Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Compliance & Security Engineer

Mrbeast

Compliance & Security Engineer

San Francisco

About Us

Beast Industries is a multifaceted media and entertainment company founded by Jimmy Donaldson, popularly known as MrBeast, the most watched person in the world. Renowned for revolutionizing digital content creation, Beast Industries encompasses a diverse portfolio of ventures that extend far beyond its origins on YouTube. With a mission to entertain, inspire, and create significant social impact, Beast Industries operates across various domains including digital media, philanthropy, consumer products, and innovative business initiatives. At Beast Industries, we believe in the transformative power of digital media and its potential to entertain, educate, and effect positive change. Our commitment to innovation, creativity, and philanthropy drives us to explore new frontiers, create unforgettable experiences, and build a legacy that inspires future generations.

Compliance & Security Engineer

Primary: Bay Area (San Francisco / Peninsula) | Secondary: NYC

The Opportunity

We're doing an AI-first engineering rebuild for a company that already has an audience of 100M+ people. This is a zero-to-one build with no legacy constraints, which means you get to stand up the security and compliance foundation correctly from the start. The stakes here are concrete: Step handles money and serves minors, Feastables carries consumer and supply-chain data, and the media business ships fast and constantly. You're here to make regulated products shippable without slowing them down.

The Mandate

You'll be a single principal-level IC bridging two disciplines that usually live on separate teams: security engineering (threat modeling, vulnerability management, hardening, incident response) and compliance engineering (control design, audit evidence, framework mapping across SOC 2, PCI DSS, COPPA, and privacy law). That means:

  • Own the security architecture and the technical compliance posture across Step, Feastables, and the media org.
  • Build one control framework, with each control mapped to the regulation it satisfies (PCI DSS, COPPA, GDPR/CCPA, SOC 2).
  • Make compliance continuous by automating evidence collection and control monitoring, not a once-a-year scramble.
What You'll Do
  • Set the security standards other engineers build against across cloud infrastructure, applications, and data systems.
  • Lead threat modeling and security reviews for high-risk products, especially Step's payment and account systems and anything touching minors' data.
  • Run the vulnerability management program and drive remediation to closure with the teams that own the systems.
  • Build and own incident response: detection, playbooks, escalation, post-incident review, and breach-notification readiness.
  • Act as technical lead during PCI DSS and SOC 2 audits, and represent Beast with auditors, regulators, and partners.
  • Translate regulatory requirements into engineering work teams can act on, and advise leaders on risk tradeoffs in plain terms.
  • Define secure-by-default patterns and paved paths so most teams meet requirements without one-off review.
Who You Are
  • AI-Native: You're already using AI daily and bringing it into security work where it earns its place, from automation to evidence pipelines.
  • Security + Compliance Hybrid: Around 15 years of combined security engineering and compliance experience, with proven ownership of PCI DSS and SOC 2 in production, from control design through a successful audit.
  • Applied and Hands-On: Strong cloud security (AWS/GCP), application security, threat modeling, and incident response, with the ability to read and reason about code.
  • Trusted on Risk: You say no clearly when risk warrants it and explain the tradeoff in terms the business can act on, you treat minors' data and customer money as the highest bar, and you influence through evidence, not title.

Working knowledge of privacy and minor-protection regulation (COPPA, GDPR, CCPA) and how it maps to technical controls. Bonus points for fintech or payments experience (money movement, KYC), security automation and infrastructure-as-code (Terraform, policy-as-code), relevant certifications (CISSP, CCSP, OSCP), and standing up a security or compliance function from an early stage.

Benefits
  • Equity: Highly competitive equity package designed for a foundational hire.
  • Hybrid Model: Expected ~3 days per week in-office (Bay Area or NYC).
The Perks, Why Work On the MrBeast Team

We are redefining what entertainment and storytelling look like at global scale. Every piece of content we publish reaches millions and influences culture in real time. This is your opportunity to lead the team that decides how those moments come to life across every screen.

  • Competitive Salary
  • Generous Medical (Blue Cross Blue Shield), Dental, Vision and company-paid Life Insurance
  • Company contributions to employee Health Savings Accounts (HSA)
  • 401k Plan with Safe Harbor company-matching
  • Flexible vacation policy and paid company holidays
  • Company-provided technology package
  • Relocation assistance where applicable, including travel and company-provided housing for the first 90 days
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Principal Compliance & Security Engineer in New York, NY vacancy
  •  ...A healthcare AI company is seeking a security and compliance leader to drive actionable programs in a fast-paced startup environment. Your role will be pivotal in identifying and resolving security risks, ensuring customer acquisition and efficient deployment. Ideal candidates... 
    Suggested

    odiggo

    New York, NY
    2 days ago
  • Senior Security Compliance Engineer, AWS (FedRAMP High / DoD IL5) Remote, US Description Keeper Security is hiring a Senior Security Compliance Engineer to lead the technical implementation and ongoing maintenance of FedRAMP High and DoD IL5 compliance for our AWS-based... 
    Suggested
    Temporary work
    Remote work

    Keeper Security, Inc.

