GRC Engineer I
United States · Remote · Full-time
- Posted 4w ago
- From Workstreet’s careers page
- Location
- United States
- Work mode
- Remote
- Type
- Full-time
- Level
- Entry Level
- Department
- Information Technology
Apply on Workstreet’s site
Opens the listing on ats.rippling.com
Let the right jobs find you
In your inbox every Wednesday and SaturdayPersonalised suggestions from verified career pages, matched to your role, location, level and skills.
About the role
What You'll Do
- Support foundational compliance programs by assisting in the design, implementation, and maintenance of cybersecurity initiatives aligned to SOC 2, ISO 27001, and regulatory standards.
- Formulate and update compliance documentation, systematically organizing corporate cybersecurity policies, operational procedures, and audit-ready control evidence.
- Isolate and track security risks, collaborating with internal and external engineering teams to close technical gaps and implement remediation plans.
- Coordinate cross-functional project tasks, managing documentation baselines, client tracking matrices, and delivery timelines under senior engineering guidance.
- Engage directly with client contacts via multi-channel pathways to execute rapid evidence collection, clarify control requirements, and deliver transparent status updates.
- Perform routine control testing and readiness reviews to verify system state configurations and maintain continuous regulatory alignment.
- Partner with internal IT, engineering, and operations teams to embed corrective configurations and fortify overall corporate security postures.
- Absorb technical mentorship from senior practitioners to rapidly iterate and improve operational playbooks, compliance templates, and delivery velocity.
Who You Are
- Disciplined compliance coordinator – Command sharp organizational skills to simultaneously support multiple fast-moving cybersecurity initiatives while systematically hitting target deadlines.
- Elite professional communicator – Deliver clear, precise written and verbal English communication, demonstrating the capability to translate complex technical rules into well-structured documentation.
- Client-facing relationship driver – Highly comfortable working directly with US-based client portfolios, establishing immediate rapport through proactive responsiveness and an uncompromising customer-first focus.
- Hands-on GRC analyst – Bring practical execution experience supporting or implementing core cybersecurity frameworks, explicitly including SOC 2, ISO 27001, or NIST CSF architectures.
- Policy governance practitioner – Familiar with engineering, maintaining, and reviewing corporate security policies against active operational and business constraints.
- Domain-native tech operator – Prior experience working within information security-focused technology environments, collaborating closely with engineering and cross-functional teams.
- High-velocity startup driver – Excel within fluid, fast-growth ecosystems, demonstrating the agility to wear multiple hats, pivot priorities on the fly, and assert immediate task ownership.
What will help you succeed
- Mastery of compliance automation architectures – Practical familiarity navigating automated evidence tracking and continuous control monitoring platforms like Vanta.
- Multi-framework compliance command – Supplemental operational knowledge of intersecting international frameworks and regulations, specifically GDPR, HIPAA, or PCI DSS.
- Validated industry credentials – Progress toward or possession of professional certifications such as ISO 27001 Lead Implementer, CISA, or CompTIA Security+.
What We Offer
- Career Development: Clear path with mentorship and training opportunities.
- Role-Related Training: Reimbursement for the successful completion of approved training and certification courses relevant to your current role.
- Competitive Compensation: A competitive base salary with regular performance reviews linked to merit-based appraisals and bonus opportunities.
- Growth Opportunity: Early-stage company with significant room for career advancement.
- Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team.
Skills they ask for
Pick one to see other roles that ask for it.
About Workstreet
Cybersecurity and compliance for growing companiesWorkstreet provides cybersecurity and compliance support for growing companies, including security programs, virtual CISO services, penetration testing, and questionnaire automation.
See all 16 roles at WorkstreetMore roles at Workstreet
See all 16- Human Resources AdministratorGurugram · Entry Level · On-siteHuman Resources · Entry Level · On-siteGurugram, India2d
- Account ExecutiveUnited States · Entry Level · RemoteSales · Entry Level · RemoteUnited States2d
- Vulnerability Management EngineerGurugram · Senior · RemoteInformation Technology · Senior · RemoteGurugram, India2d
- Senior GRC EngineerUnited States · Senior · RemoteInformation Technology · Senior · RemoteUnited States2d
Share this role
Let the right jobs find you
In your inbox every Wednesday and SaturdayPersonalised suggestions from verified career pages, matched to your role, location, level and skills.