Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Phylo

Security GRC Specialist

Phylo

Security GRC Specialist leading security and compliance programs at Phylo, an AI biomedical discovery lab. Focus on audits, risk assessments, and regulatory requirements for AI systems.

Posted 7/31/2026full-timeSouth San Francisco • California • 🇺🇸 United StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in security governance, risk management, and compliance (GRC) with a focus on SOC 2, ISO 27001, and HIPAA. Proven ability to implement scalable security controls and automate compliance workflows in cloud and AI environments.

Highest-signal resume keywords
Security Governance, Risk Management, And Compliance (GRC)SOC 2, ISO 27001, And HIPAA Program LeadershipCloud And Application Security ExpertiseRegulatory Requirements Translation Into Technical ControlsExperience Automating GRC And Compliance Workflows

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
SOC 2ISO 27001HIPAAFedRAMPNIST SP 800-53GDPRRisk AssessmentCompliance ReportingEvidence Collection AutomationSecurity Program Development
Soft Skills
Cross-Functional CommunicationProgram OwnershipPragmatic Problem-Solving
Tools & Technologies
Cloud InfrastructureAI SystemsCompliance Workflows
Industry Keywords
HealthcareLife SciencesEnterprise AIAI Governance Frameworks

Tech Stack

Tools & technologies
Cloud

About the role

Key responsibilities & impact
  • Own Phylo’s security and compliance roadmap.
  • Lead SOC 2, ISO 27001 and GDPR readiness, audits, evidence collection, and remediation.
  • Build HIPAA-ready processes for workloads involving protected health information.
  • Assess and plan for FedRAMP, NIST, privacy, and life-sciences requirements where applicable.
  • Partner with engineers to implement scalable controls across cloud infrastructure, applications, and AI systems.
  • Lead customer questionnaires, RFPs, due diligence, and security conversations.
  • Run risk assessments and drive remediation across systems, vendors, and processes.
  • Maintain lightweight policies, customer-facing security documentation, and compliance reporting.
  • Automate evidence collection, monitoring, and other compliance workflows.

Requirements

What you’ll need
  • 5+ years in security GRC, compliance, or a security engineering-adjacent role
  • Experience leading SOC 2, ISO 27001, HIPAA, FedRAMP, or similar programs
  • Strong understanding of cloud and application security
  • Ability to translate regulatory requirements into technical controls
  • Experience supporting audits and enterprise customer security reviews
  • Strong cross-functional communication and program ownership
  • A pragmatic, hands-on approach suited to an early-stage company.
  • Nice to Have: Experience building a security program from an early stage
  • Background in healthcare, life sciences, enterprise AI, or cloud infrastructure
  • Experience with HIPAA, FedRAMP, NIST SP 800-53, HITRUST, or GDPR
  • Familiarity with AI governance frameworks such as NIST AI RMF or ISO 42001
  • Experience automating GRC and compliance workflows

Benefits

Comp & perks
  • Competitive salary and equity share in building the future of biomedical discovery
  • Full medical, dental, and vision coverage, including free therapy sessions and eyewear stipend
  • 401(k) to help you build long-term financial security (US only)
  • Unlimited PTO to recharge when you need it (US only)
  • Lunch and snacks when you're in the office
  • Regular team offsites and company events
  • A culture of excellence and speed - we move fast, think big, and support each other every step of the way
  • Your work will directly impact our mission to 100X biomedical discoveries through AI