Senior GRC Engineer

Workstreet

Philippines

Remote

PHP 60,000 - 90,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Career Development
Technical Training
Competitive Compensation
Growth Opportunity
Remote-First Culture

Job summary

A fast-growing cybersecurity startup is seeking a highly motivated Sr. GRC Engineer to enhance compliance frameworks and lead client engagements. The ideal candidate will have 3+ years in cybersecurity compliance, excellent communication skills, and a passion for managing multiple projects in a remote-first culture. Key responsibilities include developing compliance programs and serving as a primary contact for U.S. clients. This role offers competitive compensation and a clear path for career development.

Qualifications

  • 3+ years of leadership experience managing or guiding a small team.
  • Exceptional written and verbal English communication skills.
  • Experience working in cybersecurity compliance including SOC 2 or ISO 27001.

Responsibilities

  • Analyze and apply cybersecurity compliance requirements under SOC 2 and ISO 27001.
  • Create, implement, and maintain cybersecurity policies and procedures.
  • Oversee multiple client engagements, ensuring successful outcomes.

Skills

Project Management
Communication Skills
Cybersecurity Compliance
Leadership Experience

Tools

Vanta

Job description

At Workstreet, we’re on an exciting journey to help businesses scale securely by designing and implementing cutting‑edge security and compliance programs. As a fast‑growing startup, we specialize in a wide range of frameworks—including SOC 2, ISO 27001, GDPR, CMMC, NIST 800‑171, NIST 800‑53, and FedRAMP—empowering companies to meet regulatory requirements and enhance their cybersecurity posture from day one.

The Opportunity

We are seeking a highly motivated and detail‑oriented Sr. GRC Engineer to join our fast‑growing team. The ideal candidate will have a solid background in cybersecurity compliance frameworks such as SOC 2, ISO 27001, and NIST CSF.

This role requires excellent communication skills, the ability to manage multiple cybersecurity compliance projects simultaneously, and experience leading or managing a small team. The successful candidate will serve as a trusted compliance advisor to clients, leading engagements, managing escalations, and driving successful outcomes across multiple frameworks.

What You Will Do
  • Interpret Regulatory Frameworks: Analyze and apply cybersecurity compliance requirements under SOC 2, ISO 27001, HIPAA, and related standards.
  • Develop Compliance Programs: Create, implement, and maintain cybersecurity policies, procedures, and supporting documentation to meet audit and certification objectives.
  • Lead Compliance Projects: Oversee multiple client engagements, including audits, evidence collection, control mapping, and due diligence or incident response activities.
  • Serve as Primary Client Contact: Manage high‑complexity or long‑term accounts, ensuring consistent delivery and strong client relationships.
  • Communicate with Clients: Engage directly with U.S.‑based clients via phone, email, and text to address compliance concerns and deliver expert guidance.
  • Collaborate on Risk Management: Work with internal and external teams to identify, assess, and mitigate cybersecurity and compliance risks.
  • Lead Client Engagements: Conduct client meetings, provide progress updates, and prepare clients for upcoming audits and assessments.
  • Manage and Mentor Team Members: Provide direction, feedback, and professional development support to junior analysts.
  • Handle Escalations: Resolve complex client issues and requests with professionalism and solution‑oriented communication.
  • Drive Process Improvement: Enhance standard operating procedures, playbooks, and compliance frameworks to strengthen operational effectiveness.
Who You Are
  • Strong organizational skills with the ability to manage multiple cybersecurity compliance projects concurrently
  • 3+ years of leadership experience managing or guiding a small team
  • Exceptional written and verbal English communication skills
  • Proven ability to work directly with clients in the US
  • Experience working in cybersecurity compliance, including SOC 2, ISO 27001, or NIST CSF frameworks
  • Familiarity with creating and enforcing cybersecurity policies
  • Experience working in a tech company with a focus on cybersecurity
  • Thrives in a fast‑paced startup environment
Nice to Have
  • Experience with HIPAA, PCI DSS, or additional frameworks
  • Familiarity with Vanta or similar compliance automation platforms
  • Certifications such as CISA, CISSP, ISO 27001 Lead Implementer, or Security+
  • Prior experience handling audit coordination or third‑party assessments
  • Reliable high‑speed internet connection.
  • Quiet, professional home office setup.
  • Must be amenable to work US Eastern Time zone hours.
  • Fluency in written and verbal English communication skills.
  • Must be amenable to start in February or March 2026
What We Offer
  • Career Development: Clear path with mentorship and training opportunities
  • Technical Training: Comprehensive onboarding on security and compliance frameworks
  • Competitive Compensation: A competitive base salary with regular performance reviews linked to merit‑based appraisals and bonus opportunities.
  • Growth Opportunity: Early‑stage company with significant room for career advancement.
  • Remote‑First Culture: Flexibility to work from anywhere while collaborating with a global team.
Workstreet Is An Equal Opportunity Employer

As an equal opportunity employer, Workstreet is committed to providing employment opportunities to all individuals. All applicants for positions at Workstreet will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior GRC Lead: Compliance & Client Engagement (Remote)
Senior GRC Lead: Compliance & Client Engagement (Remote)

Workstreet • Philippines

Remote
PHP 60,000 - 90,000
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

Copeland India Private Ltd. • Quezon City

Hybrid
PHP 700,000 - 1,000,000
Flexible benefits plans
Paid parental leave
Vacation and holiday leave
Senior Governance Risk and Compliance Analyst
Senior Governance Risk and Compliance Analyst

Permhunt • Metro Manila

On-site
Competitive salary
Benefit package
On-call support
GRC Analyst
GRC Analyst

Fireworks • San Mateo

On-site
PHP 480,000 - 720,000
Sr Security Compliance Consultant
Sr Security Compliance Consultant

Truvo Cyber • Metro Manila

On-site
PHP 1,200,000 - 2,400,000
Cyber Governance, Risk and Compliance Specialist
Cyber Governance, Risk and Compliance Specialist

Virtual Business Partners Pty. Ltd. • Cebu City

On-site
PHP 800,000 - 1,200,000
HMO + Dental/Optical
Christmas vacation
Electricity & Data subsidies
+3
Information Security Analyst, GRC & ISMS
Information Security Analyst, GRC & ISMS

GMV • España

Hybrid
PHP 600,000 - 800,000
Hybrid working model
Flexible working hours
Competitive compensation
+1
Lead GRC Associate
Lead GRC Associate

MicroSourcing • Philippines

Hybrid
PHP 1,800,000 - 3,000,000
Healthcare day one**
Dependent coverage
Performance bonuses
Sr Cybersecurity Analyst - GRC
Sr Cybersecurity Analyst - GRC

Dexcom Inc. • Philippines

On-site
PHP 900,000 - 1,300,000
Full benefits program
Career development opportunities
Global growth opportunities
+1
GRC Lead
GRC Lead

MicroSourcing • Manila

Hybrid
PHP 1,800,000 - 2,400,000
Healthcare on day one
Performance bonuses
Paid time-off