Senior GRC Engineer to build and scale automation for governance, risk, and compliance.
- •Postman is seeking a Senior GRC Engineer to enhance its security posture by ensuring compliance and maintaining effective governance, risk, and compliance programs.
- •This role focuses on building and scaling automation across GRC functions.
- •Key Responsibilities Design, build, and operate GRC automation for evidence collection, control testing, risk tracking, and reporting.
- •Lead SOC 2, ISO 27001, HIPAA, and FedRAMP initiatives.
- •Drive continuous controls monitoring and automated evidence collection.
- •Lead technical risk assessments and control implementation.
- •Requirements 6+ years of cybersecurity GRC experience.
- •Experience implementing and maturing GRC programs with engineered solutions.
- •Knowledge of SOC 2, ISO 27001, HIPAA, GDPR, CCPA, and/or FedRAMP.
- •Proficiency in Python or JavaScript for automation.
View original posting →