Our mission and why it matters
We are on a mission to make humans the strongest security layer.
Human risk remains one of the biggest vulnerabilities and traditional awareness training is not enough. We take a different approach by combining AI-driven personalization, real threat detection, and behavioral science to actively protect people and organizations.
We don't just simulate risks. We build the tools that detect and stop them.
Why this role matters
We are looking for a Junior Security Engineer, GRC to join Hoxhunt's Product Security team. In this role, you will act as a quarterback for customer trust by taking the lead on the security questionnaires and RFPs that unblock sales deals, owning each case end-to-end. You will play a key role in our compliance footprint by collecting and validating evidence across the frameworks we operate under (SOC 2 Type II, ISO 27001, ISO 42001, HIPAA). You will also run the day-to-day coordination of our vulnerability management program and our recurring security activities. This is an excellent opportunity to build a career at the intersection of information security and business within a fast-growing SaaS company, with modern tooling and automation doing the heavy lifting. This is a growth role for someone with ambition. We hire juniors we expect to grow quickly, providing real ownership from week one and experienced mentors to support you.
What you'll own and driveQuarterback RFP and security questionnaire responses:
Triage requests, draft high-quality responses using our answer library and tooling (Vanta), coordinate input from technical experts, and drive it through to submission.
Drive continuous compliance:
Own the evidence flow across SOC 2 Type II, ISO 27001, ISO 42001 and HIPAA. Validate evidence collected through Vanta, handle manual needs, and work with engineers to automate processes to stay continuously audit-ready.
Run the vulnerability management coordination cadence:
Review dashboards and automated tr