Compliance Engineer
About us
The Role
As a Compliance Engineer, you will be building and operationalizing our compliance program and overseeing the day-to-day implementation of controls, helping us pass audits, and scaling our governance processes in a fast-paced SaaS environment. You’ll own the systems, tools, and automation workflows that allow us to meet and maintain standards like SOC 2 and ISO 27001, without slowing down the business.
Key skills:
- Experience with implementing one or more security automation platforms (e.g. Thoropass, Vanta, Drata, Secureframe)
- Experience with automating SOC 2 compliance
- Experience with interacting with corporate customers in a business-to-business setting
- Excellent communication and collaboration skills.
- Experience interacting with auditors
What you will do
- Design and manage GRC tools, evidence collection workflows, and vendor risk processes
- Support responses to customer security assessments and RFPs
- Collaborate with cross-functional teams to align security with product, legal, and customer trust requirements
- Track, measure, and report on control effectiveness and risk posture
- Lead and manage audits, internal readiness assessments, and third-party risk processes
- Automate and operationalize the compliance roadmap (e.g., SOC 2, ISO 27001)
- For new compliance standards identify gaps and help drive
What you bring to the table
- 8+ years in compliance roles
- A systems-thinking mindset and a drive to eliminate manual, repetitive compliance tasks.
- Experience building compliance programs that scale with speed and minimal overhead.
- Proven experience implementing or supporting compliance frameworks such as SOC 2 or ISO 27001
- Hands-on experience with GRC platforms and automating compliance workflows.
- Excellent communication and documentation skills.
Nice to Have Skills
- Experience deploying and scaling GRC tooling in early-stage environments
- Familiarity with customer trust programs and security questionnaire automation
- Experience with AI compliance and governance