GRC Consultant – Compliance & Audit Readiness

Sprinto
India
Workplace: RemoteFull timeFunction: Legal, Risk & ComplianceExperience: 2-5 yearsSkills: ["Problem-solving","Communication","Organization","Judgment","Follow-through"]

Serve as the trusted bridge between customers and independent auditors. Identify security and compliance gaps, assess control and evidence readiness across SOC 2 and ISO 27001, and coordinate external audit workflows through timely findings resolution. Build risk-based remediation plans with technical and leadership teams, maintain an audit-ready evidence trail, and improve reusable audit playbooks for a portfolio of global customers across time-sensitive EU/US schedules.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Sprinto
Sprinto
3 days ago

GRC Consultant – Compliance & Audit Readiness

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 27 minutes agoStatus: Live

Job Summary

Serve as the trusted bridge between customers and independent auditors. Identify security and compliance gaps, assess control and evidence readiness across SOC 2 and ISO 27001, and coordinate external audit workflows through timely findings resolution. Build risk-based remediation plans with technical and leadership teams, maintain an audit-ready evidence trail, and improve reusable audit playbooks for a portfolio of global customers across time-sensitive EU/US schedules.
Location: India
Workplace: Remote
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Mid level

Key Responsibilities

  • •Own the audit journey for a portfolio of global customers, from gap assessment and readiness through external audit fieldwork, findings resolution, and closure.
  • •Assess security controls, cloud environments, organizational policies, and operating practices to identify control, evidence, and implementation gaps early.
  • •Create practical, risk-based remediation plans with Engineering, IT, DevOps, and leadership while balancing audit urgency with operational reality.
  • •Review and maintain an audit-ready evidence trail by tracking requests, dependencies, exceptions, and risks; communicate progress and escalate blockers.
  • •Coordinate between customers and independent auditors by clarifying how controls operate and guiding customers through SOC 2 and ISO/IEC 27001 exams.

Pay and Benefits

Perks:Remote WorkHealth InsuranceAccident ProtectionLife InsuranceLearning BudgetPaid LeaveCo-working AllowanceWorkspace Setup

Key Requirements

  • •2-5 years of relevant experience in information security, IT audit, compliance consulting, or a closely related customer-facing advisory role.
  • •Strong working knowledge of SOC 2 Type I and Type II and ISO/IEC 27001, including control design, evidence expectations, readiness, and external audit workflows.
  • •Experience participating in, coordinating, or supporting third-party security audits and responding to auditor requests or findings.
  • •Comfort evaluating controls in AWS, GCP, or Azure environments, including SaaS architectures and identity & access management context.
  • •Ability to distinguish documentation gaps from control design or operating-effectiveness gaps and drive appropriate remediation.
Experience:2-5 yearsInformation securityIT auditCompliance consultingCybersecurityB2B SaaS
Skills:Problem-solvingCommunicationOrganizationJudgmentFollow-through
Certifications:CISACISMCISSPISO/IEC 27001 Lead AuditorISO/IEC 27001 Lead Implementer
Tech Stack:AWSGCPAzureSaaSIdentity and access management

Company Brief

Sprinto
Provides automated compliance and security assurance platform to help SaaS companies achieve and maintain certifications like SOC 2, ISO 27001, and GDPR through continuous evidence collection, control orchestration, and audit readiness.
Industry: RegTech
Company Size: Medium (51 to 250 employees)
Growth: Growth Stage Startup
Headquarters: Mumbai, India
Founded: 2019
WebsiteLinkedIn