703,472open jobs
41,487companies
102,442added this week
Browse all
Location
Remote (India, Philippines)
Seniority
Senior
Employment
Full-Time
Overview
Company
Impact
Profile match
SOC 2, CMMC, pentesting & security questionnaires handled by ex-Big Four security leaders and AI that works behind the scenes. You focus on product and customers. We handle the rest.

About Workstreet

At Workstreet, we’re on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in a wide range of GRC (governance, risk, and compliance) services that support frameworks across SOC 2, ISO 27001, GDPR, CMMC, NIST 800-171, NIST 800-53, and FedRAMP. We empower companies to meet regulatory requirements and enhance their cybersecurity posture from day one.

About Workstreet

At Workstreet, we’re on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in a wide range of GRC (governance, risk, and compliance) services that support frameworks across SOC 2, ISO 27001, GDPR, CMMC, NIST 800-171, NIST 800-53, and FedRAMP. We empower companies to meet regulatory requirements and enhance their cybersecurity posture from day one.

Get to know the Trust Services Team

In addition to GRC services, we also have a Trust Services team. We move at a fast, focused, and reliable pace - completing deliverables within 1 to 3 business days for customers with 5 clients and customers with 500 clients. We work directly with our customers’ security and sales points of contact, meaning clarity, teamwork, and problem-solving are at the forefront of everything we do to help our customers drive sales and renewals by using security and compliance as differentiators. If you want to be part of a team that builds the bridge between sales and security, you’re in the right place.

The Opportunity

Workstree t is looking for a results-oriented Trust Services Engineer to support our Trust Services team. Your primary responsibility will be to complete customer security questionnaires and other due diligence requests. Your work will be reviewed by Senior Engineers and Managers, giving you exposure to on-the-job feedback. This role is primarily focused on efficiently and accurately entering information from our customers’ existing compliance resources into standardized responses.

What you’ll do

  • Complete and submit security questionnaires - serve as the primary responder for customer due diligence requests, leveraging established response frameworks, internal policy documentation, and compliance control libraries to deliver accurate, on-time submissions.
  • Research and validate responses - dig into client-specific questions that fall outside standard frameworks, sourcing supporting evidence from compliance platforms and coordinating with internal security and compliance teams to verify accuracy before submission.
  • Maintain consistency and quality across all deliverables - ensure every response reflects current, approved language and aligns with the customer’s broader security posture; flag gaps or outdated documentation when identified.
  • Collaborate with internal teams - coordinate with compliance and security teams to verify information and ensure consistency across all submissions.

Who You Are

  • High-velocity SLA executor - Driven by time-sensitive deliverables and compressed turnaround targets, executing rapid data entry and technical responses without compromising quality.
  • Decisive risk navigator - Handles ambiguous security queries by making definitive, justifiable choices, utilizing sharp communication to escalate critical data gaps rather than operating on guesswork.
  • Proactive workflow coordinator - Commands strong workload prioritization instincts, systematically tracking assigned tasks and communicating blockers early to keep production lines moving.
  • Precision process guardian - Applies exceptional attention to detail and absolute structural discipline when executing established response workflows and data entry procedures.
  • Technical policy parser - Sharp ability to deconstruct dense corporate security policies, internal control libraries, and technical documentation to extract precise, accurate answers for client portfolios.
  • Third-party risk specialist - Directly processes specialized vendor security questionnaires across custom Excel matrices and cloud portals, mapping responses accurately against control domains, risk tiering, and subprocessor ecosystems.
  • Foundational GRC analyst - Grounded in core information security frameworks (SOC 2, ISO 27001, HIPAA, GDPR), data definitions (PII vs. PHI), and technical security controls like authentication, logical access, and encryption.

What will help you succeed

  • Structural grasp of cloud environments - Baseline exposure to cloud infrastructure architectures and data hosting environments, specifically AWS, GCP, or Azure.
  • Operation of compliance automation engines - Direct execution or data mapping within automated compliance platforms such as Drata, Vanta, or Secureframe.
  • Hands-on management of vendor risk portals - Prior deployment or response logging inside enterprise vendor risk management systems, including OneTrust, ServiceNow, Whistic, UpGuard, or Zip.

What We Offer

  • Career Development: Clear path with mentorship and training opportunities.
  • Role-Related Training: Reimbursement for the successful completion of approved training and certification courses relevant to your current role.
  • Competitive Compensation: A competitive base salary with regular performance reviews linked to merit-based appraisals and bonus opportunities.
  • Growth Opportunity: Early-stage company with significant room for career advancement.
  • Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team.

