Overview
A fast-growing B2B SaaS startup transforming cybersecurity compliance for businesses worldwide is seeking a driven and knowledgeable GRC to join their GRC team. In this role, you will guide customers through complex compliance processes, ensuring their success and building trust in their organizations. Your mission is to provide exceptional support, drive product improvements based on feedback, and contribute to the Group’s growth by delivering top-tier compliance solutions.
Responsibilities
- Prepare SaaS companies for security audits such as SOC 2 and ISO 27001, including assessment, preparation, and audit management.
- Assist customers with filling out vendor security questionnaires and creating policies, procedures, and risk assessments using their product.
- Advise customers on best practices and evolving security regulations.
- Establish and maintain long-term relationships with clients by ensuring their compliance needs are met.
- Provide hands-on support throughout their compliance journey.
- Coordinate activities across multiple teams and integration points, ensuring seamless execution.
- Drive product improvements by incorporating market feedback and customer needs.
- Clearly articulate compliance concepts and the group’s value proposition to clients.
- Write and present well-structured documentation and processes.
Qualifications
- At least 2 years in Technology Risk, Compliance, GRC, CISO, or a similar position.
- Extensive experience managing compliance projects and audits (e.g., SOC 2, ISO 27001).
- Background in answering security questionnaires.
- Proficiency in managing multiple projects and meeting deadlines using tech tools.
- Excellent verbal and written communication abilities.
- Strong self-starter with a solution-focused and positive attitude.
- Bachelor’s degree in Engineering, Information Systems, Computer Science, Law, Accounting, or Business (advantageous).
- Information security certifications such as CISSP, CISA, CISM, CCSK, or ISO 27001 Lead Implementer (advantageous).