Own controls across SOC 2 Type II, ISO 27001, and HIPAA, keep live evidence green and ensure continuous audit readiness. Run identity & access lifecycle across IdP, AWS/GCP/Azure, and critical SaaS, drive least-privilege and quarterly reviews. Triage and drive security engineering work with Eng leads, manage backlog, SLAs, and closure.
Job listings
USD/year
We are looking for a Sr. Lead, GRC to strengthen Upworkβs Information Security program by leading audit readiness and compliance operations across global frameworks and vendor requirements. This is an exciting opportunity to influence security strategy and work cross-functionally to ensure that Upwork meets the highest standards in data security and privacy.