Quick Overview
Job Description
Required:
2+ years of experience in a GRC, IT compliance, or security operations role
Familiarity with SOC 2 (Type I or Type II) and the audit lifecycle
Experience managing vendors or external service providers
Strong written communication you'll be writing policies, auditor responses, and client-facing answers
Comfortable coordinating across departments (services, IT, sales, legal) to get information and drive action
Detail-oriented, organized, and able to manage multiple concurrent deadlines (audit cycles, questionnaires, vendor engagements)
Preferred:
Experience with compliance automation platforms (Vanta, Drata, Secureframe, Tugboat Logic)
Familiarity with additional frameworks (ISO 27001, HIPAA, PCI-DSS, GDPR/CCPA)
Experience responding to enterprise client security questionnaires (e.g., via SIG, CAIQ, or custom formats)
Relevant certifications: Security+, CISA, CRISC, or similar
Basic understanding of penetration testing methodology (enough to read and interpret vendor reports, not perform testing)
Similar jobs
- SX
Compliance officer Pharmacovigilance/Clinical Development
Stem Xpert
Hanover, NJ🇺🇸On-site12 years agoNursingPharmacovigilanceHealthcare - SX
Export Regulatory Trade Compliance Specialist
Stem Xpert
Dallas, TX🇺🇸On-site9 years agoVendor ManagementManufacturing - GI
Safety Specialist
NewGroome Industrial Service Group
Oologah🇺🇸YesterdayComplianceHTTPHeavy Equipment+3 - AL
Compliance Specialist
Abbott Laboratories
Altavista, VA🇺🇸Hybrid5 days ago5SOperations & Project Management - EX
Custom Compliance Analyst
NewExperis
Newark, NJ🇺🇸$30 - $37/hrHybridYesterdayMicrosoft ExcelSAPFinance - CS
Regulatory Affairs Manager
NewCynet Systems
Indianapolis, IN🇺🇸HybridYesterdaySOC 2AgileCompliance+4