×
Register Here to Apply for Jobs or Post Jobs. X

Governance, Risk, Compliance; GRC) Lead

Job in New York, New York County, New York, 10261, USA
Listing for: Aaru
Full Time position
Listed on 2026-08-28
Job specializations:
  • Business
    Security Management & Operations
Salary/Wage Range or Industry Benchmark: 140000 - 190000 USD Yearly USD 140000.00 190000.00 YEAR
Job Description & How to Apply Below
Position: Governance, Risk, Compliance (GRC) Lead
Location: New York

About Aaru

Aaru operates at the frontier of predictive intelligence, using AI to simulate and predict human behavior  generating and deploying instances of artificial intelligence that mirror humans, called agents, Aaru simulates entire populations with unprecedented accuracy. Our partners use Aaru to refine strategic positioning, identify and understand high-value audiences, validate concepts and messaging before launch, optimize pricing decisions, and build a continuously richer understanding of their customers through simulation.

We provide organizations with invaluable foresight, empowering them to anticipate outcomes and proactively make the right decisions at the right time, every time.

About Aaru

Aaru operates at the frontier of predictive intelligence, using AI to simulate and predict human behavior  generating and deploying instances of artificial intelligence that mirror humans, called agents, Aaru simulates entire populations with unprecedented accuracy. Our partners use Aaru to refine strategic positioning, identify and understand high-value audiences, validate concepts and messaging before launch, optimize pricing decisions, and build a continuously richer understanding of their customers through simulation.

We provide organizations with invaluable foresight, empowering them to anticipate outcomes and proactively make the right decisions at the right time, every time.

We're a small, dedicated, mission-driven team and we intend to stay that way. We believe the best work happens when exceptionally talented people are given ownership, trust and the space to operate without bureaucratic friction. We work with urgency and intellectual honesty and expect new team members to match our velocity. We seek individuals who thrive at the frontier, who push beyond conventional limits, who bring curiosity and conviction in equal measure, and who want their work to have demonstrable impact in the world.

If you're energized by the idea of a small team doing things that feel impossible, let's build together.

About

The Role

Aaru is building out its governance, risk, and compliance function and is hiring its first dedicated GRC Lead to own it.

Our customers are large enterprises that use Aaru to pressure-test high-stakes decisions before they make them. They hold us to a serious standard on how we handle their data and how our systems are controlled, and every deal we sign runs through that scrutiny. Because of what we build, that scrutiny goes further than it does for most software vendors - into how our models are trained, how personal data does and does not inform agent construction, and how simulated outputs relate to real individuals.

You will own that surface end to end: enterprise security review, audit readiness, evidence and policy governance, vendor risk, and AI governance. This is a build role rather than a maintenance one. You will not be inheriting a legacy program, and you will be expected to automate the work rather than absorb it.

Responsibilities
  • Customer trust and enterprise security review. Own the response to security questionnaires, due diligence requests, and RFP security sections, and represent Aaru's security posture directly in customer security conversations and vendor risk reviews. Build and maintain a canonical answer library so the same questions are never solved twice.
  • Audit management. Serve as primary point of contact for external auditors across readiness, fieldwork, and surveillance cycles. Manage RFI response, control walkthroughs, and finding remediation to closure.
  • Control testing and monitoring. Run recurring control checks, access reviews, and periodic testing. Document effectiveness, identify gaps, and drive remediation with owners on defined timelines.
  • Policy and evidence governance. Keep policies current, versioned, distributed, and attested. Automate evidence collection in our GRC platform so that artifacts are generated by integration rather than gathered by hand.
  • Third-party risk. Build and manage the vendor assessment lifecycle: questionnaires, SOC 2 and ISO review, risk scoring, and policy enforcement across procurement and renewals.
  • AI governance. Own how Aaru…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary