





Mid-level GRC role at a well-known SaaS firm in a metro market attracts many qualified applicants.
High because the role requires specific cybersecurity, compliance, and audit expertise across frameworks and AI governance.
Explicit 3–6 years and mandatory GRC experience, certifications desirable but not mandatory.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Execute cybersecurity and AI risk assessments independently for products, infrastructure, vendors, and business initiatives, including New Product Initiatives.
Support audit readiness by collecting evidence, validating controls, and assisting with compliance frameworks and internal/external audits.
Collaborate with Product, Engineering, Legal, Privacy, and business stakeholders to provide security guidance, track remediation, and improve governance and automation processes.
3–6 years of experience in Cybersecurity Risk & Compliance, Information Security, or GRC domains.
Experience conducting cybersecurity risk assessments, compliance assessments, or control validation activities.
Working knowledge of cloud security concepts, preferably AWS, and familiarity with major cybersecurity frameworks such as ISO 27001, SOC 2, or NIST CSF.
Exposure to AI governance concepts or AI risk assessments is desirable but not mandatory; relevant security certifications like Security+, CISA, CISM, or AWS Security Specialty are preferred.
Comfortable operating across multiple teams including Product, Engineering, Privacy, and Legal to embed security and compliance controls early in project lifecycles.
Experienced in assessing AI-related security risks such as data leakage, prompt injection, model reliability, and third-party AI integrations.
Capable of maintaining governance documentation and advancing automation efforts to improve cybersecurity risk and compliance processes.