Security Compliance GRC Engineer
Paris-based AI company building frontier models, AI applications, developer tools, and compute infrastructure for enterprise and public-sector deployments.
About Mistral AI
Mistral AI develops open-weight and commercial language models and provides a full-stack AI platform spanning agents, application development, custom-model training, APIs, and AI cloud infrastructure.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will design and maintain technical and operational governance, risk, and compliance frameworks. You will automate compliance monitoring, risk assessments, control testing, evidence collection, and third-party risk workflows. You will build integrations and dashboards, embed policy-as-code, improve incident-response automation, and optimize GRC tools.
Requirements
- 5+ years of experience in GRC, IT audit, cybersecurity, or a related field.
- Experience with GRC tools.
- Knowledge of ISO 27001, SOC 2, NIST CSF, COBIT, GDPR, NIS2, or HIPAA.
- Scripting and automation proficiency.
- Knowledge of IT controls, risk assessment methodologies, and security best practices.
- Experience with SIEM, IAM, or vulnerability management tools.
- Familiarity with AWS, Azure, GCP, cloud security, and compliance.
- Professional English proficiency.
- CISSP, CISM, CRISC, CISA, or ISO 27001 Lead Auditor/Implementer certification.
Responsibilities
- Automate compliance monitoring, evidence collection, risk assessments, and control testing.
- Build and maintain integrations between GRC platforms and enterprise systems.
- Create dashboards and reports on compliance, risk exposure, and control effectiveness.
- Implement automated technical control testing and validation.
- Embed compliance and security policies as code across cloud and on-premises environments.
- Automate risk identification and prioritization workflows.
- Streamline audit evidence collection for internal and external audits.
- Set up continuous compliance monitoring alerts and triggers.
- Automate vendor risk assessments and escalation workflows.
- Automate remediation workflows for identified risks and compliance gaps.
- Maintain and optimize GRC platforms and routine workflows.
Benefits
- Healthcare coverage
- Parental leave
- Retirement plans
- Relocation support
- Wellness programs
- Meal allowances
- Transportation allowances
