Security GRC & Controls Auditor with Continuous Monitoring

United States Digital Space LLC

San Francisco (CA)

Hybrid

USD 150,000 - 190,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

United States Digital Space LLC is seeking an experienced professional to own the CCF across all control domains within our Security Audit & Controls team. You will map controls to SOC 2, ISO 27001, HIPAA, and other commitments, and define how evidence is collected and verified.

You will partner with control owners and GRC partners to draft descriptions, monitor effectiveness, drive remediation, and prepare for audits.

Qualifications

  • Experience owning a control framework across multiple frameworks (SOC 2, ISO 27001, HIPAA)
  • Experience with continuous controls monitoring or automated evidence collection
  • Ability to write control descriptions, control activities, and test procedures
  • Strong written communication and ability to work with auditors
  • Ability to drive remediation with control owners and partners

Responsibilities

  • Own the Common Control Framework and mappings to frameworks and commitments
  • Draft and validate control descriptions and activities with control owners
  • Design and run continuous monitoring of control efficacy
  • Verify remediation and steady-state operations with partners
  • Map new frameworks onto the CCF and support gap assessments
  • Support integrated audits and customer audits readiness
  • Evaluate evidence reliability, including AI-generated evidence
  • Build with Claude to automate mapping, testing, and monitoring

Skills

IT audit
Security compliance
Controls assurance
Audit mechanics
Written communication
Cross-functional collaboration

Education

Bachelor's degree in related field

Tools

GRC platforms

Job description

United States Digital Space LLC is seeking an experienced professional to own the CCF across all control domains within our Security Audit & Controls team. You will map controls to SOC 2, ISO 27001, HIPAA, and other commitments, and define how evidence is collected and verified.

You will partner with control owners and GRC partners to draft descriptions, monitor effectiveness, drive remediation, and prepare for audits.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security GRC & Controls Auditor
Security GRC & Controls Auditor

Anthropic Limited • San Francisco (CA)

Hybrid
USD 150,000 - 210,000
Equity donation matching
Generous vacation
Parental leave
+2
GRC Security Auditor: Common Controls & Monitoring
GRC Security Auditor: Common Controls & Monitoring

Anthropic • San Francisco (CA)

Hybrid
USD 270,000 - 345,000
Equity donation matching
Vacation & parental leave
Flexible hours
+1
Continuous Controls Auditor & GRC Lead
Continuous Controls Auditor & GRC Lead

Alex Loftus • New York (NY)

Hybrid
USD 140,000 - 230,000
SOC 2 Compliance Lead - GRC & PCI DSS Expert
SOC 2 Compliance Lead - GRC & PCI DSS Expert

United States Digital Space LLC • United States

Remote
USD 120,000 - 180,000
Remote GRC Specialist - Build ISO 27001 & SOC 2 Compliance
Remote GRC Specialist - Build ISO 27001 & SOC 2 Compliance

United States Digital Space LLC • United States

Remote
USD 110,000 - 165,000
Remote work: 100% remote
Competitive local salary
Equity
+8
Remote Security Compliance Leader GRC & Audit
Remote Security Compliance Leader GRC & Audit

Sardine • Northern (KY)

Hybrid
USD 140,000 - 210,000
Generous compensation
Remote-first culture
Health insurance
+5
GRC Analyst III - SOC 2/ISO 27001 Expert
GRC Analyst III - SOC 2/ISO 27001 Expert

Advance America, Cash Advance Centers, Inc. • Greenville (SC)

On-site
USD 90,000 - 140,000
Competitive wages
401(k) savings with company match
Company paid holidays
+5
Security GRC Lead: Compliance-as-Code & Automation
Security GRC Lead: Compliance-as-Code & Automation

Candid Health • United States

On-site
USD 120,000 - 160,000
Remote Security Program Manager - GRC & Audit Leader
Remote Security Program Manager - GRC & Audit Leader

Massed Compute LLC • United States

Remote
USD 120,000 - 180,000
Remote-first company
Stipend to dial in setup
Flexible PTO
+3
GRC Controls Analyst – Cybersecurity & Audit Readiness
GRC Controls Analyst – Cybersecurity & Audit Readiness

TikTok USDS Joint Venture • New York (NY)

On-site
USD 99,000 - 196,000