Governance, Risk, and Compliance (GRC) Specialist

Finn AI

Finn AI

Legal

Remote

Posted on May 9, 2026

Location

Estonia - Remote

Employment Type

Full time

Location Type

Remote

Department

Engineering

About Glia

Glia is the leading AI customer service solution for banks and credit unions. Our platform unifies AI and human agents across every voice and digital conversation through our proprietary ChannelLess® Architecture. With AI for All™, organizations overcome the tradeoff between efficiency and experience by using AI to automate conversations and elevate service operations.

Valued at over $1 billion and named a Deloitte Technology Fast 500™ company for five consecutive years, Glia powers over 700 financial institutions and maintains an industry-leading 72 NPS. We're also certified as a Great Place to Work, with 98% employee satisfaction.

The Role

We’re looking for a GRC Specialist to support and grow within our Information Security & Compliance team.

In this role, you’ll contribute to maintaining and improving our control environment by supporting audits, managing documentation, and collaborating with teams across the company. This is a great opportunity to deepen your expertise across multiple security frameworks while working in a fast-paced environment.

What You’ll Do

  • Support evidence collection and documentation for internal and external audits.

  • Assist in maintaining compliance with frameworks such as SOC 2, PCI DSS, GDPR, and HIPAA/HITECH.

  • Help manage and track compliance activities, monitoring efforts, and remediation tasks.

  • Support Third-Party Risk Management activities, including reviewing and tracking vendor compliance.

  • Contribute to security questionnaires and support customer-facing compliance discussions.

  • Participate in internal and external assessments of systems and processes.

  • Collaborate with engineering and product teams to implement and maintain security controls.

  • Prepare audit documentation and reports aligned with compliance requirements.

  • Contribute to the continuous improvement of compliance processes and documentation.

  • Stay informed on emerging security and regulatory trends and support internal knowledge sharing.

Requirements

  • 3+ years of experience in Information Security, Governance Risk & Compliance (GRC), Audit, or Risk Management.

  • Familiarity with one or more frameworks such as SOC 2, PCI DSS, GDPR, or HIPAA/HITECH

  • Exposure to cloud-based environments (preferably AWS).

  • Good organizational skills with the ability to manage priorities effectively.

  • A proactive and solution-oriented mindset, with strong curiosity and willingness to learn.

  • Ability to communicate clearly with both technical and non-technical stakeholders.

  • Excellent written and spoken English.

Nice to Have

  • Exposure to ISO/IEC 27001 and ISO/IEC 42001.

  • Relevant certifications such as CISA, CISM, CRISC, CISSP, ISO/IEC 27001 Lead Auditor, ISO/IEC 42001 Lead Auditor.

  • Spanish language skills.

What We Offer

  • A dynamic and fast-growing environment with strong learning opportunities.

  • Supportive, collaborative team culture.

  • Collaborative and mission-driven culture.

  • Team events, offsites, and travel opportunities.

  • Free gym membership (with a fun commitment to use it!).

  • Diverse international team (18+ languages, 11+ nationalities).

  • Competitive salary and benefits.

If you don’t meet every requirement but are excited about the role, we encourage you to apply.

Glia is an equal-opportunity employer. Glia does not discriminate against any employee or applicant because of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), or any other basis protected by law.

The Glia Talent Acquisition team uses @glia.com and @gliatalent.com email addresses for coordinating interviews, providing updates, and sending documents.

Our hiring process involves an introduction, practical and team interviews, and a decision and offer. For more information, visit our Recruitment Privacy Notice page or contact our talent team via talent@glia.com