Sand Technologies Logo

Sand Technologies

IT GRC Administrator

Reposted 10 Days Ago
Remote
Hiring Remotely in USA
Junior
Remote
Hiring Remotely in USA
Junior
The IT GRC Administrator will support the Governance, Risk, and Compliance team by monitoring risks, maintaining compliance documentation, and ensuring adherence to security regulations like ISO 27001 and SOC 2.
The summary above was generated by AI

About Sand 

Sand Technologies is a fast-growing enterprise AI company that solves real-world problems for large blue-chip companies and governments worldwide. 

We’re pioneers of meaningful AI: our solutions go far beyond chatbots. We are using data and AI to solve the world’s biggest issues in telecommunications, sustainable water management, energy, healthcare, climate change, smart cities, and other areas that have a real impact on the world. For example, our AI systems help to manage the water supply for the entire city of London. We created the AI algorithms that enabled the 7th largest telecommunications company in the world to plan its network in 300 cities in record time. And we built a digital healthcare system that enables 30m people in a country to get world-class healthcare despite a shortage of doctors. 

We’ve grown our revenues by over 500% in the last 12 months while winning prestigious scientific and industry awards for our cutting-edge technology. We’re underpinned by over 300 engineers and scientists working across Africa, Europe, the UK and the US. 

About the role 

We are seeking a detail-oriented and proactive IT GRC Administrator to support our Governance, Risk, and Compliance team in managing and improving our IT security and compliance frameworks. The ideal candidate will assist in monitoring risks, maintaining compliance documentation, and ensuring that the organization adheres to security and regulatory requirements such as ISO 27001, SOC 2, and NIST standards. 

This role is perfect for someone with a strong interest in IT security, risk management, and compliance who enjoys working in a fast-paced, technology-driven environment. 


Specific Responsibilities 

Governance & Compliance Management 

● Assist in developing, maintaining, and tracking IT security policies, procedures, and controls. 

● Support compliance efforts for ISO 27001, SOC 2, and other relevant frameworks, ensuring adherence to security best practices. 

● Help coordinate internal and external audits, including gathering evidence and preparing documentation. 

● Maintain a compliance calendar to track security and regulatory deadlines. 


Risk Identification & Assessment 

● Support IT risk assessments by helping to gather, analyze, and document risks related to IT systems, cloud security, and third-party vendors. 

● Assist in maintaining and updating the IT risk register, tracking risk mitigation efforts across departments. 

● Contribute to the development of risk assessment reports, incident logs, and remediation plans. 


Security Monitoring & Incident Response 

● Assist in monitoring IT security controls, including access management, vulnerability assessments, and policy adherence. 

● Help document and track security incidents and non-compliance issues, ensuring timely resolution and escalation when necessary. 

● Support the implementation of security awareness training for employees. 


Policy Development & Implementation 

● Assist in drafting, reviewing, and updating IT security policies in line with regulatory changes and industry best practices. 

● Support the rollout and enforcement of new IT compliance policies across the organization. 

● Ensure employees understand and adhere to secure access controls, endpoint security policies, and data protection standards. 


Documentation & Reporting 

● Maintain accurate records of compliance activities, risk assessments, and security incidents. 

● Assist in preparing risk and compliance reports for management, auditors, and regulatory bodies. 

● Track and document security gaps, remediation actions, and control improvements. 


General Administration & Support 

● Provide administrative support to the IT GRC team, including scheduling meetings, tracking action items, and managing compliance communications. 

● Assist in maintaining an organized repository of IT security and compliance documentation. 


Requirements - Essential 

● Bachelor’s degree in IT Security, Computer Science, Business Administration, or a related field. 

● Certifications (or willingness to pursue): ISO 27001 Foundation, CompTIA Security+, Certified Information Systems Auditor (CISA), or similar. 

● 1-2 years of experience in IT risk management, security compliance, or GRC-related roles. 

● Familiarity with IT security standards such as ISO 27001, SOC 2, NIST, or CIS controls. 

● Basic understanding of IT security concepts, including access management, endpoint security, and vulnerability management. 

● Experience with compliance tracking tools, GRC platforms, or security monitoring tools is a plus. 

● Strong analytical, documentation, and reporting skills. 


Personal Attributes 

Courage: Willingness to speak up, challenge the status quo, and embrace new challenges. 

Humility: Openness to learning, seeking help when needed, and a focus on serving others. 

Adventure: A passion for setting ambitious goals, tackling difficult tasks, and finding joy in the journey. 

Initiative: Proactive problem-solving, a sense of ownership, and a willingness to go above and beyond. 

Resilience: The ability to bounce back from setbacks, persevere through challenges, and emerge stronger. 


Due to the considerable amount of virtual work and interaction with colleagues and customers in different physical locations internationally, it is essential that the successful applicant has the drive and ethic to succeed in working in small teams physically but in larger efforts virtually. Self-drive to communicate constantly using web collaboration and video conferencing is essential. 

Top Skills

Comptia Security+
Iso 27001
Nist
Soc 2

Similar Jobs

41 Minutes Ago
Remote
3 Locations
Senior level
Senior level
Computer Vision • Healthtech • Information Technology • Logistics • Machine Learning • Software • Manufacturing
The Senior Full-Stack Engineer will develop backend systems and APIs for Dandy's web-based 3D toolchain, manage integration with 3D tools, and ensure efficient cloud storage and distribution.
Top Skills: C++GCPGraphQLNestjsNode.jsPostgresReact/ReduxThree.JsTypescriptWasm
42 Minutes Ago
Easy Apply
Remote
US
Easy Apply
116K-137K Annually
Mid level
116K-137K Annually
Mid level
Insurance
As the Insurance Product Manager, you will lead the development and management of insurance products, ensuring compliance, profitability, and collaboration across teams to drive growth.
Top Skills: SQL
42 Minutes Ago
Remote or Hybrid
Texas, USA
80K-132K Annually
Senior level
80K-132K Annually
Senior level
Automotive • Hardware • Internet of Things • Mobile • Software • App development • PropTech
The role involves acquiring new security distributors, enhancing product awareness, and facilitating dealer engagement initiatives. It requires managing distributor activities and supporting go-to-market strategies, with travel up to 70%.
Top Skills: Salesforce

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account