GRC Engineer: Automate SOC 2 & Compliance at Scale

AegisAI, Inc.

United States

Remote

USD 120,000 - 180,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

AegisAI is seeking a GRC Engineer to advance the security program and own SOC 2 end-to-end compliance. You will map controls across frameworks, automate evidence collection via APIs, manage audits and questionnaires, and drive policy updates as we scale.

You will work with the head of security, engineers, and customers to ensure fast, transparent responses that close deals while protecting data. This role emphasizes automation, privacy regimes, and third-party risk with a startup-speed culture.

Qualifications

  • 4+ years in GRC, security compliance or audit at a SaaS company, with SOC 2 Type II experience.
  • Writes clear answers to enterprise security questionnaires to close threads.
  • Reads architecture diagrams and verifies controls across implementations.
  • Scripting in Python or similar; comfortable with APIs and avoiding duplicate evidence.
  • Familiar with major privacy regimes and data processor implications.
  • Organized, self-directed, and honest about gaps.

Responsibilities

  • Own Compliance end to end and manage auditor relationships.
  • Prepare for new certifications with proactive framework alignment.
  • Run the risk management program and maintain the risk register.
  • Maintain the policy suite and ensure customers understand it.
  • Own BC/DR and incident response plans and exercises.
  • Answer security questionnaires and manage TPRM end to end.
  • Manage vendor and subprocessor risk and DPAs.
  • Map controls across industry frameworks and maintain evidence.
  • Expand evidence automation via APIs and scripts.

Skills

SOC 2
Python scripting
APIs
Security questionnaires
Risk management
Policy writing
Vendor risk

Job description

AegisAI is seeking a GRC Engineer to advance the security program and own SOC 2 end-to-end compliance. You will map controls across frameworks, automate evidence collection via APIs, manage audits and questionnaires, and drive policy updates as we scale.

You will work with the head of security, engineers, and customers to ensure fast, transparent responses that close deals while protecting data. This role emphasizes automation, privacy regimes, and third-party risk with a startup-speed culture.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Engineer: End-to-End Compliance & Automation
GRC Engineer: End-to-End Compliance & Automation

Aegis AI • United States

On-site
USD 120,000 - 180,000
GRC Engineer: Compliance Automation & SecOps
GRC Engineer: Compliance Automation & SecOps

Forward • Santa Clara (CA)

On-site
USD 140,000 - 170,000
Senior GRC Engineer: Automate SOC 2 & Compliance
Senior GRC Engineer: Automate SOC 2 & Compliance

Clerk • United States

Remote
USD 140,000 - 230,000
Competitive Salary
Equity Ownership
Health Coverage
+3
Security GRC Engineer: Automate Compliance at Scale
Security GRC Engineer: Automate Compliance at Scale

Candid Health • Denver (CO)

On-site
USD 180,000 - 258,000
Security GRC Engineer - Automate Compliance & Trust
Security GRC Engineer - Automate Compliance & Trust

Cursor • San Francisco (CA)

On-site
USD 140,000 - 210,000
Security GRC Lead: Compliance-as-Code & Automation
Security GRC Lead: Compliance-as-Code & Automation

Candid Health • United States

On-site
USD 120,000 - 160,000
GRC Automation Engineer: Continuous Compliance
GRC Automation Engineer: Continuous Compliance

Plaid • Seattle (WA)

On-site
USD 156,000 - 213,600
Equity
401(k)
Security GRC Engineer
Security GRC Engineer

Cursor • Palo Alto (CA)

On-site
USD 180,000 - 240,000
Security GRC Engineer
Security GRC Engineer

Cursor • San Francisco (CA)

On-site
USD 140,000 - 210,000
GRC Engineer
GRC Engineer

Aegis AI • United States

On-site
USD 120,000 - 180,000