Principal Security GRC Analyst
About this role
About Rescale
Rescale is pioneering the future of engineering and scientific discovery. As the leader in digital engineering, we’re transforming how products are developed—through intelligent automation, applied AI, data management, and the integration of the world’s largest network of engineering and R&D applications. Joining Rescale means becoming part of a diverse, collaborative, and mission-driven team that’s unlocking faster innovation across industries like aerospace, energy, life sciences, and manufacturing. We’re solving complex challenges that traditional HPC can’t—and we’re seeking passionate, curious minds to help build the next wave of breakthroughs.
Rescale's Compliance team is responsible for automating, maintaining and maturing a multi-framework compliance program spanning FedRAMP Moderate, DoD IL5, CMMC Level 2, SOC 2 Type 2, ISO 27001:2022, TISAX AL2, and Facility Clearance License (FCL) requirements. As a Principal Security GRC Analyst, you will serve as a senior individual contributor driving control implementation, audit readiness, and cross-framework harmonization across Rescale's cloud-based HPC and simulation platform.
This is a high-autonomy, high-impact role for someone who wants to own complex compliance problems end-to-end from control design through evidence collection to auditor engagement.
Are you a highly-motivated detail-oriented person who loves organizing complex projects? Are you a self-starter who can see a goal and immediately start moving toward it? Are you familiar with FedRAMP, SOC, ISO 27001, TISAX, or other security and compliance frameworks? If so, we need you!
At Rescale, this means you will work on and impact:
You will work under the guidance of our Director of Compliance to continue to mature a comprehensive security governance, risk, and compliance program.
You will work directly with auditors and government officials across various security and compliance frameworks such as the NIST SP 800 series, FedRAMP, SOC 2, ISO 27001, Cyber Essentials, CSA and others.
You will lean into AI to enable our products to comply with new and existing frameworks.
You will own and drive large projects that span multiple months, quarters and even years to ensure that Rescale is compliant with the frameworks chosen.
You will interact directly with our security team, IT team and other teams to gather evidence for audits.
You will partner with engineering, product, platform, and other teams to translate compliance requirements into practical, implementable controls to balance security, compliance, and privacy concerns without sacrificing innovation.
You will represent the compliance program in customer-facing discussions, security questionnaires and due diligence reviews.
You will help draft policies and procedures that improve compliance and privacy at Rescale.
You will create, implement and manage automated processes to improve the dissemination of policies, procedures, plans, and knowledge about security, compliance, and privacy.
You will work within a team that supports you and wants you to succeed - every single day.
As our team continues to evolve, this role may expand beyond security compliance. A flexibility and willingness to expand your scope of responsibilities is a plus.
What we’re looking for:
At least 8+ years experience with multiple compliance frameworks and audits both small and large, including adapting to changes and managing complex implementation projects.
Deep expertise in at least one security framework such as SOC2 Type II, ISO 27001, FedRAMP, or NIST SP 800 series with a drive to tackle novel compliance challenges in a fast-scaling tech environment
In addition to the area of expertise, exposure to other frameworks and regulations including GDPR, ITAR, EAR, NISPOM, CMMC, etc. is a plus. Certifications such as CISM, GSLC, Security +CE, CISSP etc. are pluses.
Due to the nature of the work, US Citizenship is a requirement.
Rescale is an equal opportunities employer and welcomes applications from all qualified persons regardless of their race, sex, disability, religion/belief, sexual orientation or age. As part of our standard hiring process for new employees, employment with Rescale will be contingent upon successful completion of a comprehensive background check. Here at Rescale, we are committed to being transparent in our policies around candidate privacy. For more details on the information Rescale collects in your application, please view the Rescale Applicant Privacy Policy here.
Company at a glance
Rescale is a cloud-based platform for computational engineering and R&D. Its mission is to democratize access to the latest technologies that drive efficiency and competitiveness, including high performance computing, simulation, modeling, AI/ML, and digital twins. Its customer base includes 7 of the top 10 automotive companies and 3 of the top 6 life science companies, and the majority of industry leaders rely on Rescale as the backbone of R&D to connect the digital thread of product innovation from autonomous vehicles to drug discovery. Rescale operates the largest global network of hyperscale and specialty cloud infrastructure and is enterprise-ready to enable any size organization to achieve digital transformation with unified management of hybrid-cloud operations. It emphasizes intelligent automation to improve performance and reduce costs, with enhanced security and compliance, and invites customers to start easily with a simple, flexible, free-to-try approach and expert help to reach engineering goals.
Top Benefits
- Equity
Tired of cold applications?
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Know someone who'd be great for this?