What You'll Need to Thrive

  • Excellent written and verbal English communication skills, with the ability to engage confidently with candidates, hiring managers, and business leaders across global teams.
  • A reliable, high-speed internet connection and a professional home office environment that supports confidential conversations, virtual interviews, and uninterrupted collaboration.
  • Commitment to working a standard schedule of 8:00 AM-5:00 PM US Eastern Time (ET) to effectively support hiring managers, candidates, and cross-functional teams. Occasional flexibility to adjust working hours is expected to accommodate changing business priorities, global collaboration, and time-sensitive hiring needs.
  • Willingness and ability to travel locally for occasional onsite meetings, team gatherings, or business activities as needed.

Hiring and Selection Process

  • Candidates must participate in live video interviews throughout the hiring process with camera on (non-negotiable) and be prepared to verify their identity during recruitment and onboarding.
  • Employment is contingent upon successful completion of identity verification and background screening, where permitted by law.
  • Selected candidates will participate in structured interviews with hiring managers and cross-functional stakeholders to assess role fit, experience, and alignment with Workstreet’s operating principles.
  • Candidates will receive prompt updates and consistent communication throughout the interview process, ensuring a transparent, smooth, and engaging experience at every step.

Workstreet Is An Equal Opportunity Employer

As an equal opportunity employer, Workstreet is committed to providing employment opportunities to all individuals. All applicants for positions at Workstreet will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
703,472 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$29k – $87k per year (Estimated) • In office • Full-Time • Brazil
Python
Databases
Redis
Cassandra
Couchbase
DevOps
GCP
OpenShift
Azure
AWS
Kubernetes
Linux
Apply
$28k – $84k per year (Estimated) • In office • Full-Time • Brazil
SQL
Databases
MySQL
PostgreSQL
Db2
DevOps
GCP
Azure
Windows Server
AWS
Windows
Apply
$37k – $78k per year (Estimated) • In office • Full-Time • Brazil
Python
Java
SQL
Java
Apache Tomcat
Databases
PostgreSQL
Redis
Db2
DevOps
Ansible
GCP
Red Hat
Azure
Windows Server
AWS
GitHub
Linux
Windows
Apache HTTP Server
Apply
$28k – $73k per year (Estimated) • In office • Full-Time • Brazil
Python
DevOps
Ansible
GCP
Red Hat
Azure
AWS
GitHub
Linux
Unix
Apply
$230k – $262k per year • In office • Full-Time • 9+ years exp • Bachelor's Degree • McLean • New York
Python
JavaScript
Rust
TypeScript
C#
Node JS
Scala
DevOps
GCP
Azure
CI/CD
Git
AWS
Docker
Kubernetes
Bitbucket
GitHub
Management
Agile
Apply
$106k – $241k per year (Estimated) • Remote • Full-Time
Python
AI/ML
LLM
LLM Guardrails
DevOps
Terraform
GCP
CloudFormation
Azure
CI/CD
AWS
Docker
Kubernetes
IAM
Cybersecurity
ISO 27001
SOC 2
GDPR
HIPAA
NIST 800-53
NIST 800-171
FedRAMP
Zero Trust
SIEM
Apply
$13k – $30k per year (Estimated) • Remote • Full-Time
Cybersecurity
ISO 27001
NIST CSF
PCI DSS
SOC 2
GDPR
HIPAA
NIST 800-53
NIST 800-171
FedRAMP
Apply
$20k – $50k per year (Estimated) • Remote • Full-Time
Cybersecurity
ISO 27001
NIST CSF
PCI DSS
SOC 2
GDPR
HIPAA
NIST 800-53
NIST 800-171
FedRAMP
Apply
GRC Engineer (NIST) 1 month ago
$66k – $128k per year (Estimated) • Remote • Full-Time • 2+ years exp • Master's Degree
DevOps
Azure
AWS
Cybersecurity
ISO 27001
SOC 2
GDPR
NIST 800-53
NIST 800-171
FedRAMP
Apply
GRC Engineer (CMMC) 1 month ago
$74k – $184k per year (Estimated) • Remote • Full-Time
DevOps
Azure
AWS
Cybersecurity
ISO 27001
SOC 2
GDPR
NIST 800-53
NIST 800-171
FedRAMP
Apply
See all jobs
This is one of many
703,472 more open roles from verified company boards, updated every day.