About the Role
The Governance, Risk, and Compliance (GRC) team operates within the Security organization, driving governance, risk, and compliance initiatives enterprise-wide. This role is central to building and refining compliance and governance frameworks that uphold customer trust, meet evolving regulatory demands, and support scalable AI deployment. You’ll translate complex security, privacy, public sector, and AI governance requirements into practical programs, technical controls, and sustainable processes. This is a hands-on position requiring both compliance knowledge and technical execution—such as automation, lightweight tool development, and process optimization—not just policy creation. It’s ideal for someone eager to shape compliance in a dynamic, technology-driven AI environment.
Responsibilities
- Design, deploy, and expand compliance programs, controls, and operational workflows across multiple regulatory and industry standards such as SOC 2, ISO 27001, HIPAA, ISO 42001, product-specific compliance, FedRAMP, DoD, and additional frameworks.
- Advance AI governance initiatives, including alignment with ISO 42001 and the EU AI Act, to strengthen organizational maturity in responsible AI practices.
- Lead preparation and readiness for public sector compliance certifications, including FedRAMP and DoD, while supporting enterprise-wide and customer-facing compliance demands.
- Collaborate with Security, Engineering, Modeling, Product, Legal, and other teams to convert regulatory and business requirements into actionable, scalable control mechanisms.
- Enhance compliance operations by integrating automation, specialized tooling, and efficient, repeatable workflows.
- Develop simple scripts or small-scale tools to streamline evidence collection, reporting, control monitoring, and audit preparedness.
- Oversee cross-functional initiatives, project timelines, remediation activities, and audit readiness efforts across departments.
- Support internal and external audits, third-party assessments, and responses to customer or regulatory compliance inquiries.
Work Arrangement
Remote-friendly with physical offices in Toronto, San Francisco, New York, London, Paris, and Montreal; additional locations planned.
How and Where We Work
The company supports remote work and maintains offices in Toronto, San Francisco, New York City, London, Paris, and Montreal, with more locations upcoming. Office-based employees enjoy daily lunch, snacks, and regular team events. Remote team members receive access to co-working spaces in their city. All employees are provided a $500 stipend to equip their home office.
Accommodations
Applicants needing accommodations during the hiring process can submit an Accommodations Request Form, and the team will collaborate to meet their needs.
Other
- The company supports remote work.
- AI-powered tools may be used to evaluate candidates based on role criteria.
- Every employee receives a $500 stipend to equip their home office.