← Toutes les offres

Senior GRC Engineer, Bilingual Spanish-English

À propos du poste

• Own primary client relationship management for high-complexity client accounts
• Build executive relationships and deliver clear milestone updates
• Lead bilingual client engagements via phone, email, and video calls in English and Spanish
• Analyze, interpret, and implement technical security requirements aligned with SOC 2, ISO 27001, HIPAA, and NIST CSF
• Direct and develop analyst pods through operational leadership, feedback, and mentorship
• Author and maintain enterprise security policies, standard operating procedures, and audit evidence artifacts
• Manage complex account escalations and resolve difficult client challenges
• Collaborate with internal and client technical teams on risk and gap remediation
• Refine internal playbooks, procedures, and delivery frameworks
• Assume active account ownership and manage client engagements within the first 15 days

• Professional fluency in written and verbal English and Spanish
• 3+ years of leadership experience managing, mentoring, or guiding small teams of compliance analysts
• Direct experience executing cybersecurity compliance programs across SOC 2, ISO 27001, or NIST CSF frameworks
• Ability to manage multiple complex compliance projects simultaneously
• Skilled at authoring, implementing, and enforcing corporate security policies within tech-focused or cybersecurity organizations
• Experience in fast-paced startup environments
• Excellent written and verbal English communication skills
• Reliable, high-speed internet connection and professional home office environment supporting confidential conversations and uninterrupted collaboration
• Commitment to working 8:00 AM–5:00 PM US Eastern Time
• Willingness and ability to travel locally for occasional onsite meetings, team gatherings, or business activities
• Participation in live video interviews with camera on and identity verification during recruitment and onboarding
• Successful completion of identity verification and background screening, where permitted by law
• Big 4 or top-tier consulting experience, HIPAA, PCI DSS, or complementary framework exposure, Vanta/Drata or similar proficiency, and certifications such as CISA, CISSP, ISO 27001 Lead Implementer, or Security+ are helpful

• Clear growth path with mentorship and training opportunities
• Comprehensive onboarding on security and compliance frameworks
• Competitive base salary with regular performance reviews, merit-based appraisals, and bonus opportunities
• Significant room for career advancement
• Flexibility to work from anywhere while collaborating with a global team