GRC Engineer I – Special Programs

Posted Sep 17

This is a fully remote position, open to applicants in Philippines.

📋 Description

• Implement comprehensive client compliance initiatives in accordance with SOC 2, ISO 27001, and regulatory standards.

• Create and revise corporate security policies, standard operating procedures, and control evidence for audits and evaluations.

• Collaborate with technical teams to monitor, assess, and address cybersecurity risks and control deficiencies.

• Monitor compliance milestones, evidence collection, and task execution across multiple client projects.

• Engage directly with client stakeholders through email, chat, and video conferencing.

• Collect evidence, clarify control expectations, and provide updates on engagements.

• Conduct structured control testing and readiness assessments.

• Work alongside IT, security, and operations teams on corrective action strategies.

• Revise delivery templates, playbooks, and standard operating procedures.

• Act as the main point of contact for a portfolio of accounts.

• Lead client engagements from start to finish and address escalated issues.

• Oversee accounts and manage a team of analysts across SOC 2, ISO 27001, and NIST CSF.

• Become integrated into the organization and manage active client accounts within the initial 15 days.


⛳️ Requirements

• Demonstrated experience communicating directly with U.S. clients.

• Strong organizational skills to handle multiple cybersecurity compliance projects concurrently.

• Practical execution experience with SOC 2, ISO 27001, or NIST CSF frameworks in technology-driven cybersecurity settings.

• Familiarity in authoring, implementing, and enforcing enterprise cybersecurity policies and control benchmarks.

• Capability to excel in fast-paced startup environments and adapt to changing priorities.

• Exceptional written and verbal communication skills in English.

• Hands-on experience with automated compliance tools such as Vanta or similar GRC platforms.

• Knowledge of GDPR, HIPAA, or PCI DSS regulations.

• Relevant certifications such as ISO 27001 Lead Implementer, CISA, or Security+.

• Dependable, high-speed internet connection.

• Professional home office setup to ensure confidentiality and uninterrupted collaboration.

• Availability to work from 8:00 AM to 5:00 PM U.S. Eastern Time.

• Willingness and capability to travel locally for occasional onsite meetings, team events, or business activities.

• Participation in live video interviews with the camera enabled.

• Identity verification and background checks, as permitted by law.

• Proficiency in written and spoken English communication.


🏝️ Benefits

• Opportunities for career growth with mentorship and training programs.

• Reimbursement for approved training and certification programs related to the current position.

• Competitive base salary with regular performance assessments tied to merit-based evaluations.

• Opportunities for bonuses.

• Significant potential for career progression.

• Remote-first work flexibility, enabling collaboration from anywhere with a global team.

People also viewed

LabConnect22 hours ago

Head of IT Governance, Risk, Compliance

US flagTennessee OnlyFull-timeCompliance
ApplyView job
Ripple Effect1 day ago

Compliance Analyst

US flagMaryland OnlyFull-timeCompliance$85.3k – $98.1k/year
ApplyView job
Binance1 day ago

Team Lead – Compliance Monitoring, Assurance & Testing

AE flagUnited Arab Emirates (UAE) OnlyFull-timeCompliance
ApplyView job
biBerk Business Insurance1 day ago

Claims Compliance Analyst – Workers' Compensation

US flagUnited States OnlyFull-timeCompliance$77k – $96.5k/year
ApplyView job
Doppel1 day ago

Director, Governance, Risk & Compliance

US flagUnited States OnlyFull-timeCompliance
ApplyView job
PingWind Inc. (SDVOSB)1 day ago

Risk and Compliance Analyst

US flagUnited States OnlyFull-timeCompliance
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers