Antithesis
GRC Engineer
About this role
Antithesis is seeking their first dedicated GRC Engineer to build and own a comprehensive compliance program end-to-end, managing SOC 2 audits, policies, controls, and customer-facing security questionnaires. This hands-on individual contributor role is critical for earning enterprise customer trust and unblocking sales deals through rapid, accurate compliance responses.
What you'll do
- Own SOC 2 audit lifecycle end-to-end including auditor liaison and evidence repository management using Vanta
- Maintain and continuously improve policy library, ensuring accuracy and organizational compliance
- Manage inbound security questionnaire queue and trust center with sales-forward mindset to accelerate enterprise deals
- Run GRC calendar including tabletop exercises, security committee meetings, training, and annual reviews
- Maintain risk register, identify control gaps, and drive remediation across Engineering, IT, HR, and Operations
- Support penetration testing, vendor security reviews, and groundwork for future frameworks (ISO 27001, GDPR, FedRAMP)
What they're looking for
- SOC 2 audit management and compliance program development
- Vanta platform administration and evidence management
- Security questionnaire response and vendor security assessment
- Risk management and control design
- Policy development and organizational compliance
- Stakeholder communication across technical and non-technical teams
- Enterprise sales support and customer trust communication
- Knowledge of security frameworks and standards
Opens the application — the Jobs AI extension fills it for you. Set up autofill
Opens the official application on the employer’s site. No login required.
Antithesis
Antithesis builds a deterministic simulation platform for distributed systems testing that identifies bugs traditional testing methods miss. The company is hiring software engineers, customer-facing technical roles, and infrastructure specialists to develop its core platform and support customers in discovering and resolving bugs in their systems.
- Website
- antithesis.com
Likely interview questions
- Walk us through how you've managed a SOC 2 audit from start to finish—what were the biggest challenges?
- Tell us about a time you received a large batch of security questionnaires on a tight deadline. How did you prioritize and handle them?