At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it.Â
Vanta is growing quickly and we're continually moving upmarket, dealing with sophisticated customers with complex security and compliance environments and needs. Our Security team uses our own Security and Privacy GRC experience to meet customer demand to help grow our market share as the industry leader in compliance and security.
As a Post-Sales Subject Matter Expert, GRC at Vanta, you will be a highly visible, customer-facing leader within Vanta’s Security team, responsible for representing Vanta’s Trust Management Platform to customers, providing hands-on guidance during onboarding and implementation of their existing GRC program, and collaborating with product teams to help drive and implement new features in the product.
If this sounds like you, and you're excited to use your Security and GRC experience to help grow and sell our product, we'd love to hear from you.
What you’ll do as a Post-Sales GRC Subject Matter Expert (SME) at Vanta:
Partner with the Vanta's Sales and Customer Success teams to represent Vanta’s Trust Management Platform to prospects and customers
Facilitate onboarding and implementation of Vanta for new customers
Engage with executives and sr. staff at prospect and customer organizations to establish relationships with customer's Security and Compliance points of contact
Become an expert on the security features available for customers to deploy within Vanta, including best practices for implementation
Use your expert knowledge of compliance frameworks like SOC 2 and ISO 27001 to advise customers regarding questions about scoping, policy creation, detailed control requirements and security best practices
Collaborate with Vanta’s EPD (Product) team to improve processes and enable faster and more seamless experiences for our customers
Identify requirements that would enable additional customer use cases and drive implementation of customer requirements with relevant stakeholders
Provide input and feedback on the development of security and GRC product features for Vanta’s customers
Answer questions for internal and external stakeholders about security and compliance
How to be successful in this role:
Deep understanding of security, privacy, and AI governance frameworks (SOC 2, ISO 27001, ISO 42001, HITRUST, HIPAA, GDPR, NIST AI RMF, etc.) including experience either auditing, or participating in a cybersecurity audit
The ability to perform control mapping exercises for net-new frameworks, including policies to controls, risks to controls, etc.
Problem-solving skills in a fast-paced environment
Passion for leveraging AI and automation to advance GRC and risk management maturity
Ability to translate complex compliance requirements into actionable technical guidance for SaaS environments
Familiarity with cloud infrastructure, version control systems, risk management, vulnerability management, and their related security processes
Experience in building productive relationships and driving collaboration with both technical and non-technical teams
Knowledge of the cybersecurity audit process
Security compliance management experience within a SaaS environment preferred, but not required
Sales Engineering or Technical Support experience preferred, but not required
Industry certifications (e.g. CISA, CISSP, CISM, CIPP/E) and/or formal education preferred, but not required
What you can expect as a Vantan:
Industry-competitive compensation
100% covered medical, dental, and vision benefits with dependents coverage
16 weeks fully-paid parental Leave for all new parents
Health & wellness and remote workplace stipends
Family planning benefits through Carrot Fertility
401(k) matching
Flexible work hours and location
Open PTO policy
11 paid holidays in the US
Offices in SF, NYC, London, Dublin, and Sydney
To provide greater transparency to candidates, we share base pay ranges for all US-based job postings regardless of state. We set standard base pay ranges for all roles based on function, level, and country location, benchmarked against similar-stage growth companies. Final offer amounts are determined by multiple factors and may vary based on candidate location, skills, depth of work experience, and relevant licenses/credentials.
#LI-remote
At Vanta, we are committed to hiring diverse talent of different backgrounds and as such, it is important to us to provide an inclusive work environment for all. We do not discriminate on the basis of race, gender identity, age, religion, sexual orientation, veteran or disability status, or any other protected class. As an equal opportunity employer, we encourage and welcome people of all backgrounds to apply.
About Vanta
We started in 2018, in the wake of several high-profile data breaches. Online security was only becoming more important, but we knew firsthand how hard it could be for fast-growing companies to invest the time and manpower it takes to build a solid security foundation. Vanta was inspired by a vision to restore trust in internet businesses by enabling companies to improve and prove their security. From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged.Â
Now more than ever, making security continuous—not just a point-in-time check— is essential. Thousands of companies rely on Vanta to build, maintain and demonstrate their trust— all in a way that's real-time and transparent.