote jobs straight to your inbox weekly.