1d ago

Sr. GRC Engineer

New York, NY

โœจ $135k-$170k / yearest.

full-timesenior Remotehealthcare

๐Ÿ›  Tech Stack

๐Ÿ’ผ About This Role

You'll serve as a risk practitioner and automation engineer for Ro's GRC team. You'll own the compliance platform (Vanta) and lead audit readiness for SOC 2, HIPAA, and HITRUST. This role offers the chance to drive continuous compliance with AI and automation platforms.

๐ŸŽฏ What You'll Do

  • Own and maintain the compliance platform (Vanta) for control mapping and evidence collection
  • Perform risk assessments, vendor security reviews, and control gap analyses
  • Manage control documentation and artifacts across multiple compliance frameworks
  • Support internal and external audits (SOC 2, HIPAA, HITRUST)

๐Ÿ“‹ Requirements

  • 5+ years combined GRC, security engineering, or adjacent technical experience
  • 3+ years ongoing compliance operations with automated evidence collection
  • 2+ years hands-on with continuous compliance platforms (Vanta, Drata, SecureFrame)
  • Working knowledge of cloud platforms (AWS, Azure, GCP)

โœจ Nice to Have

  • Experience with BI tools like Looker or Hex for GRC dashboards
  • Ability to automate data ingestion using Python, JavaScript, or APIs
  • Advanced GRC automation mindset beyond out-of-the-box tools

๐ŸŽ Benefits & Perks

  • ๐Ÿฉบ Full medical, dental, and vision insurance
  • ๐Ÿ’ฐ 401(k) with company match
  • ๐Ÿ–๏ธ Flexible PTO
  • ๐Ÿ‘ถ Paid parental leave + fertility benefits
  • ๐Ÿ“š Wellbeing & Learning/Growth reimbursements

๐Ÿ“จ Hiring Process

Estimated timeline: 3-5 weeks ยท AI estimate

  1. 1Recruiter Screenยท 30 min
  2. 2Hiring Manager Interviewยท 45 min
  3. 3Technical Interviewยท 60 min
  4. 4Panel Interviewยท 45 min
0 0 0