FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security GRC Specialist
PhyloSecurity GRC Specialist leading security and compliance programs at Phylo, an AI biomedical discovery lab. Focus on audits, risk assessments, and regulatory requirements for AI systems.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in security governance, risk management, and compliance (GRC) with a focus on SOC 2, ISO 27001, and HIPAA. Proven ability to implement scalable security controls and automate compliance workflows in cloud and AI environments.
Highest-signal resume keywords
Security Governance, Risk Management, And Compliance (GRC)SOC 2, ISO 27001, And HIPAA Program LeadershipCloud And Application Security ExpertiseRegulatory Requirements Translation Into Technical ControlsExperience Automating GRC And Compliance Workflows
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
SOC 2ISO 27001HIPAAFedRAMPNIST SP 800-53GDPRRisk AssessmentCompliance ReportingEvidence Collection AutomationSecurity Program Development
Soft Skills
Cross-Functional CommunicationProgram OwnershipPragmatic Problem-Solving
Tools & Technologies
Cloud InfrastructureAI SystemsCompliance Workflows
Industry Keywords
HealthcareLife SciencesEnterprise AIAI Governance Frameworks
Tech Stack
Tools & technologiesCloud
About the role
Key responsibilities & impact- Own Phylo’s security and compliance roadmap.
- Lead SOC 2, ISO 27001 and GDPR readiness, audits, evidence collection, and remediation.
- Build HIPAA-ready processes for workloads involving protected health information.
- Assess and plan for FedRAMP, NIST, privacy, and life-sciences requirements where applicable.
- Partner with engineers to implement scalable controls across cloud infrastructure, applications, and AI systems.
- Lead customer questionnaires, RFPs, due diligence, and security conversations.
- Run risk assessments and drive remediation across systems, vendors, and processes.
- Maintain lightweight policies, customer-facing security documentation, and compliance reporting.
- Automate evidence collection, monitoring, and other compliance workflows.
Requirements
What you’ll need- 5+ years in security GRC, compliance, or a security engineering-adjacent role
- Experience leading SOC 2, ISO 27001, HIPAA, FedRAMP, or similar programs
- Strong understanding of cloud and application security
- Ability to translate regulatory requirements into technical controls
- Experience supporting audits and enterprise customer security reviews
- Strong cross-functional communication and program ownership
- A pragmatic, hands-on approach suited to an early-stage company.
- Nice to Have: Experience building a security program from an early stage
- Background in healthcare, life sciences, enterprise AI, or cloud infrastructure
- Experience with HIPAA, FedRAMP, NIST SP 800-53, HITRUST, or GDPR
- Familiarity with AI governance frameworks such as NIST AI RMF or ISO 42001
- Experience automating GRC and compliance workflows
Benefits
Comp & perks- Competitive salary and equity share in building the future of biomedical discovery
- Full medical, dental, and vision coverage, including free therapy sessions and eyewear stipend
- 401(k) to help you build long-term financial security (US only)
- Unlimited PTO to recharge when you need it (US only)
- Lunch and snacks when you're in the office
- Regular team offsites and company events
- A culture of excellence and speed - we move fast, think big, and support each other every step of the way
- Your work will directly impact our mission to 100X biomedical discoveries through AI