10 Atomicwork Jobs
Atomicwork - GRC Specialist - IT Risk Management (3-5 yrs)
Atomicwork
posted 6d ago
Key skills for the job
- At Atomicwork, we are redefining IT transformation through AI-driven solutions for ITSM and Employee Service Management in the B2B SaaS space.
- We are passionate about empowering businesses with tools that deliver operational excellence and customer satisfaction.
- As a fast-growing startup, we're looking for a GRC Specialist to ensure robust governance, risk management, and compliance in our journey toward scaling globally
- As the GRC Specialist, you will be pivotal in designing, implementing, and managing the governance, risk, and compliance frameworks across Atomicwork.
- You'll work closely with product, engineering, and leadership teams to ensure compliance with regulatory standards, manage enterprise risks, and foster a culture of proactive risk management and operational excellence.
Key Responsibilities:
Governance & Policy Management:
- Develop, implement, and maintain GRC policies, procedures, and standards in alignment with global regulatory frameworks (e. , ISO 27001, SOC 2, GDPR,HIPPA).
- Ensure effective governance practices are embedded in organizational processes.
Risk Management:
- Conduct risk assessments across business units, including IT, product, and operations.
- Identify, evaluate, and mitigate risks in line with company goals and risk appetite.
- Maintain and enhance the organization's risk register.
Compliance:
- Lead compliance efforts for certifications such as SOC 2, ISO 27001, and other applicable frameworks.
- Monitor and ensure compliance with applicable privacy regulations like GDPR, CCPA, and others.
- Manage internal and external audits, including coordination with third-party auditors.
Incident & Vendor Management:
- Collaborate with engineering and security teams to manage security incidents and remediation efforts.
- Assess third-party vendors for risk and compliance alignment during onboarding and periodically.
Qualifications:
- 3-5 years of experience in GRC, compliance, or a related role, preferably in a B2B SaaS environment.
- Experience with frameworks such as SOC 2, ISO 27001, GDPR, and NIST.
- Certifications (preferred): CISA, CRISC, CISSP, or ISO 27001 Lead Implementer.
Skills:
- Strong understanding of SaaS business models and associated risks.
- Hands-on experience with GRC tools and risk management software.
- Excellent communication and stakeholder management skills.
- Analytical mindset with a focus on problem-solving and continuous improvement
Functional Areas: Other
Read full job descriptionPrepare for Specialist roles with real interview advice
3-5 Yrs