Senior GRC Engineer
Location: Remote
Compensation: Salary
Reviewed: Fri, Sep 25, 2026
This job expires in: 30 days
Job Summary
Owning the end-to-end SOC 2 Type II and HIPAA compliance processes, the full-time Senior GRC Engineer will work remotely to manage vendor security reviews, build automation for compliance programs, and integrate security requirements into the software development lifecycle.
Key responsibilities
- Lead SOC 2 Type II and HIPAA compliance efforts, including control design and auditor interactions
- Develop and maintain integrations for the GRC platform, ensuring continuous compliance checks through automation
- Manage the vendor security review program and maintain the risk register with documented assessments
Required qualifications
- 5+ years of experience in security with a focus on GRC or compliance automation
- Technical ownership of at least one SOC 2 Type II or ISO 27001 audit
- Proficient in coding and using GRC platform APIs for automation
- Experience with Cloud IAM, preferably on GCP
- Strong writing skills for creating policies and control narratives
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 42,033 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee