Security specialist, GRC

Writer

Not Interested
Bookmark
Report This Job

profile Job Location:

New York City, NY - USA

profile Monthly Salary: $ 101 - 178
Posted on: 21 hours ago
Vacancies: 1 Vacancy

Job Summary

About WRITER

WRITER is where the worlds leading enterprises orchestrate AI-powered work. Our vision is to expand human capacity through superintelligence. And were proving its possible through powerful trustworthy AI that unites IT and business teams together to unlock enterprise-wide transformation. With WRITERs end-to-end platform hundreds of companies like Mars Marriott Uber and Vanguard are building and deploying AI agents that are grounded in their companys data and fueled by WRITERs enterprise-grade LLMs. Valued at $1.9B and backed by industry-leading investors including Premji Invest Radical Ventures and ICONIQ Growth WRITER is rapidly cementing its position as the leader in enterprise generative AI.

Founded in 2020 with office hubs in San Francisco New York City Austin Chicago and London our team thinks big and moves fast and were looking for smart hardworking builders and scalers to join us on our journey to create a better future of work with AI.

About the role

This is your chance to shape AI governance from the ground up at one of the fastest-growing companies in enterprise AI. As a security specialist GRC at WRITER youll be building the frameworks that ensure our AI platform earns and keeps the trust of the worlds most demanding enterprises. Youre not just checking boxesyoure creating the compliance infrastructure that enables WRITER to scale safely and securely while moving at the speed of innovation.

The opportunity here is extraordinary: youll work at the intersection of AI security and business enablement helping define what governance looks like for enterprise AI systems that didnt exist a few years ago. Youll lead audit engagements for SOC 2 ISO 27001 and other critical certifications respond to customer security assessments that directly impact major deals and build the policies and controls that protect both our AI models and the sensitive data flowing through them. Youll translate complex regulatory requirements into practical business-aligned security controls while partnering with Engineering Legal Product and Sales to ensure WRITER can sell into highly regulated industries without compromising our velocity.

This role can be remote within the US or hybrid from our San Francisco or New York City offices reporting to the head of security.

What youll do

  • Own and drive WRITERs security compliance program end-to-end including managing SOC 2 Type II audits ISO Triad (27001/27701/42001) certification and expanding our compliance coverage to meet emerging customer requirements in regulated industries like financial services and healthcare

  • Lead customer assurance efforts by responding to security questionnaires DDQs and RFPs from enterprise customers maintaining our trust portal with up-to-date security documentation and partnering with Sales to remove security blockers that could delay major deals

  • Build and maintain WRITERs security governance framework including creating and updating security policies access control standards vendor risk procedures incident response plans and AI-specific governance documentation that addresses model training data handling and responsible AI deployment

  • Conduct continuous control monitoring and evidence collection by implementing automated compliance workflows tracking remediation activities across teams performing control testing and ensuring we maintain audit-ready documentation throughout the year instead of scrambling before audits

  • Drive risk assessments and third-party vendor security reviews by evaluating supplier controls identifying and quantifying security risks across our AI platform and infrastructure and working cross-functionally to prioritize and track remediation efforts

  • Partner with Engineering and Product teams to embed compliance into the development lifecycle by reviewing architecture decisions for security and privacy implications ensuring secure-by-design principles are followed for new AI features and translating regulatory requirements into technical controls that developers can actually implement

  • Serve as the primary point of contact for external auditors and assessors coordinating evidence collection scheduling interviews addressing findings and ensuring audit processes run smoothly while minimizing disruption to the broader team

What you need

  • 2 years of hands-on experience in GRC security compliance or audit roles within fast-paced tech companies or startupsyou understand how to build compliance programs that enable growth rather than slow it down

  • Deep working knowledge of security frameworks and certifications including SOC 2 Type II ISO 27001 GDPR CCPA and familiarity with emerging AI governance requirementsyouve led audits from planning through certification and can speak confidently about control requirements

  • Strong technical literacy that allows you to evaluate cloud security architectures understand API security review access control implementations and have credible conversations with engineers about security controlsyou dont need to write code but you need to understand how systems work

  • Excellent project management abilities with the skill to juggle multiple audits customer questionnaires policy updates and remediation initiatives simultaneously while keeping stakeholders informed and projects moving forward without constant oversight

  • Outstanding communication skills that enable you to explain complex compliance requirements in clear actionable language to technical and non-technical audiences alikeyou can craft policies that engineers will actually follow and present risk scenarios that executives will understand

  • Natural curiosity about AI governance and emerging regulatory landscape including AI-specific frameworks model risk management data privacy implications of AI training and responsible AI principlesyoure excited to help define best practices in an evolving space

  • Alignment with WRITERs values of Connect (building trusted relationships with customers auditors and cross-functional teams) Challenge (pushing beyond checkbox compliance to create governance that truly reduces risk) and Own (taking full accountability for WRITERs security posture and customer trust)


Benefits & perks (US Full-time employees)

  • Generous PTO plus company holidays

  • Medical dental and vision coverage for you and your family

  • Paid parental leave for all parents (12 weeks)

  • Fertility and family planning support

  • Early-detection cancer testing through Galleri

  • Flexible spending account and dependent FSA options

  • Health savings account for eligible plans with company contribution

  • Annual work-life stipends for:

    • Wellness stipend for gym massage/chiropractor personal training etc.

    • Learning and development stipend

  • Company-wide off-sites and team off-sites

  • Competitive compensation company stock options and 401k

WRITER is an equal-opportunity employer and is committed to diversity. We dont make hiring or employment decisions based on race color religion creed gender national origin age disability veteran status marital status pregnancy sex gender expression or identity sexual orientation citizenship or any other basis protected by applicable local state or federal law. Under the San Francisco Fair Chance Ordinance we will consider for employment qualified applicants with arrest and conviction records.

By submitting your application on the application page you acknowledge and agree to WRITERs Global Candidate Privacy Notice.


Required Experience:

IC

About WRITERWRITER is where the worlds leading enterprises orchestrate AI-powered work. Our vision is to expand human capacity through superintelligence. And were proving its possible through powerful trustworthy AI that unites IT and business teams together to unlock enterprise-wide transformatio...
View more view more

Key Skills

  • CCTV
  • Low Voltage
  • Network Management
  • IDS
  • Computer Networking
  • Field Service
  • ICD Coding
  • Military Experience
  • Security
  • Security System Experience
  • Information Security
  • Troubleshooting

About Company

Company Logo

Eliminate silos with an end-to-end agent builder platform, designed for collaboration—without compromise. Build, activate, and supervise agents.

View Profile View Profile