    New York, NY
    2 days ago
  • A defense and government services integrator is seeking a part-time Security & Compliance Administrator to oversee compliance for Kubernetes and data lake deployments. The role requires an active secret clearance and a Bachelor’s degree in Cybersecurity, among other qualifications... 
    Suggested
    Remote job
    Part time

    SOSi

    New York, NY
    2 days ago
  •  ...Zafran is seeking a Senior DevOps Engineer with expertise in security and compliance to enhance their compliance posture. The role includes leading efforts for achieving certifications like SOC 2 and FedRAMP, implementing security controls across cloud infrastructure,... 
    Suggested
    Remote work
    Flexible hours

    Menlo Ventures

    New York, NY
    2 days ago
  •  ...partner supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on sustaining...  ...: - Experience supporting documentation, reporting, and compliance activities - Understanding of network monitoring tools and... 
    Suggested
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work experience placement
    Remote work

    Maximus

    Jersey City, NJ
    3 days ago
  • $347k

     ...About the Team Security is at the foundation of OpenAI's mission to ensure that...  ...the Role OpenAI is seeking a Principal Security Engineer to join our Infrastructure Security (...  ...to inquiries unrelated to job posting compliance. We are committed to providing reasonable... 
    Principal

    OpenAI

    New York, NY
    2 days ago
  •  ...Job Overview The Principal Security Engineer, you will be the principal technical leader defining how users interact with our platforms. You...  ...well as the architecture of an API gateway. Governance & Compliance: Define RBAC (Role-Based Access Control) and ABAC (Attribute... 
    Principal
    Permanent employment
    Work at office
    Remote work

    Cambium Learning Group

    New York, NY
    1 day ago
  •  ...GCP Platform Compliance & Security Engineer | 10+ Years of Experience | Onsite | Jersey City, NJ | Contract-to-Hire Walker Healthforce is seeking a GCP Platform Compliance & Security Engineer with 10+ years of cloud security, networking, and platform governance experience... 
    Weekly pay
    Full time
    Contract work
    Immediate start
    Monday to Friday

    Walker Healthforce

    New York, NY
    3 days ago
  •  ...This role requires expertise in cloud platforms like AWS and Azure, along with compliance with cybersecurity standards. The ideal candidate will have 5-7 years of experience in Cloud Engineering or Cybersecurity, a Bachelor's degree in a relevant field, and a fully... 

    Concept Plus

    New York, NY
    2 days ago
  •  ...spent your career building security controls that scale, designing...  ...complex risk into engineering requirements that teams can...  ...you solve will matter. As a Principal Security Controls Architect...  ...Experience partnering with Risk, Compliance, and Audit to improve control... 
    Principal
    Immediate start

    Koitecc Solutions

    Jersey City, NJ
    3 days ago
  •  ...must reside in U.S. Role Overview Are you passionate about securing global‑scale e‑commerce services and applications that...  ...than a hundred countries? We are looking for a hands‑on Principal Product Security Engineer to lead Secure Development Lifecycle assurance processes... 
    Principal
    Remote work
    Home office

    iHerb Inc.

    New York, NY
    2 days ago
  • $100k - $172.5k

     ...Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture...  ...for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan...  ...to leverage your security risk and compliance skills to make a difference and... 
    Principal
    Full time
    Temporary work
    Work at office
    Local area
    Immediate start
    Remote work
    3 days per week

    Johnson & Johnson

    Long Island City, NY
    2 days ago
  • A leading technology company is seeking a Principal Security Architect to lead the design of security architectures across multiple disciplines. The successful candidate will implement secure cloud native guardrails, conduct automated architecture assurance, and provide... 
    Principal
    Remote job
    Full time

    ServiceTitan, Inc.

    New York, NY
    2 days ago
  •  ...Seeking a Principal Manufacturing IoT & OT Security Architect for a full-time remote position, responsible for...  ...platforms to ensure secure operations and compliance with industry standards. Key...  ...Bachelor's degree in Engineering, Computer Science, Cybersecurity,... 
    Principal
    Full time
    Remote work

    Hexion

    New York, NY
    3 days ago
  • Hexion Inc. is seeking a Principal Manufacturing IoT & OT Security Architect for a full-time remote role. You will be responsible for defining and governing...  ...control systems, ensuring secure operations and compliance with industry standards. The ideal candidate will have... 
    Principal
    Remote job
    Full time

    Hexion Inc.

