
Staff Security GRC Engineer
Staff-level GRC role responsible for advancing the Information Security Management System (ISMS), supporting ISO 27001 and SOC 2 Type 2 audits (scope, evidence, interviews, findings), driving security policy creation and review cycles, tracking remediation, and partnering with engineering, legal, privacy, and other teams. Requires ~5 years of information security/GRC experience and hands-on involvement with ISO 27001 and SOC 2.













