Principal Security GRC Analyst

Rescale

United States

Remote

USD 150,000 - 230,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Rescale is building the future of engineering and scientific discovery through automated, compliant digital engineering. As Principal Security GRC Analyst, you’ll own complex compliance problems end-to-end—from control design to evidence gathering and auditor engagement.

You’ll work with auditors, engineers and product teams to ensure frameworks like SOC 2, ISO 27001 and FedRAMP are implemented effectively.

Qualifications

  • At least 8+ years experience with multiple compliance frameworks and audits.
  • Deep expertise in at least one security framework such as SOC 2 Type II, ISO 27001, FedRAMP, or NIST SP 800 series.
  • Exposure to GDPR, ITAR, EAR, NISPOM, CMMC, etc. is a plus.
  • Certifications such as CISM, GSLC, Security+ CE, CISSP are a plus.
  • US Citizenship is a requirement; background check will be conducted.

Responsibilities

  • Mature a multi-framework compliance program spanning FedRAMP, SOC2, ISO 27001 and more.
  • Drive control implementation, audit readiness, and cross-framework harmonization.
  • Interact with auditors and government officials across frameworks.
  • Translate compliance requirements into practical controls balancing security and innovation.
  • Represent the program in customer discussions and security questionnaires.

Skills

Security frameworks
Audits coordination
Policy drafting
Cross-team collaboration

Education

Tools

SOC 2 Type II
ISO 27001
FedRAMP
NIST SP 800 series

Job description

About RescaleRescale

Rescale is pioneering the future of engineering and scientific discovery. As the leader in digital engineering, we’re transforming how products are developed—through intelligent automation, applied AI, data management, and the integration of the world’s largest network of engineering and R&D applications. Joining Rescale means becoming part of a diverse, collaborative, and mission-driven team that’s unlocking faster innovation across industries like aerospace, energy, life sciences, and manufacturing. We’re solving complex challenges that traditional HPC can’t—and we’re seeking passionate, curious minds to help build the next wave of breakthroughs.

Rescale's Compliance team is responsible for automating, maintaining and maturing a multi-framework compliance program spanning FedRAMP Moderate, DoD IL5, CMMC Level 2, SOC 2 Type 2, ISO 27001:2022, TISAX AL2, and Facility Clearance License (FCL) requirements. As a Principal Security GRC Analyst, you will serve as a senior individual contributor driving control implementation, audit readiness, and cross-framework harmonization across Rescale's cloud-based HPC and simulation platform. This is a high-autonomy, high-impact role for someone who wants to own complex compliance problems end-to-end from control design through evidence collection to auditor engagement.

Are you a highly-motivated detail-oriented person who loves organizing complex projects? Are you a self-starter who can see a goal and immediately start moving toward it? Are you familiar with FedRAMP, SOC, ISO 27001, TISAX, or other security and compliance frameworks? If so, we need you!

At Rescale, this means you will work on and impact:

You will work under the guidance of our Director of Compliance to continue to mature a comprehensive security governance, risk, and compliance program.

You will work directly with auditors and government officials across various security and compliance frameworks such as the NIST SP 800 series, FedRAMP, SOC 2, ISO 27001, Cyber Essentials, CSA and others.

You will lean into AI to enable our products to comply with new and existing frameworks.

You will own and drive large projects that span multiple months, quarters and even years to ensure that Rescale is compliant with the frameworks chosen.

You will interact directly with our security team, IT team and other teams to gather evidence for audits.

You will partner with engineering, product, platform, and other teams to translate compliance requirements into practical, implementable controls to balance security, compliance, and privacy concerns without sacrificing innovation.

You will represent the compliance program in customer-facing discussions, security questionnaires and due diligence reviews.

You will help draft policies and procedures that improve compliance and privacy at Rescale.

You will create, implement and manage automated processes to improve the dissemination of policies, procedures, plans, and knowledge about security, compliance, and privacy.

You will work within a team that supports you and wants you to succeed - every single day.

As our team continues to evolve, this role may expand beyond security compliance. A flexibility and willingness to expand your scope of responsibilities is a plus.

What we’re looking for:

At least 8+ years experience with multiple compliance frameworks and audits both small and large, including adapting to changes and managing complex implementation projects.

Deep expertise in at least one security framework such as SOC2 Type II, ISO 27001, FedRAMP, or NIST SP 800 series with a drive to tackle novel compliance challenges in a fast-scaling tech environment.

In addition to the area of expertise, exposure to other frameworks and regulations including GDPR, ITAR, EAR, NISPOM, CMMC, etc. is a plus. Certifications such as CISM, GSLC, Security +CE, CISSP etc. are pluses.

Due to the nature of the work, US Citizenship is a requirement.

Rescale is an equal opportunities employer and welcomes applications from all qualified persons regardless of their race, sex, disability, religion/belief, sexual orientation or age.

As part of our standard hiring process for new employees, employment with Rescale will be contingent upon successful completion of a comprehensive background check.

Here at Rescale, we are committed to being transparent in our policies around candidate privacy. For more details on the information Rescale collects in your application, please view the Rescale Applicant Privacy Policy here.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Security Engineer
Senior Cloud Security Engineer

Rescale, Inc. • United States

On-site
USD 140,000 - 190,000
Principal Security GRC Analyst
Principal Security GRC Analyst

Jobgether • United States

On-site
USD 150,000 - 210,000
High autonomy
Multi-framework exposure
Cloud environment experience
Software Engineer, Full-Stack at Rescale
Software Engineer, Full-Stack at Rescale

Feedinkoo • United States

On-site
USD 80,000 - 120,000
Senior Security GRC Analyst (FedRAMP, SOC 2, ISO 27001)
Senior Security GRC Analyst (FedRAMP, SOC 2, ISO 27001)

Rescale • United States

Remote
USD 150,000 - 230,000
Software Engineer, Backend Engineer
Software Engineer, Backend Engineer

Rescale • United States

Remote
USD 80,000 - 120,000
Security Assurance Lead
Security Assurance Lead

Scale AI • Washington

On-site
USD 213,000 - 267,000
Technical Assurance Lead
Technical Assurance Lead

Scale AI • Washington

On-site
USD 150,000 - 210,000
Technical Assurance Lead Washington, DC Apply →
Technical Assurance Lead Washington, DC Apply →

Scale AI, Inc. • Washington

On-site
USD 140,000 - 200,000
Customer Success Engineer, Public Sector
Customer Success Engineer, Public Sector

Rescale • United States

On-site
USD 110,000 - 150,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Rescale • United States

On-site
USD 123,000 - 181,000