GRC Compliance Specialist

HappyRobot
Madrid, Barcelona, Spain
Workplace: HybridFull timeFunction: Legal, Risk & ComplianceExperience: 1-3 yearsSkills: ["Communication","Writing","Stakeholder management","Problem-solving","Attention to detail"]

Join the Security team as a GRC Compliance Analyst to scale HappyRobot’s GRC program. Own day-to-day GRC platform operations, automate evidence collection, coordinate external audits, and build a Trust Center to accelerate sales with accurate security documentation. Work with engineers to ensure robust controls (SOC 2 Type II, ISO 27001) and guide future certifications in a high-growth SaaS environment.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
HappyRobot
HappyRobot
3 months ago

GRC Compliance Specialist

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 4 hours agoStatus: Live

Job Summary

Join the Security team as a GRC Compliance Analyst to scale HappyRobot’s GRC program. Own day-to-day GRC platform operations, automate evidence collection, coordinate external audits, and build a Trust Center to accelerate sales with accurate security documentation. Work with engineers to ensure robust controls (SOC 2 Type II, ISO 27001) and guide future certifications in a high-growth SaaS environment.
Location: Madrid, Barcelona, Spain
Workplace: Hybrid
Employment Type: Full time
Job Function: Legal, Risk & Compliance

Key Responsibilities

  • •Framework Management: Maintain and improve our compliance posture for SOC 2 Type II and ISO 27001. Assist in the roadmap for future certifications (e.g., HIPAA, GDPR).
  • •GRC Automation: Administer our GRC platform (e.g., Vanta, Drata) to automate evidence collection and monitor control health in real-time.
  • •Audit Coordination: Lead external audit cycles, acting as the main interface between auditors and our internal technical teams.
  • •Customer Trust: Own the security questionnaire process. Build and maintain a "Trust Center" or Knowledge Base to accelerate sales cycles by providing accurate security documentation to prospects.
  • •Risk Management: Conduct internal risk assessments and vendor security reviews to ensure our supply chain meets HappyRobot’s standards.

Key Requirements

  • •1–3 years of experience in GRC, IT Audit, or Security Compliance.
  • •Proven experience working with SOC 2 or ISO 27001 (end-to-end audit experience is a plus).
  • •Ability to understand technical security controls (encryption, IAM, CI/CD, cloud logs) and explain them to non-technical stakeholders.
  • •Prior experience with GRC automation platforms (Vanta, Drata, Secureframe, or similar).
  • •Exceptional written and verbal communication in English. You will be drafting auditor-facing evidence and customer-facing security responses.
Experience:1-3 yearsSaaSSecurityGRCIT AuditSOC 2ISO 27001
Skills:CommunicationWritingStakeholder managementProblem-solvingAttention to detail
Certifications:CISACRISCCERTIFICATIONS
Languages:English
Tech Stack:VantaDrataSecureframeSOC 2ISO 27001EncryptionIAMCI/CDCloud logs

Company Brief

HappyRobot
Builds and manages enterprise AI workers (conversational and document-processing agents) to automate operational workflows for supply chain and logistics companies, integrating with systems to execute tasks, collect real-time data, and drive operational insights.
Industry: Supply Chain Technology
Company Size: Medium (51 to 250 employees)
Growth: Scaleup
Valuation: USD 250M to 500M
Funding: Series B
Headquarters: San Francisco, United States
Founded: 2022
WebsiteLinkedInGlassdoor