Added
less than a minute ago
Location
Type
Full time
Salary
Upgrade to Premium to se...
Related skills
terraform aws python typescript ci/cdπ Description
- Lead SOC 2 and ISO 27001 programs through audits and remediation.
- Drive expansion to new frameworks from gap analysis to audits.
- Map controls across frameworks; maintain policies and procedures.
- Manage auditors, assessors, consultants, and customers; coordinate audits.
- Build integrations to gather evidence from AWS, GitHub, IdP, and internal systems.
- Design control monitoring with dashboards and KPIs.
- Own the GRC platform; configure mappings and integrations.
- Integrate checks into CI/CD and IaC pipelines for compliant shipping.
- Build self-serve tools for security questionnaires and due diligence.
- Partner with GTM on security assessments and sales enablement.
- Reduce response time on security reviews via automation.
- Evaluate vendors for security/compliance; build vendor assessments.
- Deliver security awareness training and drive company-wide adoption.
- Maintain continuous audit readiness; audits are routine.
- Progress frameworks on a clear timeline aligned with business needs.
- Automate evidence collection and monitoring to free time.
- GTM can respond quickly to security assessments.
- Engineers see compliance as an integrated workflow.
- Become an expert in Fieldguide products in your role.
π― Requirements
- SOC 2 and ISO 27001 program management through audits.
- AI-native; use LLMs for evidence, policy drafting, responses.
- Build integrations and automate evidence collection.
- Strong AWS, CI/CD knowledge; discuss controls with engineers.
- Clear communicator with engineers, auditors, and customers.
- Thrives in ambiguous, multi-workstream programs.
- 6+ years in security compliance/GRC/audit; SOC 2 and ISO 27001 experience.
- Experience with compliance automation platforms; automate controls.
- AWS security services, CloudTrail, Config, Security Hub, IAM; programmatic integration.
- IaC tools (Terraform, CloudFormation) and CI/CD experience.
- Experience with AI governance (ISO 42001) a plus.
- Public accounting/audit experience a plus.
- Certifications: CISA/CISSP/CISM/ISO27001 Lead Auditor a plus.
- Nice to have: Python/TypeScript coding and API/cloud integrations.
- Nice to have: FedRAMP experience.
π Benefits
- Competitive compensation with ownership.
- Flexible PTO.
- 401k.
- Wellness benefits.
- Technology & Work from Home reimbursement.
- Flexible work schedules.
Meet JobCopilot: Your Personal AI Job Hunter
Automatically Apply to Operations Jobs. Just set your
preferences and Job Copilot will do the rest β finding, filtering, and applying while you focus on what matters.
Help us maintain the quality of jobs posted on Empllo!
Is this position not a remote job?
Let us know!