GRC/Compliance Lead

Posted 12 hours ago

Apply Now

Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • GRC/Compliance Lead guiding SOC 2, ISO, and customer assurance for enterprise AI platforms. Building practical compliance into regulated, mission-critical software delivery.

Responsibilities

  • Support an external software development organization as part of Inviso’s delivery team
  • Help establish practical, engineering-friendly governance, risk, and compliance practices for an enterprise AI platform
  • Define, operate, and mature a compliance program for a multi-tenant enterprise platform serving regulated and mission-critical customer environments
  • Support SOC 2 and ISO readiness
  • Manage controls, evidence collection, customer security documentation, audit preparation, data handling, and compliance-by-design
  • Partner with engineering, security, product, auditors, customer security teams, and client stakeholders
  • Reduce risk, improve customer trust, and support credible delivery without creating unnecessary friction

Requirements

  • Experience owning or supporting a security, governance, risk, or compliance program in a B2B SaaS, platform, or enterprise software environment
  • Experience with SOC 2, ISO 27001, or similar compliance frameworks
  • Ability to define controls, map requirements, collect evidence, track gaps, and support audit readiness
  • Experience preparing customer-facing security documentation, security questionnaires, DPAs, policies, or compliance materials
  • Ability to partner with engineering and security teams to make controls practical, repeatable, and automation-friendly
  • Experience advising on data handling, retention, access control, regulatory obligations, and customer assurance needs
  • Ability to prepare for and support audits, customer security reviews, and compliance assessments
  • Strong documentation, organization, follow-through, and stakeholder management skills
  • Strong communication and collaboration skills for client-facing consulting environments
  • Pragmatic mindset with the ability to support delivery while maintaining credible compliance standards
  • Experience taking a company or product through SOC 2, ISO 27001, or a comparable certification process
  • Experience automating evidence collection or integrating compliance into engineering workflows
  • Familiarity with GDPR or other major data protection and privacy regimes
  • Experience with AI governance, responsible AI practices, model risk, data governance, or compliance for AI-enabled products
  • Experience with enterprise-scale B2B SaaS, regulated customer environments, or mission-critical software
  • Relevant compliance, audit, security, privacy, or risk certifications are a plus

Benefits

  • Annual $2,000 training allowance
  • Paid time off
  • Paid holidays
  • Other benefits

Job title

Job type

Full Time

Experience level

Senior

Salary

Not specified

Degree requirement

No Education Requirement

Location requirements

RemoteCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.