Profound

Profound

Security GRC Specialist

New York, New York

Sponsorship not specified$230k-$275kDetected 78 days ago
AWSGCPAzureCloud PlatformsDevOpsData EngineeringCybersecurityComplianceFigmaValuationCustomer SuccessLeadershipCommunication

About the role

  • Profound is the marketing platform for the AI era. As people increasingly turn to ChatGPT, Perplexity, and Gemini to decide what to buy, we give brands the intelligence to see how AI represents them and the Agents to act on it. Today, ~13% of the Fortune 500, plus companies like Ramp, Figma, Chime, Calendly, and DocuSign, use Profound to turn AI Search from
  • a black box into a measurable growth channel.

Responsibilities

  • Own and operate our compliance frameworks: SOC 2, ISO 27001, GDPR, and others as we grow
  • Drive audits end to end: readiness, evidence collection, auditor coordination
  • Develop and maintain our trust center, security whitepapers, and customer-facing documentation
  • Work directly with engineering to design and implement practical security controls across our cloud infrastructure, data pipelines, and customer-facing surfaces
  • Partner on identity and access work (SSO, SAML, SCIM, IdP integrations) where security, compliance, and customer-facing requirements intersect
  • Identify gaps and drive remediation, not just report them
  • Maintain policies and standards that are lightweight, current, and actually useful
  • Improve how we manage compliance: evidence collection, control mapping, automation
  • Evaluate and implement GRC and security tooling where it earns its keep
  • Strong written communication, especially with enterprise customers and cross-functional partners

Requirements

  • Familiarity with automation in compliance workflows

Nice to have

  • Profound is the marketing platform for the AI era.
  • As people increasingly turn to ChatGPT, Perplexity, and Gemini to decide what to buy, we give brands the intelligence to see how AI represents them and the Agents to act on it.
  • Today, ~13% of the Fortune 500, plus companies like Ramp, Figma, Chime, Calendly, and DocuSign, use Profound to turn AI Search from a black box into a measurable growth channel.
  • Profound sells to enterprises with serious security expectations, and our GRC function is central to closing deals, sustaining customer trust, and meeting the regulatory bar for the markets we operate in.
  • This is not a "watch the dashboard and file the report" role.
  • 7+ years in security GRC, compliance, or adjacent security engineering roles
  • Hands-on experience with SOC 2, ISO 27001, or similar frameworks
  • Experience supporting audits and leading customer-facing security conversations

Skills

  • SOC 2, ISO 27001, GDPR, and others as we grow
  • Continuously improve controls and reduce compliance overhead through automation
  • Translate compliance requirements into technical, scalable solutions
  • Run risk assessments across systems, vendors, and processes
  • Track and report on our security posture and compliance status to leadership

Compensation

  • For this role, the expected base salary range is $230,000 to $275,000, depending on experience.

Company info

  • Partner with Sales and Customer Success to unblock deals and build trust with security teams at Fortune 500 customers

This listing is sourced directly from Profound's careers page and normalized into a canonical job model.