FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Staff GRC Engineering Specialist
ChargePointGRC Engineering Specialist at ChargePoint responsible for enhancing governance, risk and compliance programs and automating processes for efficiency.
Tech Stack
Tools & technologiesAWSCloud
About the role
Key responsibilities & impact- ChargePoint is looking for a GRC Engineering Specialist, who will enhance ITGCs and automate processes for efficient and mature Governance, Risk and Compliance program, while maintaining compliance with SOX and other standards such as ISO 27001, SOC 2, PCI, and FedRamp.
- GRC Engineering Specialist will own the ITGC SOX program as part of second line of defense, oversee enhancement of tools and automations to streamline controls and compliance efforts across the frameworks, and champion automation efforts for security risk management including risk assessing, remediating and reporting for leadership, vendor onboarding security assessments, and customer/prospect security reviews.
- This will be an amazing opportunity to continue building our GRC program while adding innovation and streamlining compliance efforts. The individual will possess deep IT and Information Security audit, compliance and risk management knowledge and use of AI, and automated tools and techniques to build into projects and assessments.
- Introduce innovative, differentiating capabilities that enhance our overall GRC program and align risk strategies with business priorities. Champion common control framework approach.
- Enhance internal processes, policies and programs by incorporating AI or other automation to streamline compliance efforts while ensuring compliance requirements are maintained.
- Provide leadership to internal functions in the application, maintenance and improvement of access management, change management and operational systems, procedures and department specific processes for both current and future IT systems that come into scope.
- Establish credibility and maintain a strong working relationship with key stakeholders across the business, internal and external auditors to understand their current and planned activities that impact ITGC SOX, ISO 27001, SOC 2, PCI, and FedRamp.
- Partner with control owners and operators to validate the completeness and accuracy of ITGC control execution, ensuring ITGC’s are designed, ChargePoint documentation and teams are audit-ready, and controls executed and monitored effectively.
- Oversee IT SOX compliance activities, including annual planning, scoping, and collaborating with auditors for the same, walk-throughs and receipt of control evidence.
- Build reporting to track and monitor overall Compliance, Risk Management and other security project status as needed for monthly and quarterly reporting to senior management.
Requirements
What you’ll need- Bachelor’s degree in general business, Information Systems, Engineering, Science or a related field and with a minimum of 5 years’ relevant experience.
- 8+ years of audit and project management experience leading ITGC SOX, SOC 1/2/3, or IT Internal Audit activities and programs to support compliance efforts
- Good knowledge of Sarbanes-Oxley, COBIT, ISO 27001, SOC 2, NIST 800-53, PCI DSS, commonalities across frameworks and standards
- Solution-oriented mindset and risk-based approach to identifying, evaluating and addressing critical compliance risks, operational technology risks and the relevant business and governance processes
- Experience working with and managing both internal and external auditors
- Familiarity with SAAS-based applications, such as NetSuite, Workday, Salesforce, Github, and infrastructure providers – AWS, Google Cloud from IT controls perspective and ability to understand in-house developed systems and CI/CD development processes
- Good written and verbal communication skills with the ability to influence broad range of stakeholders (Engineering, IT, Legal, Auditors, Product, Finance, etc.) and report policy and compliance results and risks
- Excellent organizational skills
Benefits
Comp & perks- Health insurance
- Paid time off
- Professional development opportunities
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
ITGCSOX complianceaudit managementrisk managementcompliance automationsecurity assessmentschange managementaccess managementproject managementNIST 800-53
Soft Skills
solution-oriented mindsetrisk-based approachcommunication skillsorganizational skillsleadershipstakeholder managementinfluencing skillscollaborationinnovationcredibility
Certifications
Bachelor's degreeISO 27001SOC 2PCI DSSCOBIT