Companies Gridware Compliance Engineer

About the role

Gridware
About Gridware
Gridware is a San Francisco-based technology company dedicated to protecting and enhancing the electrical grid. We pioneered a groundbreaking new class of grid management called active grid response (AGR), focused on monitoring the electrical, physical, and environmental aspects of the grid that affect reliability and safety. Gridware’s advanced Active Grid Response platform uses high-precision sensors to detect potential issues early, enabling proactive maintenance and fault mitigation. This comprehensive approach helps improve safety, reduce outages, and ensure the grid operates efficiently. The company is backed by climate-tech and Silicon Valley investors. For more information, please visit www.Gridware.io.

Role Description
We are building our information security compliance program and this role sits at the center of that effort. As our Compliance Engineer, you will work directly with the Head of Information Security to design, implement, and operationalize controls across multiple frameworks (SOC 2, ISO 27001, NIS 2, CIS IG3, NERC CIP, and NIST). You will also own customer-facing security assurance, including security questionnaires and audit evidence requests. 
 
This is a high-visibility role for someone energized by building structure in ambiguous environments and who understands that good compliance is good engineering. 

Responsibilities

Framework Implementation & Control Management
  • Design a unified control framework mapped across SOC 2, ISO 27001, CIS IG3, NERC CIP, and NIST (CSF/800-53), eliminating duplication and creating a single source of truth for compliance posture. 
  • Develop and maintain a control library, policy inventory, and risk register. 
  • Translate technical control requirements into actionable guidance for engineering, IT, and operations teams. 
  • Audit Readiness & Evidence Collection
  • Build a structured, repeatable evidence collection process supporting concurrent audits across all frameworks. 
  • Maintain a continuously updated evidence repository and coordinate with Engineering, DevOps, HR, and Legal to gather and validate artifacts. 
  • Serve as primary liaison with external auditors; manage schedules, fieldwork, and findings remediation through to closure. 
  • Customer Security Assurance
  • Own intake, triage, and completion of customer security questionnaires (SIG Lite, CAIQ, custom assessments). 
  • Maintain a living questionnaire knowledge base and develop customer-facing security documentation, including trust portal content. 
  • Program Development
  • Define compliance workflows, SOPs, tooling requirements, and automation opportunities as the program matures. 
  • Monitor regulatory changes across NERC CIP, NIS 2, and NIST; proactively communicate impacts to the team. 
  • Required Skills

  • 2–4 years in information security compliance, GRC, or a related discipline. 
  • Working knowledge of two or more: SOC 2, ISO 27001, NIST CSF/800-53, CIS Controls, NERC CIP. 
  • Experience supporting or leading external audits, including evidence collection and auditor coordination. 
  • Ability to perform cross-framework control mapping and identify gaps or conflicts. 
  • Strong written communication skills across technical and non-technical audiences. 
  • Bonus Skills

  • Hands-on experience with NERC CIP (CIP-002 through CIP-014) in an OT or critical infrastructure environment. 
  • Familiarity with GRC platforms such as Vanta, Drata, OneTrust, or Archer. 
  • Certifications: CISA, CRISC, ISO 27001 Lead Implementer/Auditor, or NERC CIP. 

  • **At this time, Gridware is unable to provide visa sponsorship or immigration support for this role. We’re only able to consider candidates who are currently authorized to work in the country of employment without visa sponsorship now or in the future.**

    This describes the ideal candidate; many of us have picked up this expertise along the way. Even if you meet only part of this list, we encourage you to apply!

    Benefits
    Health, Dental & Vision (Gold and Platinum with some providers plans fully covered) 
    Paid parental leave 
    Alternating day off (every other Monday)
    “Off the Grid”, a two week per year paid break for all employees. 
    Commuter allowance 
    Company-paid training 
    Ready to apply to Gridware?
    Apply to Gridware

    Similar jobs

    Sign up for suggestions tailored to the jobs you open and the searches you save.

    Apply now
    🤖

    Whoa — hold up

    JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.

    Come back later. If you're genuinely job hunting, we've got your back — just act like a human.

    Catch your next role the second it’s posted.

    Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

    Create free account

    Free forever · takes 30 seconds · already have one?

    Get the worldwide-remote edge.

    Join our Telegram channel for the stuff that helps you land the role — salary benchmarks, the weekly market pulse, and new-feature drops. No spam, just signal.

    Join the channel — it's free