← Back to jobs
HHappyRobot

GRC Compliance Specialist

HappyRobot

Spain
Full-Time
1–3 years of experience experience

Description

HappyRobot is the infrastructure for enterprises to build and orchestrate AI workforces. Our AI workers don't just communicate through voice and email - they make decisions, take action, and run operations autonomously across entire enterprise systems. Born in Y Combinator (S23) and backed by a16z, Base10, Prysm Capital and Eurazeo with over $150M raised, we power critical operations for global enterprises worldwide.

Our platform is battle-tested in the most demanding environments, where AI has real consequences. We started in logistics, built our own voice stack, models, and orchestration layer from the ground up, and are now bringing that infrastructure to every enterprise that runs the real economy. Learn more about our vision in our manifesto.

We are looking for a GRC Specialist to join our Security team. Your mission is to scale our compliance frameworks and ensure we maintain a "continuously audit-ready" state. You will own the day-to-day operations of our GRC platform, manage evidence collection, and act as the primary point of contact for customer security inquiries and external audits.

  • Framework Management: Maintain and improve our compliance posture for SOC 2 Type II and ISO 27001. Assist in the roadmap for future certifications (e.g., HIPAA, GDPR).

  • GRC Automation: Administer our GRC platform (e.g., Vanta, Drata) to automate evidence collection and monitor control health in real-time.

  • Audit Coordination: Lead external audit cycles, acting as the main interface between auditors and our internal technical teams.

  • Customer Trust: Own the security questionnaire process. Build and maintain a "Trust Center" or Knowledge Base to accelerate sales cycles by providing accurate security documentation to prospects.

  • Risk Management: Conduct internal risk assessments and vendor security reviews to ensure our supply chain meets HappyRobot's standards.

  • Prior experience in a high-growth SaaS startup.

  • CISA, CRISC, or similar certifications.

  • Basic understanding of cloud infrastructure (AWS/GCP).

Eligibility Criteria

  • 1–3 years of experience in GRC, IT Audit, or Security Compliance.
  • Proven experience working with SOC 2 or ISO 27001 (end-to-end audit experience is a plus).
  • Ability to understand technical security controls (encryption, IAM, CI/CD, cloud logs) and explain them to non-technical stakeholders.
  • Prior experience with GRC automation platforms (Vanta, Drata, Secureframe, or similar).
  • Exceptional written and verbal communication in English. You will be drafting auditor-facing evidence and customer-facing security responses.

About HappyRobot

-

Industry: no-mentionEmployees: 114+Website