Description
A GRC Engineer will own AegisAI’s security compliance program, including SOC 2 Type II, risk management, policies, business continuity and incident response, customer security questionnaires, third-party risk, and control mapping across frameworks. The role also expands evidence automation through APIs and scripts and works with security leadership, engineers, and customers. Candidates need at least four years of GRC, security compliance, or audit experience at a SaaS company, including end-to-end SOC 2 Type II experience, along with technical, scripting, privacy, and organizational capabilities.

