Careers at AIComply360
Help startups streamline security and compliance with practical, automation-driven solutions.
Our Mission
- Make compliance achievable for startups and growing businesses without unnecessary complexity.
- Reduce audit stress through clear controls, repeatable processes, and evidence-ready workflows.
- Engineer practical security that improves risk posture and supports business outcomes.
- Automate the boring parts (evidence collection, reporting, operational checks) so teams can focus on impact.
Open Roles
We are actively seeking talented professionals who can operate in startup environments, communicate clearly, and deliver measurable outcomes.
Compliance Analyst
Focus: SOC 2 / ISO 27001 support, control testing, evidence collection, documentation, and client readiness.
- Support audits and readiness efforts (SOC 2, ISO 27001, PCI, SOX ITGC).
- Gather and organize evidence; maintain audit trails and control mappings.
- Draft and update policies, procedures, and control narratives.
- Track remediation items and communicate status to stakeholders.
Nice to have: GRC tooling familiarity (Jira/Confluence, GRC platforms), basic cloud security understanding, strong writing.
Security Engineer
Focus: Implement and improve security controls across cloud and SaaS environments; hardening, detection, and response readiness.
- Implement security controls (IAM, logging, endpoint protections, vulnerability management).
- Design practical detection and monitoring with clear runbooks.
- Support incident response prep (playbooks, tabletop exercises, evidence readiness).
- Partner with compliance to ensure controls are auditable and measurable.
Nice to have: Azure/AWS experience, SIEM/Log Analytics familiarity, scripting (PowerShell/Python), infrastructure-as-code.
Security Architect
Focus: Architect security programs and reference designs for startups; balance risk, cost, and speed with audit-ready controls.
- Define target-state security architecture and secure-by-default patterns.
- Lead risk assessments and translate findings into roadmaps.
- Guide IAM, network segmentation, logging, and data protection strategies.
- Ensure solutions map cleanly to compliance requirements (SOC 2 / ISO 27001).
Nice to have: cloud landing zones, identity governance, security reference architectures, strong stakeholder leadership.
What to Expect
- Startup pace and ownership: you will influence the playbook, not just follow it.
- Client-facing communication: clear, practical recommendations that are audit-ready.
- Bias toward action: ship improvements, document outcomes, and measure impact.
Apply
Complete the intake form below. We review applications on a rolling basis.
