
GRC Engineer I – Special Programs
Posted Sep 17

Posted Sep 17
This is a fully remote position, open to applicants in Philippines.
• Implement comprehensive client compliance initiatives in accordance with SOC 2, ISO 27001, and regulatory standards.
• Create and revise corporate security policies, standard operating procedures, and control evidence for audits and evaluations.
• Collaborate with technical teams to monitor, assess, and address cybersecurity risks and control deficiencies.
• Monitor compliance milestones, evidence collection, and task execution across multiple client projects.
• Engage directly with client stakeholders through email, chat, and video conferencing.
• Collect evidence, clarify control expectations, and provide updates on engagements.
• Conduct structured control testing and readiness assessments.
• Work alongside IT, security, and operations teams on corrective action strategies.
• Revise delivery templates, playbooks, and standard operating procedures.
• Act as the main point of contact for a portfolio of accounts.
• Lead client engagements from start to finish and address escalated issues.
• Oversee accounts and manage a team of analysts across SOC 2, ISO 27001, and NIST CSF.
• Become integrated into the organization and manage active client accounts within the initial 15 days.
• Demonstrated experience communicating directly with U.S. clients.
• Strong organizational skills to handle multiple cybersecurity compliance projects concurrently.
• Practical execution experience with SOC 2, ISO 27001, or NIST CSF frameworks in technology-driven cybersecurity settings.
• Familiarity in authoring, implementing, and enforcing enterprise cybersecurity policies and control benchmarks.
• Capability to excel in fast-paced startup environments and adapt to changing priorities.
• Exceptional written and verbal communication skills in English.
• Hands-on experience with automated compliance tools such as Vanta or similar GRC platforms.
• Knowledge of GDPR, HIPAA, or PCI DSS regulations.
• Relevant certifications such as ISO 27001 Lead Implementer, CISA, or Security+.
• Dependable, high-speed internet connection.
• Professional home office setup to ensure confidentiality and uninterrupted collaboration.
• Availability to work from 8:00 AM to 5:00 PM U.S. Eastern Time.
• Willingness and capability to travel locally for occasional onsite meetings, team events, or business activities.
• Participation in live video interviews with the camera enabled.
• Identity verification and background checks, as permitted by law.
• Proficiency in written and spoken English communication.
• Opportunities for career growth with mentorship and training programs.
• Reimbursement for approved training and certification programs related to the current position.
• Competitive base salary with regular performance assessments tied to merit-based evaluations.
• Opportunities for bonuses.
• Significant potential for career progression.
• Remote-first work flexibility, enabling collaboration from anywhere with a global team.
LabConnect
Ripple Effect
Binance
biBerk Business Insurance
Get handpicked remote jobs straight to your inbox weekly.