Workstreet Logo

Workstreet

Manager, GRC Engineering

Reposted Yesterday
Be an Early Applicant
Remote
2 Locations
Mid level
Remote
2 Locations
Mid level
Manage compliance programs ensuring adherence to SOC 2, ISO 27001, and HIPAA. Develop policies, lead implementation projects, and conduct audits.
The summary above was generated by AI
About Workstreet

At Workstreet, we’re on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in frameworks like SOC 2, ISO 27001, GDPR, HIPAA, and more—empowering companies to meet regulatory standards while strengthening their cybersecurity posture from day one.

The Opportunity

We’re seeking a Compliance and Security Analyst (Compliance & Security Extraordinaire) to join our global team. This role is focused on managing compliance programs and ensuring adherence to key frameworks such as SOC 2, ISO 27001, and HIPAA for our clients.

The ideal candidate will bring hands-on experience in policy writing, SOC 2 Type 1 and Type 2 implementations, and technical control management across cloud environments including AWS, GCP, and Azure. This is a highly visible role that bridges technical depth, compliance rigor, and client collaboration.

What You’ll Do
  • Develop, write, and maintain policies, procedures, and documentation to support compliance with SOC 2, ISO 27001, and related standards.
  • Lead and manage SOC 2 Type 1 and Type 2 implementation projects across multiple clients.
  • Implement and monitor technical controls in cloud environments (AWS, GCP, Azure) to ensure security best practices.
  • Conduct internal security audits and risk assessments, identifying vulnerabilities and recommending improvements.
  • Collaborate cross-functionally with engineering, operations, and client teams to embed compliance and security processes into day-to-day workflows.
  • Stay current with regulatory developments, cybersecurity trends, and evolving compliance requirements.
  • Operate confidently in compliance platforms such as Drata, Vanta, and SecureFrame.
Who You Are
  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related discipline.
  • Proven experience in managing compliance programs and working with SOC 2 and ISO 27001 frameworks.
  • Strong knowledge of cloud infrastructure security across AWS, GCP, and Azure.
  • Excellent written and verbal communication skills with strong attention to detail.
  • Self-starter who thrives in a fast-paced, remote-first startup environment.
  • Analytical, organized, and proactive — with a strong sense of ownership and accountability.
Nice to Have
  • Experience in a Big 4 or other professional services environment is a plus (Preferred)
  • Professional certifications such as CISA, CISSP, CISM, or ISO 27001 Lead Implementer/Auditor.
  • Experience in delivering security awareness and compliance training programs.
  • Familiarity with additional frameworks and regulations including GDPR, HIPAA, NIST, or FedRAMP.
  • Hands-on experience using compliance automation tools like Drata, Vanta, SecureFrame, or Tugboat Logic.
What We Offer
  • Competitive Compensation: Fair, transparent pay aligned with your experience and impact.
  • Remote-First Flexibility: Work from anywhere in the world while collaborating with a distributed team.
  • Career Growth: Opportunity to grow into advanced roles such as vCISO or senior compliance leadership.
  • Meaningful Work: Partner with innovative, security-driven organizations across industries.
  • Learning Culture: Continuous exposure to evolving frameworks, technologies, and compliance standards.

Workstreet Is An Equal Opportunity Employer
As an equal opportunity employer, Workstreet is committed to providing employment opportunities to all individuals. All applicants for positions at Workstreet will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.


Top Skills

AWS
Azure
Drata
GCP
Gdpr
Hipaa
Iso 27001
Secureframe
Soc 2
Vanta

Similar Jobs

55 Minutes Ago
Remote or Hybrid
India
Senior level
Senior level
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Lead Identity Governance & Administration activities using SailPoint IdentityIQ: design and develop rules, workflows, connectors, roles, policies, provisioning, and certifications; manage deployments, source code/build processes, runbooks, and integrations; collaborate with stakeholders and IAM teams.
Top Skills: Sailpoint Identityiq,Beanshell,Jira,Bamboo,Bitbucket,Active Directory (Ad),Ldap,Sharepoint,Ms Office,Logiplex,Multiinstance Framework
56 Minutes Ago
Remote or Hybrid
India
Senior level
Senior level
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Support Global Data Integrations by analyzing, designing, and configuring financial administration systems for migration to Workday Accounting Center; capture business requirements, liaise between finance stakeholders and IT, and coordinate implementation into the GDI Accounting Rules Engine.
Top Skills: Accounting Rules EngineErpWorkdayWorkday Accounting Center
58 Minutes Ago
Remote or Hybrid
Hyderabad, Telangana, IND
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Lead and supervise the general ledger R2R team, manage monthly/quarterly/annual close activities, prepare and review journal entries and reconciliations, drive process improvements and automation, partner cross-functionally (tax, legal, FP&A), coordinate external audits, and maintain global accounting policies and controls.
Top Skills: BlacklineSAP

What you need to know about the Chennai Tech Scene

To locals, it's no secret that South India is leading the charge in big data infrastructure. While the environmental impact of data centers has long been a concern, emerging hubs like Chennai are favored by companies seeking ready access to renewable energy resources, which provide more sustainable and cost-effective solutions. As a result, Chennai, along with neighboring Bengaluru and Hyderabad, is poised for significant growth, with a projected 65 percent increase in data center capacity over the next decade.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account