Supabase Logo

Supabase

Internal Auditor

Posted 19 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
Senior level
Remote
Hiring Remotely in USA
Senior level
The Internal Auditor will lead audit processes for compliance frameworks, manage audit readiness, document controls, and coordinate with teams to ensure compliance while navigating ambiguity in a fast-paced environment.
The summary above was generated by AI

About Supabase
Supabase is the Postgres development platform built by developers, for developers. We’re building the best developer platform to power the next generation of software companies. As a fully remote, globally distributed team, we operate with high ownership, strong documentation, and asynchronous collaboration.
As we continue to scale our global go-to-market organization, we are investing in the financial and operational foundations that support growth, trust, and accuracy.
We're looking for an Internal Auditor to join our Security & Compliance team and help strengthen our governance, risk, and compliance posture as we scale. You'll work closely with engineering, product, security, and business teams across Supabase, leading audit processes and ensuring we maintain the highest standards of compliance.

This role is ideal for someone who thrives in async, fast-paced environments and is excited about building robust compliance programs in a rapidly growing, developer-focused company.

What You'll Be Responsible for

In this role, you'll:

  • Lead audit readiness and execution for SOC 2, ISO 27001, PCI DSS, and other compliance frameworks relevant to our customer base

  • Manage the compliance lifecycle in a compliance platfom (such as Vanta, Drata etc) including evidence collection, control mapping, and continuous monitoring

  • Coordinate cross-functional audit activities with engineering, product, security, infrastructure, and support teams to gather evidence and remediate findings

  • Design and implement internal audit programs that scale with our rapid growth, identifying gaps and driving process improvements

  • Partner with external auditors to facilitate smooth audits and ensure timely completion of certifications

  • Document policies, procedures, and controls that align with industry standards and support our security-by-design approach

  • Build relationships across the organization to embed compliance thinking into product development and operational workflows

  • Track and report on compliance metrics, providing visibility to leadership on audit status, risk areas, and remediation progress

You Might Be a Good Fit If You
  • Have 5**+ years of experience** in internal audit, compliance, or GRC roles, ideally in fast-growth SaaS or cloud infrastructure companies

  • Are able to understand modern engineering practices and how they can be leveraged for compliance without hindering engineering agility/velocity

  • Have hands-on experience with SOC 2, ISO 27001, and PCI DSS audits—you've led or contributed to successful certifications

  • Are proficient with Vanta or similar GRC platforms (Drata, Secureframe, etc.) and comfortable leveraging automation for compliance

  • Can translate compliance requirements into practical, developer-friendly processes that don't slow down innovation

  • Communicate clearly across both technical and non-technical audiences—you can talk controls with engineers and risk with executives

  • Have experience in async or globally distributed teams—you're self-directed and know how to drive outcomes remotely

  • Are comfortable navigating ambiguity and moving quickly—you build the plane while flying it

  • Bring a pragmatic, risk-based mindset rather than checkbox compliance; you understand when to push for rigor and when to be flexible

What We Offer
  • Fully Remote

    We hire globally. We believe you can do your best work from anywhere. There are no Supabase offices, but we provide a WeWork membership or co-working allowance you can use anywhere in the world.

  • ESOP

    Every team member receives ESOP (equity ownership) in the company. We want everyone to share in the upside of what we’re building together.

  • Tech Allowance

    Use this budget to set up your ideal work environment—laptop, monitor, headphones, or whatever helps you do your best work.

  • Health Benefits

    Supabase covers 100% of health insurance for employees and 80% for dependents, wherever you are. Your wellbeing and your family’s health are important to us.

  • Annual Off-Sites

    Once a year, the entire company gathers in a new city for a week of connection, collaboration, and fun. It’s a highlight of our year.

  • Flexible Work

    We operate asynchronously and trust you to manage your own time. You know what needs to be done and when.

  • Professional Development

    Every team member receives an annual education allowance to spend on learning—courses, books, conferences, or anything that supports your growth.

About the Team

Supabase was born-remote and open-source-first. We believe our globally distributed team is our secret weapon in building tools developers love.

  • 280+ team members

  • 55+ countries

  • 20+ languages spoken

  • $500M raised

  • 500,000+ community members

We move fast, build in public, and use what we ship. If it’s in your project, we probably use it in ours too. We believe deeply in the open-source ecosystem and strive to support—not replace—existing tools and communities.

Hiring Process

We keep things simple, async-friendly, and respectful of your time:

  1. Apply – Our team will review your application.

  2. Intro Call – A short video chat to get to know each other.

  3. Interviews – Up to four calls with:

    • Team Leads

    • Future teammates

    • Someone cross-functional from product, growth, or engineering (depending on the role)

    • Someone from our leadership/founding team

  4. Decision – We may follow up with a final question or go straight to offer.

All communication is remote and we aim to move fast.

Top Skills

Drata
Iso 27001
Pci Dss
Secureframe
Soc 2
Vanta

Similar Jobs

Yesterday
In-Office or Remote
88K-129K Annually
Senior level
88K-129K Annually
Senior level
Fintech • Insurance
Lead audits and internal controls testing to ensure effective financial reporting and compliance while mentoring internal audit staff and improving auditing processes.
Top Skills: CobitGenerally Accepted Accounting PrinciplesInsurance Company Accounting And Reporting RequirementsIt General ControlsSarbanes Oxley
Junior
Hardware
The Bilingual Internal Auditor conducts audits to ensure accurate reporting and effective internal controls, reporting findings and suggesting improvements. Responsibilities include coordinating audits, supporting external audits, and providing bilingual support in audits.
Top Skills: Data Analytic ToolsMicrosoft Office Suite
8 Days Ago
In-Office or Remote
85K-100K Annually
Mid level
85K-100K Annually
Mid level
Appliances • Industrial
As Senior Internal Auditor, you'll lead audits to improve processes, mitigate risks, and ensure compliance across financial and operational functions, collaborating with global teams.
Top Skills: SAP

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account