    New York, NY
    2 days ago
  • $152.4k - $251.6k

     ...scientists and clinicians, who go on to pursue our mission at MSK and around the globe. Exciting Opportunity at MSK: Principal Cyber Security Engineer – Identity Access Management (IAM) At MSK, this role serves as a senior technical authority for Identity and Access Management... 
    Principal
    Live in
    Remote work
    Monday to Friday

    Memorial Sloan Kettering

    New York, NY
    3 days ago
  • $152.4k - $251.6k

     ...scientists and clinicians, who go on to pursueour missionat MSK and around the globe. Exciting Opportunity at MSK: Principal Cyber Security Engineer - Identity Access Management (IAM) At MSK, this role serves as a senior technical authority for Identity and... 
    Principal
    Live in
    Remote work
    Monday to Friday

    Memorial Sloan

    New York, NY
    3 days ago
  •  ...develop and validate key power system models and coordinate with various teams to ensure compliance with grid codes. Responsibilities include facilitating communication across engineering teams, managing technical challenges, and ensuring the integrity of model packages. A... 

    IS International Services LLC

    New York, NY
    2 days ago
  •  ...Principal Cloud Security Architect About the Role What if your deep knowledge of cloud architecture could directly prevent the next...  ...established security frameworks, industry best practices, and compliance standards Support recurring assessments of cloud... 
    Principal
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    New York, NY
    2 days ago
  •  ...EY is seeking a Financial Services Tech Consulting Rule Coding Senior in New York, focusing on investment compliance implementations across OMS platforms like Charles River and Aladdin. This role requires interpreting investment guidelines into compliance rules and validating... 

    EY

    New York, NY
    16 hours ago
  • Assurant, Inc. is seeking a Compliance Business Technical Specialist to enhance workflows and systems within the organization. This role involves evaluating operational processes, leading improvement projects, and maintaining business systems for peak performance. The... 

    Assurant, Inc.

    New York, NY
    2 days ago
  •  ...The City of Cincinnati is seeking a Supervising Engineer for the Metropolitan Sewer District (MSD). This role involves managing compliance programs and overseeing teams ensuring regulatory adherence. Successful candidates will have strong technical skills in engineering... 
    Local area

    City of Cincinnati

    Brooklyn, NY
    17 hours ago
  • $184k - $230k

     ...Security Architecture Consultant At Early Warning, we've powered and protected the...  ...are in line with security policy and are compliance to the required frameworks (ISO, PCI, NIST...  ...bachelor's degree in computer science, Engineering, Math, or Physical Science. Minimum... 
    Principal
    Hourly pay
    Work at office
    Immediate start
    Visa sponsorship
    Work visa
    Flexible hours

    Early Warning Services

    New York, NY
    15 days ago
  •  ...Senior Network Security Engineer Company: SoHo Dragon represents an Investment Bank client Location: Hybrid – Jersey City, NJ (4 days in office) Contract Duration: 24 months Responsibilities Operate and support network security infrastructure, including... 
    Contract work
    For contractors
    Work at office

    SoHo Dragon

    Hoboken, NJ
    18 days ago
  •  ...DoorDash is seeking a Senior Security Engineer to lead the development of product and cloud security solutions. You will design and operationalize security services while mentoring junior engineers. This position requires extensive experience in security engineering, with... 
    Remote work

    Itlearn360

    New York, NY
    3 days ago
  • $195k - $240k

     ...Here at the company, we think about offensive security a little bit differently. We embrace automation and AI to run adversary simulations...  ...massive cloud-native environment, and we expect our offensive engineers to build the tooling that makes that possible. We're looking... 
    Work at office

    United States Digital Space LLC

    New York, NY
    2 days ago
  •  ...fast-growing fintech company in the U.S. is seeking a Senior Security Engineer to enhance security within their innovative platform. This...  ...environments, conducting vulnerability assessments, and ensuring SOC 2 compliance. The ideal candidate will possess extensive AWS experience... 
    Remote work

    MAP SSG Inc

    New York, NY
    2 days ago
  • $200k - $250k

     ...A proprietary trading firm in New York is seeking a Compliance Software Engineer to enhance their trading operations. The ideal candidate should have over 5 years of experience in Java development and a strong grasp of real-time trading systems. Responsibilities include... 

    CTC Innovations, LLC

    New York, NY
    3 days ago
  • $150k - $200k

     ...Senior Security Engineer - Application Security New York, NY About the Role This is an opportunity to join K's critical InfoSec...  ...multiple areas such as AppSec, CloudSec, SecOps, ITSec, and Compliance and apply it towards reading and interpreting architecture,... 
    Full time
    Work at office
    Local area

    K Health

    New York, NY
    3 days ago
  •  ...About AppGate AppGate secures and protects an organization's most valuable assets...  ...We're looking for an OT Security Engineer (Senior / Staff / Principal) who will design, build, and evolve...  ...in safety-critical, regulated, or compliance-driven environments • (Staff /... 
    Principal
    Full time
    Remote work
    Worldwide

    AppGate Cybersecurity, Inc.

    New York, NY
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Compliance & Security Engineer. Be the first to apply!