companySpyCloud logo

Governance, Risk, and Compliance Engineer

SpyCloudAustin, Texas | Remote
Remote Full-time

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Experience

Qualifications

Key Responsibilities:Compliance Program & Framework ManagementLead and support compliance programs, including SOC 2, ISO 27001, and CMMC, with a strong emphasis on cloud-native environments. Coordinate internal and external audits, ensuring precise evidence collection and alignment with technical stakeholders. Assist in customer security reviews and questionnaires by effectively communicating SpyCloud’s cloud security controls and compliance posture. Audit Readiness & Continuous ControlsOversee continuous audit readiness across cloud platforms such as AWS, GCP, and Azure. Design and implement continuous control testing leveraging automation and scripting (preferably Python). Collaborate with Engineering and Security teams to embed compliance into system design and change management processes. GRC Automation & ToolingDevelop, maintain, and enhance automated evidence collection workflows using Vanta. Integrate Vanta with cloud environments, identity systems, and CI/CD pipelines to facilitate continuous compliance. Work closely with Engineering to implement automated compliance checks within cloud deployments. Governance, Policies & StandardsDevelop and maintain security and compliance policies, standards, and procedures to ensure robust governance.

About the job

At SpyCloud, our mission is to enhance online safety by disrupting the criminal underground. Our innovative solutions prevent cyberattacks and safeguard over 4 billion accounts globally. Engaging in the dynamic world of cybersecurity, we are proud to be at the forefront of the fight against cybercrime. If you are eager to align your professional journey with a meaningful mission, we invite you to explore this opportunity!

The Governance, Risk, and Compliance (GRC) Engineer is a pivotal role within our GRC department, which is part of the Legal & Compliance organization. In this position, you will play a crucial role in bolstering SpyCloud's compliance posture by facilitating audit readiness, implementing continuous control testing, and integrating compliance requirements into our cloud-native systems and workflows.

This position requires close collaboration with Engineering, Security, IT, Product, and Legal teams to ensure compliance requirements are effectively incorporated within our cloud environments. As a GRC Engineer, you will lead intricate compliance initiatives while utilizing automation and scripting to enhance efficiency, precision, and scalability.

About SpyCloud

SpyCloud is dedicated to making the internet a safer environment by actively disrupting the criminal underground. Our cutting-edge solutions are designed to mitigate cyber threats and protect billions of user accounts worldwide. With a commitment to innovation in the cybersecurity sector, we foster an exciting workplace where employees are empowered to contribute to a vital mission.

Similar jobs

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.