Genesys empowers organizations of all sizes to improve loyalty and business outcomes by creating the best experiences for their customers and employees. The company is looking for a Lead GRC Technologist to integrate governance, risk, and compliance processes with cutting-edge technical automation in a SaaS environment.
Requirements
- Proactively evaluate and advise the business on new and evolving certification programs, regulatory requirements, and technologies.
- Own the GRC roadmap for SaaS operations, aligning with frameworks and standards and regulatory requirements like SOC 2, ISO 27001, ISO 42001, NIST CSF, HIPAA, HITRUST, ENS, HDS, GDPR etc.
- Design and implement scalable, automated compliance workflows that support cloud (AWS) operations.
- Collaborate with Legal, Privacy, and Security Engineering to ensure controls support regulatory, contractual, and data privacy requirements.
- Develop and maintain policies, standards, and risk frameworks that reflect both business needs and evolving threat landscapes.
- Lead the automation of evidence collection, control testing, and compliance monitoring using ITSM, JIRA and GRC tools.
- Work with engineering teams to integrate compliance checks into CI/CD pipelines using Infrastructure-as-Code (IaC) and policy-as-code (Terraform, AWS Config).
- Conduct compliance validation of cloud architectures, IAM, data protection, and logging controls.
- Build and maintain dashboards and KPIs for continuous visibility into compliance posture.
- Conduct and automate risk assessments, control effectiveness reviews, and technical remediation tracking.
- Implement and manage continuous control monitoring (CCM) for real-time risk identification.
- Collaborate with product and engineering teams to perform technical risk reviews during product design and deployment.
- Serve as the technical SME for external audits and certification processes (SOC 2, ISO 27001, PCI-DSS, HIPAA, HDS, ENS, ISO 42001 etc.).
- Manage audit evidence preparation, ensuring traceability from policies to controls and technical implementation.
- Lead post-audit reviews and ensure timely closure of findings.
- Mentor junior GRC and security analysts on automation tools and control implementation best practices.
- Partner with engineering and DevOps to drive compliance-as-code culture.
- Collaborate closely with privacy and data protection officers on compliance alignment
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Visa Sponsorship
- Four Day Work Week
- Generous Parental Leave
- Tuition Reimbursement
- Relocation Assistance
