Principal Security GRC Analyst
R
RescaleDigital Engineering, HPC
Remote (United States)Full-TimePrincipal
Salary$150K - $200K; $150K – $200K • Offers Equity; Estimated Base Salary $150K – $200K • Offers Equity
Apply NowOpens the employer's application page
Job Details
- Experience
- 8+ years
- Required Skills
- Risk Management
Requirements
- 8+ years of experience with multiple compliance frameworks and audits.
- Demonstrated experience managing complex compliance implementation projects.
- Deep expertise in at least one security framework such as SOC2 Type II, ISO 27001, FedRAMP, or NIST SP 800 series.
- Ability to adapt to changes in a fast-scaling tech environment.
- Exposure to additional regulations such as GDPR, ITAR, EAR, NISPOM, and CMMC is a plus.
- Professional certifications such as CISM, GSLC, Security +CE, or CISSP are a plus.
Responsibilities
- Mature the comprehensive security governance, risk, and compliance program under the Director of Compliance.
- Engage directly with auditors and government officials across frameworks like NIST SP 800 series, FedRAMP, SOC 2, and ISO 27001.
- Leverage AI to enable product compliance with existing and new frameworks.
- Own and drive multi-quarter or multi-year projects to ensure framework compliance.
- Interact with security and IT teams to gather audit evidence.
- Collaborate with engineering, product, and platform teams to translate compliance requirements into implementable controls.
- Represent the compliance program in customer-facing discussions, security questionnaires, and due diligence reviews.
- Draft policies and procedures to improve company compliance and privacy.
View Full Description & ApplyYou'll be redirected to the employer's site