Experience in scripting or automation with a focus on security, infrastructure, or GRC Knowledge of audit processes, evidence requirements, and remediation actions for security and compliance frameworks Ability to write scripts and basic code to automate audit and evidence gathering processes Ability to build API end points and command-line tools, work with structured data (JSON, CSV, YAML), and extract compliance-relevant information Experience owning a project or scope, building relationships, collaborating with both technical and non-technical teams and driving initiatives to completion