Similar Jobs
See allSecurity Risk Management Specialist II
Affirm
US
Python
Cloud Security
Risk Management
Security Risk Management Specialist II
Affirm
Canada
Information Security
Risk Management
Python
Security Program Manager
Massed Compute
US
Security Compliance
GRC
Audit Management
Governance, Risk & Compliance (GRC) Manager
Fullscript
Canada
GRC
SOC 2
PCI DSS
Security Engineer
EnableComp
US
Python
Cloud Security
CI/CD
About the role:
- AssemblyAI runs a mature security and compliance program including SOC 2, ISO 27001, and PCI 4.0.
- This role is centered on security operations and GRC: running compliance audit cycles, evidence gathering, control verification, and vulnerability triage.
- You will also build automation scripts and tooling to reduce manual toil.
What You'll Do:
- Drive compliance audit cycles for SOC 2, ISO 27001, PCI 4.0: gather evidence, design controls, coordinate with auditors.
- Own the compliance automation platform Vanta: monitor controls, chase failing checks, update risk register.
- Respond to customer security questionnaires, run vendor risk reviews, and support incident response.
What You'll Need:
- 3+ years in security operations, GRC, or IT security with 2+ years in compliance audit cycles.
- Proficiency in Python and experience with AI-assisted development tools.
- Strong organization and written communication skills for audit documentation and policy writing.
AssemblyAI
AssemblyAI builds the best-in-class Voice AI models powering the next generation of voice applications. With under 100 people, it is a capital-efficient AI company generating roughly $500K ARR per employee and operating as a true meritocracy with no bureaucracy.