Applied Methods
~The MetaSecuritySecurity GRC & Compliance

Security GRC & Compliance

Professionals in this role design and scale compliance programs that enable AI companies to operate securely across multiple regulatory frameworks—SOC 2, ISO 27001, FedRAMP, and emerging AI governance standards. Day-to-day, they conduct risk assessments, build automation to embed compliance into engineering workflows, respond to customer security questionnaires, and manage audit readiness across cloud infrastructure and AI-specific controls. What distinguishes this work is the technical depth required: rather than purely policy-focused compliance, these roles demand hands-on experience implementing controls, scripting automation, and translating complex regulatory requirements into practical controls that don't slow product velocity. They typically sit within security organizations reporting to CISOs or governance leaders, partnering closely with engineering, product, and sales teams to balance compliance rigor with business growth in fast-moving AI environments.

$ titles --canonical
Compliance EngineerGRC ManagerSecurity Compliance, Lead
38open jobs
23companies hiring
$02

Skills

What companies are looking for in this role.

$ skills --core

Managing compliance audits and certification processes for security frameworks

95%

Conducting risk assessments and developing risk management strategies

85%

Responding to customer security questionnaires and vendor assessments

80%

Developing and maintaining security policies, procedures and documentation

75%

Collecting and managing evidence for compliance audits

70%

Translating regulatory requirements into actionable business controls

65%

Managing control mappings across multiple compliance frameworks

60%

Maintaining trust centers and customer-facing security documentation

55%

Leading vulnerability management programs and remediation efforts

45%

Supporting sales teams with security-related deal enablement

35%

Managing third-party risk assessments and vendor security evaluations

30%
$ skills --emerging

Building automation workflows for compliance monitoring and reporting

70%

Implementing continuous control monitoring systems

50%

Designing governance frameworks for AI and emerging technology systems

40%

Integrating compliance tools into development and deployment pipelines

35%

Using AI agents and machine learning for compliance automation

30%
$ skills --soft

Collaborating with cross-functional teams including engineering, legal, and sales

85%

Communicating complex technical concepts to executive leadership

65%
$03

Technology

The tools and technologies that define this role.

$ tech --language
Pythonmoderate
JavaScriptlow
YAMLlow
$ tech --platform
AWShigh
Azuremoderate
GCPmoderate
Kuberneteslow
$ tech --tool
Vantamoderate
SafeBaselow
$ tech --concept
SOC 2very high
ISO 27001high
NIST CSFhigh
FedRAMPmoderate
HIPAAmoderate
NIST 800-53moderate
DORAlow
NIS2low
$04

Open Jobs

38 open Security GRC & Compliance jobs across 23 companies.

ElevenLabs3d
Compliance Engineer - APAC
Tokyo·Security
Cohere5d
GRC Specialist
Toronto·Security
ElevenLabs1w
Compliance Engineer - US
New York·Security
Cerebras Systems1w
Cybersecurity GRC Manager
Sunnyvale CA or Toronto Canada·Security
MongoDB1w
Senior IRM Analyst
Dublin·Security
Nscale1w
Staff Engineer, Security Compliance
AMER·Security
Nscale1w
Director, Security Risk & Compliance
London; New York; Seattle·Security
MongoDB1w
Senior IRM Analyst
United States·Security
CoreWeave1w
Technical Program Manager (TPM) – SOX Compliance
Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA·Security
Databricks2w
Federal Senior Security Assurance Engineer
United States·Security
Abnormal Security2w
Senior Manager, Customer Trust
Remote - USA·Security
Nebius2w
Vulnerability Lead
Tel Aviv, Israel·Security
Nebius2w
Vulnerability Manager
Tel Aviv, Israel·Security
Databricks2w
Staff Security Assurance Engineer - Special Projects
United States·Security
Anthropic3w
GRC Automation Engineering Lead
San Francisco, CA | New York City, NY | Seattle, WA·Security
Sierra1mo
Security and Compliance Manager
London·Security
Crusoe1mo
Staff GRC Engineer
San Francisco, CA - US·Security
Lovable1mo
GRC Manager
Stockholm·Security
Writer1mo
Security specialist, GRC
New York City, NY·Security
Writer1mo
Security specialist, GRC (UK)
London, UK·Security