GRC Analyst: Scale AI Security & Compliance

Fluidstack

San Francisco (CA)

On-site

USD 218,000 - 269,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Equity
Health, dental, and vision insurance
Generous PTO
Retirement plan

Job summary

Fluidstack is seeking a Security Compliance Lead in San Francisco to own end-to-end controls across SOC 2 Type II, ISO 27001, NIST 800-53, and FedRAMP, building a scalable program for global sites.

You will collaborate with engineering and operations to gather evidence, manage audit readiness, and close findings with external auditors, while aligning policy with evolving regulatory requirements.

Qualifications

  • Experience leading controls and pulling evidence against one or more security frameworks (SOC 2, ISO 27001, NIST 800-53, or FedRAMP).
  • Proven ability to own a compliance documentation set, policies, procedures, and narratives and keep them current.
  • Experience defending controls in front of auditors and closing findings without escalation.
  • Ability to drive evidence collection from busy engineers and owners across the organization on time.

Responsibilities

  • Run end-to-end SOC 2 Type II, ISO 27001, NIST 800-53, or FedRAMP initiatives and audit preparation.
  • Own policy and procedure sets; maintain review cycles as the program grows.
  • Coordinate control operations, access reviews, evidence refreshes, and attestations with system owners.
  • Lead POA&M management and closure with external auditors and assessors.
  • Scale the program to new sites and teams, mapping systems to existing controls for consistent coverage.

Skills

SOC 2
ISO 27001
NIST 800-53
FedRAMP
Audit management
Policy writing
Evidence collection
Cross-functional collaboration

Tools

Vanta

Job description

Fluidstack is seeking a Security Compliance Lead in San Francisco to own end-to-end controls across SOC 2 Type II, ISO 27001, NIST 800-53, and FedRAMP, building a scalable program for global sites.

You will collaborate with engineering and operations to gather evidence, manage audit readiness, and close findings with external auditors, while aligning policy with evolving regulatory requirements.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security GRC Analyst (FedRAMP, SOC 2, ISO 27001)
Senior Security GRC Analyst (FedRAMP, SOC 2, ISO 27001)

Rescale • United States

Remote
USD 150,000 - 230,000
GRC Lead: AI Compliance Certifications (SOC 2, ISO 27001)
GRC Lead: AI Compliance Certifications (SOC 2, ISO 27001)

Thinking Machines Lab Inc. • San Francisco (CA), Northern (KY)

Hybrid
USD 225,000 - 350,000
Health, dental, and vision benefits
Unlimited PTO
Paid parental leave
+1
GRC Lead for AI Security: SOC 2 & ISO 27001
GRC Lead for AI Security: SOC 2 & ISO 27001

Replit • Foster City (CA)

On-site
USD 180,000 - 240,000
401(k) program
Health insurance
Dental insurance
+10
GRC Analyst: Security & Compliance Lead for SaaS
GRC Analyst: Security & Compliance Lead for SaaS

Fireworks AI • San Mateo (CA)

On-site
USD 110,000 - 170,000
GRC Analyst — Lead Security & Compliance at Scale
GRC Analyst — Lead Security & Compliance at Scale

Zip • United States

On-site
USD 95,000 - 150,000
Start-up equity
Health, vision & dental coverage
Catered meals
+7
Lead GRC Engineer: AI-Driven Security Automation
Lead GRC Engineer: AI-Driven Security Automation

Higgsfield • San Francisco (CA)

Hybrid
USD 220,000 - 280,000
Stock options
Discretionary annual bonus
Medical, dental, vision insurance
+2
GRC Analyst
GRC Analyst

Fluidstack • San Francisco (CA)

On-site
USD 218,000 - 269,000
Equity
Health, dental, and vision insurance
Generous PTO
+1
Security GRC Engineer — Automation & Cloud Compliance
Security GRC Engineer — Automation & Cloud Compliance

candidhealth • San Francisco (CA)

On-site
USD 180,000 - 258,000
GRC & Risk Analyst – SOC 2, ISO 27001, PCI
GRC & Risk Analyst – SOC 2, ISO 27001, PCI

CloudData • United States

On-site
USD 80,000 - 100,000
Lead GRC Engineer: AI Security Automation (Hybrid SF)
Lead GRC Engineer: AI Security Automation (Hybrid SF)

Higgsfield AI • San Francisco (CA)

Hybrid
USD 220,000 - 280,000
Stock options
401(k) with company matching
Medical, dental, and vision insurance