The Security & Compliance Lead will own and administer the company's GRC program, including SOC 2 audits, GDPR compliance, and security policy maintenance. They will also partner with engineering to verify security controls across infrastructure and manage incident response and risk assessment processes.