This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are hiring a Security Compliance Specialist to own our compliance function end-to-end and bring structure to a landscape that has been shared across multiple teams so far. This role is focused on GRC and compliance operations.
Job Responsibility:
Lead and mature LiveKit’s security and privacy compliance programs (SOC 2, HIPAA, GDPR, ISO 27001, PCI DSS)
Own the day-to-day operations of our compliance workflows
Partner closely with Security and IT Engineers
Own our security and privacy compliance programs across frameworks
Translate regulatory and framework requirements into clear, pragmatic controls
Build and maintain the compliance roadmap and calendar
Lead customer and third-party security questionnaires, DDQs, and compliance reviews
Maintain and continuously improve our policy set
Track and report on compliance health, gaps, and remediation progress
Identify operational gaps and lead projects to close them
Act as the primary point of contact for external auditors, assessors, and compliance vendors
Partner with the Security Engineer and infra team on scoping and documenting systems
Work with GTM teams and leadership to champion compliance as a business enabler
Advise on risk, surface critical issues early, and drive remediation projects
Requirements:
5+ years of experience in security compliance, GRC, or a closely related function
Deep familiarity with at least several of: SOC 2, HIPAA, GDPR, ISO 27001, PCI DSS
Demonstrated experience running audits end to end: planning, evidence, walkthroughs, findings, and remediation
Strong project management skills
Excellent written and verbal communication skills
Nice to have:
Strong foundations in technical concepts
Opinions about building efficient, low-friction, high-signal IT and compliance processes in a remote-first company
Experience writing code in personal or professional contexts
Prior experience supporting PCI, healthcare, or other highly regulated environments