New RJRP now shows Market-Observed Roles alongside verified postings — scored by our Hiring Activity algorithm. How it works →
🔍
Market-Observed Role 🔍 Observed Likely Active (65-79)
This role was detected through Vanta's hiring system and hasn't been verified directly by the employer. Our algorithm scored it as Likely Active (65-79) based on freshness, specificity, and company patterns. What does this mean? →

Product GRC SME

Vanta
🔍 Observed
66
Hiring Activity Score
Likely Active (65-79)
  • Base score
  • Posted 21 days ago
  • has location, quality description (10372 chars)
  • 3 skills
  • High confidence (90%)
  • Direct ATS (ashby)
How the Hiring Activity Score works →
Remote U.S. First seen 3 weeks ago Last seen 5 hours, 30 minutes ago Ashby
Apply on Ashby Search Google for This Role

ATS links often expire — Google search finds the latest posting

Job Description

AI Summary
• Develop and maintain compliance frameworks across multiple standards (SOC 2, ISO 27001, HIPAA, PCI DSS, NIST, GDPR/CCPA) by creating controls, evidence requirements, and implementation guidance for thousands of customers • Design and steward crosswalks and mappings between security/privacy frameworks while partnering with Engineering to operationalize these mappings into product features and automated workflows • Establish content quality standards and QA processes for control documentation, then measure and improve adoption and customer outcomes through defined metrics • Act as a strategic bridge between Product, Engineering, Design, Sales, and Customer Success to ensure GRC solutions align with both regulatory frameworks and real-world customer needs • Join Vanta's Security organization which is directly embedded in software development and provides advisory services; prior security experience is helpful but not required

Skills

git go rust
Job Information
  • Company:
    Vanta
  • Location:
    Remote U.S.
  • Job Type:
    Full-Time
  • Work Location:
    Remote
  • Experience Level:
    Senior
  • Source:
    Ashby
  • Status:
    Active
Activity Score
66 /100
Likely Active (66)

Higher scores indicate more likely active hiring based on listing freshness, company activity, and other signals. Learn more →

+
🔍

We now show two types of job listings

Same commitment to real jobs. More opportunities for you. Here's how it works.

✓ Verified Employer-Verified Posts

These jobs were posted directly to RJRP by the employer. The company has been verified through our multi-step process. This is our gold standard — the employer is real, the job is real, and you can apply with confidence.

✓ 100% employer verified
🔍 Observed Market-Observed Roles

These roles were detected through employer hiring systems like Workday. They haven't been verified by the employer directly, so we score each one using our Hiring Activity Score — an algorithm that analyzes freshness, specificity, company hiring patterns, and more to estimate whether the role is actively being filled.

📊 Only high-scoring listings are shown

Our promise hasn't changed. We will never show you a listing we can't stand behind. Market-observed roles must pass our scoring threshold before they appear on RJRP. Anything that looks like a ghost job, a talent pipeline, or a dead listing gets filtered out — you'll never see it.