Staff Security GRC Engineer
In short
- →Ingeniero de GRC de seguridad sénior que mantiene sistemas de seguridad y cumple con ISO 27001 y SOC 2.
- →Día a día: prepara auditorías, crea políticas, gestiona hallazgos y colabora con equipos técnicos y legales.
- →Destacado: trabaja en una organización sin fines de lucro con misión de defender el internet para las personas.
Proficiency in English is required for this role.
In ~1 minute you get: who interviews you, the likely questions answered from your CV, and your CV tailored to this job. Free, no card.
🎧Land the interview? Bring the copilot. Our free extension listens to the live interview and flashes 3-4-word anchors from your resume and prep — glance, connect, talk. Get the extension →What they ask for
- ✓Experiencia comprobada en auditorías ISO 27001 y SOC 2 Type 2.
- ✓Capacidad para diseñar y gestionar procesos de cumplimiento desde cero.
- ✓Conocimiento profundo del ISMS y sus componentes clave (SoA, planes de tratamiento de riesgos).
- ✓Habilidades de comunicación y colaboración con equipos técnicos, legales y de producto.
- ✓Experiencia en redacción de documentos de auditoría (descripción del sistema, evidencias, narrativas).
- ✓Capacidad para liderar revisiones de políticas de seguridad y mantenerlas actualizadas.
Don't tick every box? That's normal — your free dossier shows your gaps and how to cover them in the interview.
Who should you write to at Mozilla?
Your free dossier identifies the people who'd interview you — their background, what they value, and how to reach out so you stand out before applying.
Looking for something similar?
Leave your email and we'll alert you when matching jobs appear.
Don't apply unprepared
We research who's interviewing you, tailor your CV and rehearse you live — first one free.