1d ago
Sr. GRC Engineer
New York, NY
โจ $135k-$170k / yearest.
full-timesenior Remotehealthcare
๐ Tech Stack
๐ผ About This Role
You'll serve as a risk practitioner and automation engineer for Ro's GRC team. You'll own the compliance platform (Vanta) and lead audit readiness for SOC 2, HIPAA, and HITRUST. This role offers the chance to drive continuous compliance with AI and automation platforms.
๐ฏ What You'll Do
- Own and maintain the compliance platform (Vanta) for control mapping and evidence collection
- Perform risk assessments, vendor security reviews, and control gap analyses
- Manage control documentation and artifacts across multiple compliance frameworks
- Support internal and external audits (SOC 2, HIPAA, HITRUST)
๐ Requirements
- 5+ years combined GRC, security engineering, or adjacent technical experience
- 3+ years ongoing compliance operations with automated evidence collection
- 2+ years hands-on with continuous compliance platforms (Vanta, Drata, SecureFrame)
- Working knowledge of cloud platforms (AWS, Azure, GCP)
โจ Nice to Have
- Experience with BI tools like Looker or Hex for GRC dashboards
- Ability to automate data ingestion using Python, JavaScript, or APIs
- Advanced GRC automation mindset beyond out-of-the-box tools
๐ Benefits & Perks
- ๐ฉบ Full medical, dental, and vision insurance
- ๐ฐ 401(k) with company match
- ๐๏ธ Flexible PTO
- ๐ถ Paid parental leave + fertility benefits
- ๐ Wellbeing & Learning/Growth reimbursements
๐จ Hiring Process
Estimated timeline: 3-5 weeks ยท AI estimate
- 1Recruiter Screenยท 30 min
- 2Hiring Manager Interviewยท 45 min
- 3Technical Interviewยท 60 min
- 4Panel Interviewยท 45 min
0 0 0