Search Remote Jobs

Senior GRC Engineer

🔥 12 minutes ago

🇺🇸 United States – Remote

⏰ Full Time

đźź  Senior

đźš” Compliance

🦅 H1B Visa Sponsor

infoinfo

đź‘» Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Align Technology

Align Technology

10,000+ employees

Founded 1997

🏥 Healthcare

🏭 Manufacturing

🧬 Biotechnology

đź’° $105M Series D on 2000-06

Healthcare • Manufacturing • Biotechnology

Align Technology is a global medical device company that is changing lives through better smiles. The company reimagines and reinvents orthodontic and restorative treatment delivery for millions of people worldwide with its advanced technology solutions such as the Invisalign® System, the most advanced clear aligner system trusted by approximately 18. 9 million people globally. Align Technology also offers iTero™ intraoral scanners to enhance the dental practice experience by improving clinical precision and patient interaction. As a leading player in its industry, Align Technology is committed to international expansion and strategic growth while fostering a diverse and innovative work culture.

đź“‹ Description

• Own end-to-end audit evidence collection, validation, and organization across FedRAMP, ISO 27001, ISO 42001, SOC 2, NIST 800-53, and NIST 800-171 frameworks • Maintain and continuously verify technical controls across GCP/GKE, GitHub, and Microsoft 365/Entra ID • Liaise between GRC and IT, Engineering, and DevOps to gather evidence, validate controls, and reduce audit burden • Support FedRAMP continuous monitoring, including KSI evidence, vulnerability scan artifacts, POA&M tracking, and 3PAO requests • Build and maintain evidence automation integrations between GRC tooling and source systems • Support the ISO 42001 Artificial Intelligence Management System through AI risk evidence, control monitoring, and remediation tracking • Prepare audit-ready evidence packages and coordinate with external assessors and certification bodies • Monitor control health, identify control drift or failures, and drive remediation • Maintain control narratives, policies, procedures, and compliance documentation • Support supplier and vendor security reviews • Track framework changes and translate them into control and evidence updates • Conduct security risk assessments and contribute to the corporate risk register • Participate in threat modeling for A-SCEND features, internal systems, and AI use cases • Perform security reviews of tools, vendors, and internal initiatives, including Vendor Review Board activities • Implement and validate AI technical controls and safeguards, including data loss prevention, AI connector and agent governance, and acceptable use enforcement • Report compliance posture, evidence status, and audit readiness metrics to the CISO and GRC leadership

🎯 Requirements

• Bachelor's degree in Information Systems, Cybersecurity, Business, or equivalent combination of education and experience • 5+ years of experience in information security, GRC, IT audit, or compliance engineering roles • Hands-on experience with audit evidence collection and technical control validation for at least two of: FedRAMP, ISO 27001, ISO 42001, SOC 2, NIST 800-53, NIST 800-171 • DevSecOps or cloud engineering experience sufficient to independently locate and extract evidence from GCP, GitHub, and Microsoft 365/Entra ID environments • Experience with GRC platforms and evidence automation, such as AuditBoard, Vanta, Drata, or similar • Experience supporting external audits and assessor interactions, including 3PAO assessments • Working knowledge of vulnerability management, CI/CD pipelines, infrastructure-as-code, and identity and access management concepts • Strong cross-functional collaboration and project management skills • Ability to translate framework requirements into actionable requests for technical teams • Ability to manage evidence deadlines across multiple concurrent audit cycles • Excellent written communication for control narratives, evidence descriptions, and assessor responses • Self-directed with strong follow-through in a fast-paced, deadline-driven environment • Proven experience utilizing AI tools to automate manual tasks, streamline workflows, and increase team efficiency • Experience scripting or automating evidence collection with Python, PowerShell, or similar preferred • Familiarity with risk assessment methodologies, threat modeling such as STRIDE, and security review processes preferred • CISA, CISSP, CCSK/CCSP, ISO Lead Auditor/Implementer, or relevant certifications preferred but not required • Experience operating in PE-backed or high-growth environments preferred

🏖️ Benefits

• Healthcare, Dental, and Vision Benefits • Employer Paid Life Insurance and Disability Insurance • EAP - Employee Assistance Program • Pet Insurance • 401(k) Plan with Employer Matching • Competitive Bonus Structure • Home Office Reimbursement • Certification Reimbursement • Personalized Career Coaching • Generous Paid Time Off • Paid Office Closure December 25-January 1 • Vacation Bonus • Summer Hours

Apply Now

Similar Jobs

🔥 23 minutes ago

Summit Therapeutics, Inc.

201 - 500

🏥 Healthcare

đź’Ľ Consulting

📣 Marketing

Associate Director guiding global regulatory strategy, submissions, and FDA interactions for Summit Therapeutics’ oncology drug programs. Managing ivonescimab regulatory activities across clinical studies.

🇺🇸 United States – Remote

đź’µ $168k - $198k / year

🔥 Funding within the last year

đź’° $500M Post-IPO Equity - Summit Therapeutics on 2025-10

⏰ Full Time

đźź  Senior

đźš” Compliance

🔥 41 minutes ago

Eli Lilly and Company

10,000+ employees

đź’Š Pharmaceuticals

🏥 Healthcare

🧬 Biotechnology

Associate Director leading Regulatory Starting Material strategy for Centessa’s clinical-stage sleep-disorder medicines. Guiding CMC submissions, health-authority interactions, suppliers, and commercial manufacturing readiness.

🇺🇸 United States – Remote

đź’µ $126k - $268.4k / year

đź’° $6.5M Post-IPO Debt - Eli Lilly on 2024-02

⏰ Full Time

đźź  Senior

đźš” Compliance

🔥 3 hours ago

Centene Corporation

10,000+ employees

🛡️ Insurance

đź’Ľ Consulting

🏥 Healthcare

Senior Compliance Analyst supporting Centene’s healthcare compliance, regulatory reporting, audits, and HIPAA programs. Managing regulatory requirements, risk assessments, policies, training, and FWA activities.

🔥 3 hours ago

Centene Corporation

10,000+ employees

🛡️ Insurance

đź’Ľ Consulting

🏥 Healthcare

Senior Compliance Analyst supporting Centene’s healthcare compliance, audits, reporting, and regulatory programs. Managing policy, risk, training, and fraud-waste-abuse initiatives across designated U.S. remote locations.

🔥 4 hours ago

Children's Specialized ABA

201 - 500

🏥 Healthcare

📚 Education

Billing compliance specialist auditing timesheets, payer documentation, and payroll processes for an autism services provider. Identifying risks and implementing operational improvements across clinical, billing, compliance, and HR teams.