Workstreet is a fast-growing startup focused on helping businesses scale securely through advanced security and compliance programs. The Manager, GRC Engineering will serve as a trusted advisor to clients, guiding them through compliance frameworks and ensuring project oversight and strategic guidance.
Responsibilities:
- Lead Kickoff Calls: Serve as the first point of contact for new clients. Set the tone for the engagement by addressing technical concerns, aligning goals, and outlining the compliance roadmap
- Drive Compliance Progress: Guide clients through frameworks such as SOC 2, ISO 27001, GDPR, and more. Support documentation efforts, provide best practices, and ensure timely progress
- Facilitate Milestone Review Calls: Conduct regular reviews to assess compliance readiness, unblock issues, and align client teams with next steps
- Advise on Best Practices: Deliver expert recommendations based on the latest regulatory trends and security standards. Help clients implement scalable and practical compliance strategies
- Collaborate Cross-Functionally: Partner with the delivery team to ensure smooth handoffs and execution across engagements
- Platform Support: Provide hands-on assistance within platforms like Vanta, guiding clients in using automation tools to streamline compliance
- Stay Ahead of Trends: Monitor regulatory updates and industry best practices to continuously deliver value to clients and internal teams
Requirements:
- Bachelor's degree in Information Technology, Cybersecurity, or a related field
- Experience managing or supporting compliance programs with at least three or more of the following: SOC 2, ISO 27001, GDPR, HIPAA, PCI DSS, NIST 800-171/53, or HiTRUST
- Strong communication skills — able to explain technical concepts to both technical and non-technical stakeholders
- Confident working independently and taking ownership of projects
- Ability to translate compliance requirements into business value and present solutions in a compelling way
- Comfortable collaborating with sales and delivery teams in a fast-paced environment
- Passionate about cybersecurity and committed to staying informed on new trends and regulations
- Reliable high-speed internet connection
- Quiet, professional home office setup
- Must be amenable to work EST or PST (PST Preferred)
- Fluency in written and verbal English communication skills
- Relevant certifications such as CISA, CISSP, CISM, CCSP
- Familiarity with cloud platforms: AWS, Azure, or GCP
- Experience working with audit firms or undergoing cybersecurity audits
- Hands-on experience with the big 3 cloud platforms (AWS, Azure, GCP)
- A strategic mindset and a consultative approach to client engagement