12h ago

Staff GRC Engineer - Audits & Compliance

Bengaluru

โœจ $225k-$275k / yearest.

full-timeleadsoftware

๐Ÿ›  Tech Stack

๐Ÿ’ผ About This Role

You'll own the external audit lifecycle for SOC 2, PCI DSS, ISO 27001, HITRUST, and HIPAA, ensuring Observe.AI maintains industry-leading compliances. Reporting to the Head of Information Security, you'll build the compliance program from the ground up.

๐ŸŽฏ What You'll Do

  • Own end-to-end external audits for SOC 2, PCI DSS, ISO 27001, HITRUST, HIPAA, GDPR/CCPA
  • Manage audit schedules, evidence requests, and auditor communications
  • Coordinate internal stakeholders to gather timely audit evidence
  • Drive remediation plans and track audit status to closure

๐Ÿ“‹ Requirements

  • 9+ years in GRC or information security compliance
  • 3+ years directly managing external audits
  • Hands-on experience with SOC 2 Type II, PCI DSS, ISO 27001, HITRUST audits
  • Deep knowledge of control frameworks (NIST CSF, CIS Controls, ISO 27001 Annex A)

โœจ Nice to Have

  • Experience at a SaaS product company processing sensitive customer data
  • Proficiency with GRC automation platforms (Vanta, Drata, OneTrust)
  • Relevant certifications: CISA, CISSP, CISM, CRISC

๐ŸŽ Benefits & Perks

  • ๐Ÿฅ Excellent medical insurance and free online doctor consultations
  • ๐Ÿ“š Learning & Development fund to support your career growth
  • ๐ŸŽ‰ Generous holidays, privilege and sick leaves as per Karnataka Act
  • ๐Ÿ‘ถ Parental leave and recognition policies

๐Ÿ“จ Hiring Process

Estimated timeline: 2-4 weeks ยท AI estimate

  1. 1Recruiter Screenยท 30 min
  2. 2Technical Interviewยท 60 min
  3. 3Hiring Manager Interviewยท 45 min
0 0 0