Security GRC Specialist

profoundยท Engineering
Apply Now โ†—
๐Ÿ“ New York, New YorkFullTime๐Ÿ’ฐ USD 150Kโ€“240K/yr

About this role

Profound is the marketing platform for the AI era. As people increasingly turn to ChatGPT, Perplexity, and Gemini to decide what to buy, we give brands the intelligence to see how AI represents them and the Agents to act on it. Today, ~13% of the Fortune 500, plus companies like Ramp, Figma, Chime, Calendly, and DocuSign, use Profound to turn AI Search from a black box into a measurable growth channel.

Backed by Lightspeed, Sequoia, Kleiner Perkins, and Khosla Ventures at a $1B valuation, we're a lean, fast-moving team across NYC, SF, Buenos Aires, and London, shipping at a relentless pace and defining a new category at the biggest shift in marketing in 25 years. If you want to do the best work of your career at the frontier of AI, come build it with us.

We are hiring a Security GRC Specialist to own and scale our security and compliance programs while working closely with engineering, sales, and customer success.

Profound sells to enterprises with serious security expectations, and our GRC function is central to closing deals, sustaining customer trust, and meeting the regulatory bar for the markets we operate in. This is not a "watch the dashboard and file the report" role. You'll shape how we build secure systems, push remediation through with engineering, and make sure compliance accelerates the business rather than slowing it down.

What you'll do

  • Own and operate our compliance frameworks: SOC 2, ISO 27001, GDPR, and others as we grow

  • Drive audits end to end: readiness, evidence collection, auditor coordination

  • Continuously improve controls and reduce compliance overhead through automation

  • Lead responses to enterprise security questionnaires, RFPs, and due diligence requests

  • Partner with Sales and Customer Success to unblock deals and build trust with security teams at Fortune 500 customers

  • Develop and maintain our trust center, security whitepapers, and customer-facing documentation

  • Work directly with engineering to design and implement practical security controls across our cloud infrastructure, data pipelines, and customer-facing surfaces

  • Partner on identity and access work (SSO, SAML, SCIM, IdP integrations) where security, compliance, and customer-facing requirements intersect

  • Translate compliance requirements into technical, scalable solutions

  • Identify gaps and drive remediation, not just report them

  • Run risk assessments across systems, vendors, and processes

  • Maintain policies and standards that are lightweight, current, and actually useful

  • Track and report on our security posture and compliance status to leadership

  • Improve how we manage compliance: evidence collection, control mapping, automation

  • Evaluate and implement GRC and security tooling where it earns its keep

Who you are

  • 3 to 7+ years in security GRC, compliance, or adjacent security engineering roles

  • Hands-on experience with SOC 2, ISO 27001, or similar frameworks

  • Experience supporting audits and leading customer-facing security conversations

  • Comfortable working with engineers and reasoning about cloud infrastructure, APIs, identity systems, and data flows

  • Able to translate between compliance language and engineering reality in both directions

  • Experience with modern cloud environments (AWS, GCP, or Azure) is a strong plus

  • Proactive and hands-on: you drive changes, you don't just track them

  • Comfortable balancing rigor with pragmatism in a fast-moving environment

  • Strong written communication, especially with enterprise customers and cross-functional partners

  • Experience building or scaling a GRC program from early stages

  • Familiarity with automation in compliance workflows

  • Background in security engineering, DevOps, or identity and access management

Location

This is an on-site role based in our NYC office, designed for builders who thrive on speed, iteration, and meaningful impact.

For this role, the expected base salary range is $150,000 to $240,000, depending on experience. Profound's total compensation package includes base salary, equity, and a full range of benefits and perks. Final compensation will depend on factors such as your skills, experience, qualifications, and location, and will be determined during the interview process. Our recruiting team will share more details about the full compensation package and benefits as you move through hiring.

#LI-PRO

Note: All official communication from Profound will come from a @tryprofound.com email address. If you're contacted by anyone using a different domain, please disregard and report it as spam.

Frequently Asked Questions

What is the salary for the Security GRC Specialist role at profound?
The listed salary for this Security GRC Specialist position at profound is USD 150Kโ€“240K/yr. This is an FullTime role.
Where is the Security GRC Specialist position at profound located?
This Security GRC Specialist role at profound is based in New York, New York. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Security GRC Specialist role at profound full-time or part-time?
This is listed as a FullTime position. It is posted as a Security GRC Specialist role in the Engineering department at profound.
Which team or department does the Security GRC Specialist at profound belong to?
This Security GRC Specialist position is part of the Engineering department at profound. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Security GRC Specialist position at profound?
Click the "Apply Now" button on this page. You will be redirected to profound's official application portal hosted on ashby where you can submit your application directly.
When was the Security GRC Specialist job at profound posted?
This Security GRC Specialist position at profound was posted on May 5, 2026. Apply as soon as possible โ€” early applications are often reviewed first.
Security GRC Specialist
profound ยท ๐Ÿ’ฐ USD 150Kโ€“240K/yr
Apply for this role โ†—

You'll be redirected to profound's official application page on Ashby ATS.